ISO 27001 Certificate
SOC 1 Type I Certificate
SOC 2 Type II Certificate
PCI DSS
HIPAA
RGPD
Internal validation & live display
Multiple badges & continuous verification
Faster underwriting decisions
ISOSOC2 Type 1SOC2 Type 2PCI DSSHIPAAGDPR

Simon Fraser University's School of Public Policy was established in 2003 and offers the Master's in Public Policy (MPP) graduate program and a strong core of research addressing a broad range of policy issues. We are located at the SFU Vancouver campus–in the heart of the city's downtown core. The two-year, cohort based MPP program balances theory and practical application to develop the necessary skills for public policy careers in public and private sectors, as well as not for profit organizations and NGOs. Strong research and analytical skills are the foundation of a rigorous professional graduate education that recognizes that today, major institutional change is essential, and requires listening and acting on the voices of marginalized and racialized people. The program emphasizes student-initiated learning including critical thinking that challenges and speaks to power and group explorations that explore and address diverse and complex policy problems and issues, including social and economic inequality, poverty and other forms of injustice. Its distinguished faculty engage in research and policy practice in many areas including health, environment, Indigenous governance and development, education, social justice and inequality, housing, conflict resolution and more.

SFU School of Public Policy A.I CyberSecurity Scoring

SSPP

Company Details

Linkedin ID:

sfu-school-of-public-policy

Employees number:

None employees

Number of followers:

1,129

NAICS:

921

Industry Type:

Public Policy Offices

Homepage:

sfu.ca

IP Addresses:

0

Company ID:

SFU_1126833

Scan Status:

In-progress

AI scoreSSPP Risk Score (AI oriented)

Between 700 and 749

https://images.rankiteo.com/companyimages/sfu-school-of-public-policy.jpeg
SSPP Public Policy Offices
Updated:
  • Powered by our proprietary A.I cyber incident model
  • Insurance preferes TPRM score to calculate premium
globalscoreSSPP Global Score (TPRM)

XXXX

https://images.rankiteo.com/companyimages/sfu-school-of-public-policy.jpeg
SSPP Public Policy Offices
  • Instant access to detailed risk factors
  • Benchmark vs. industry & size peers
  • Vulnerabilities
  • Findings

SSPP Company CyberSecurity News & History

Past Incidents
1
Attack Types
1
EntityTypeSeverityImpactSeenBlog DetailsIncident DetailsView
Simon Fraser UniversityBreach8546/2019
Rankiteo Explanation :
Attack with significant impact with customers data leaks

Description: A Metro Vancouver university, Simon Fraser University (SFU) had became a victim of data breach which took place at the institution. Those affected include any faculty, staff, students, alumni, and retirees who joined the university before June 20, 2019. Information that was exposed includes SFU Computing IDs; SFU student or employee ID numbers; first, last, and preferred names; birthdates; employee groups; mail list memberships; course enrollment; external email addresses; web form data; and encrypted passwords.l.

Simon Fraser University
Breach
Severity: 85
Impact: 4
Seen: 6/2019
Blog:
Rankiteo Explanation
Attack with significant impact with customers data leaks

Description: A Metro Vancouver university, Simon Fraser University (SFU) had became a victim of data breach which took place at the institution. Those affected include any faculty, staff, students, alumni, and retirees who joined the university before June 20, 2019. Information that was exposed includes SFU Computing IDs; SFU student or employee ID numbers; first, last, and preferred names; birthdates; employee groups; mail list memberships; course enrollment; external email addresses; web form data; and encrypted passwords.l.

Ailogo

SSPP Company Scoring based on AI Models

Cyber Incidents Likelihood 3 - 6 - 9 months

🔒
Incident Predictions locked
Access Monitoring Plan

A.I Risk Score Likelihood 3 - 6 - 9 months

🔒
A.I. Risk Score Predictions locked
Access Monitoring Plan
statics

Underwriter Stats for SSPP

Incidents vs Public Policy Offices Industry Average (This Year)

No incidents recorded for SFU School of Public Policy in 2025.

Incidents vs All-Companies Average (This Year)

No incidents recorded for SFU School of Public Policy in 2025.

Incident Types SSPP vs Public Policy Offices Industry Avg (This Year)

No incidents recorded for SFU School of Public Policy in 2025.

Incident History — SSPP (X = Date, Y = Severity)

SSPP cyber incidents detection timeline including parent company and subsidiaries

SSPP Company Subsidiaries

SubsidiaryImage

Simon Fraser University's School of Public Policy was established in 2003 and offers the Master's in Public Policy (MPP) graduate program and a strong core of research addressing a broad range of policy issues. We are located at the SFU Vancouver campus–in the heart of the city's downtown core. The two-year, cohort based MPP program balances theory and practical application to develop the necessary skills for public policy careers in public and private sectors, as well as not for profit organizations and NGOs. Strong research and analytical skills are the foundation of a rigorous professional graduate education that recognizes that today, major institutional change is essential, and requires listening and acting on the voices of marginalized and racialized people. The program emphasizes student-initiated learning including critical thinking that challenges and speaks to power and group explorations that explore and address diverse and complex policy problems and issues, including social and economic inequality, poverty and other forms of injustice. Its distinguished faculty engage in research and policy practice in many areas including health, environment, Indigenous governance and development, education, social justice and inequality, housing, conflict resolution and more.

Loading...
similarCompanies

SSPP Similar Companies

Skatteministeriet

I Skatteministeriet er du med til at skabe fundamentet for finansieringen af den offentlige sektor. Her får du faglige udfordringer, indflydelse og stort ansvar som medarbejder i Skatteministeriet. Alle borgere, virksomheder og organisationer berøres af skattesystemet hvert eneste år. Vores arbejde

Clear Language Institute, Inc.

The Clear Language Institute is a non-profit, 501(c)3 corporation whose mission is to make sure that all amendments, referenda or other propositions that Americans vote on are written in simple, clear language that is easily understood by voters. To accomplish this, we will use consumer testing,

Vidhi Centre for Legal Policy

The Vidhi Centre for Legal Policy is an independent think-tank doing legal research to make better laws and improve governance for the public good. We engage with Ministries in the Government of India, State governments, Standing Committees of Parliament, other agencies and instrumentalities of the

The Urban Child Institute

The Urban Child Institute is a non-profit organization dedicated to the well-being and health of children from conception to three years old in Memphis and Shelby County. Organizationally, we are a data-driven, result-oriented coalition of community researchers, strategists, and practitioners who sh

Jubilee USA Network

Jubilee USA Network is an interfaith, non-profit alliance of religious, development and advocacy organizations. We are 75 U.S. institutions and more than 650 faith groups working across the United States and around the globe. We address the structural causes of poverty and inequality in our communi

Creative UK

Here for those who dare to imagine. Creative UK works to harness the power of the Creative Industries to build a stronger, fairer, and more prosperous future. Creative UK is the result of the Creative Industries Federation and Creative England coming together under one brand identity. We will cont

newsone

SSPP CyberSecurity News

August 15, 2024 11:12 PM
2024 Cybersecurity and Privacy Institute Annual Conference

Explore cybersecurity challenges in Cybersecurity and Society: Our Future of Digital Privacy at the UW Cybersecurity and Privacy Institute Annual...

July 10, 2024 07:00 AM
IS graduate Mariah Izabelle Merican on a journey of global perspectives

Mariah crossed the stage this year, proudly receiving her International Studies degree with a concentration in Comparative World Politics,...

May 15, 2024 07:00 AM
Renowned SFU criminologist Robert Gordon dies, leaving trail of contributions

SFU professor emeritus of criminology and public policy analyst Robert Gordon has died, leaving behind a trail of “pivotal” contributions to...

September 05, 2023 07:00 AM
New Course Offerings - Fall 2023

This fall, more than 30 new courses are being offered, each of which aims to provide a deeper dive into the rapidly changing world.

February 02, 2023 08:00 AM
SFU launches two new master’s programs in cybersecurity and visual computing

Simon Fraser University's School of Computing Science is launching two new master's degree programs to meet the growing need for high-demand skills.

December 11, 2021 09:24 PM
Yasutaka Furukawa – Smart Building Technologies to Enhance Living Spaces and Create Opportunities

Simon Fraser University's School of Computing Science professor Yasutaka Furukawa is researching smart building technology and ways to include people as an...

November 30, 2021 09:41 PM
An Interdisciplinary Approach to Technology and Democracy

With an interdisciplinary background in engineering and English literature, Simon Fraser University's School of Communication professor and Canada 150...

November 19, 2021 10:22 AM
Innovative Approaches to Inform Health and Public Policy

With backgrounds in Public Policy and Interdisciplinary Studies, Simon Fraser University's School of Public Policy associate professor and Research...

November 11, 2021 11:00 PM
Mo Chen – AI to Create Safe and Practical Robotics - SFU's Big Data Hub

Simon Fraser University's School of Computing Science professor Mo Chen is developing artificial intelligence systems that can more efficiently and safely...

faq

Frequently Asked Questions

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.

SSPP CyberSecurity History Information

Official Website of SFU School of Public Policy

The official website of SFU School of Public Policy is http://www.sfu.ca/mpp.html.

SFU School of Public Policy’s AI-Generated Cybersecurity Score

According to Rankiteo, SFU School of Public Policy’s AI-generated cybersecurity score is 745, reflecting their Moderate security posture.

How many security badges does SFU School of Public Policy’ have ?

According to Rankiteo, SFU School of Public Policy currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.

Does SFU School of Public Policy have SOC 2 Type 1 certification ?

According to Rankiteo, SFU School of Public Policy is not certified under SOC 2 Type 1.

Does SFU School of Public Policy have SOC 2 Type 2 certification ?

According to Rankiteo, SFU School of Public Policy does not hold a SOC 2 Type 2 certification.

Does SFU School of Public Policy comply with GDPR ?

According to Rankiteo, SFU School of Public Policy is not listed as GDPR compliant.

Does SFU School of Public Policy have PCI DSS certification ?

According to Rankiteo, SFU School of Public Policy does not currently maintain PCI DSS compliance.

Does SFU School of Public Policy comply with HIPAA ?

According to Rankiteo, SFU School of Public Policy is not compliant with HIPAA regulations.

Does SFU School of Public Policy have ISO 27001 certification ?

According to Rankiteo,SFU School of Public Policy is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.

Industry Classification of SFU School of Public Policy

SFU School of Public Policy operates primarily in the Public Policy Offices industry.

Number of Employees at SFU School of Public Policy

SFU School of Public Policy employs approximately None employees people worldwide.

Subsidiaries Owned by SFU School of Public Policy

SFU School of Public Policy presently has no subsidiaries across any sectors.

SFU School of Public Policy’s LinkedIn Followers

SFU School of Public Policy’s official LinkedIn profile has approximately 1,129 followers.

NAICS Classification of SFU School of Public Policy

SFU School of Public Policy is classified under the NAICS code 921, which corresponds to Executive, Legislative, and Other General Government Support.

SFU School of Public Policy’s Presence on Crunchbase

No, SFU School of Public Policy does not have a profile on Crunchbase.

SFU School of Public Policy’s Presence on LinkedIn

Yes, SFU School of Public Policy maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/sfu-school-of-public-policy.

Cybersecurity Incidents Involving SFU School of Public Policy

As of November 27, 2025, Rankiteo reports that SFU School of Public Policy has experienced 1 cybersecurity incidents.

Number of Peer and Competitor Companies

SFU School of Public Policy has an estimated 1,025 peer or competitor companies worldwide.

What types of cybersecurity incidents have occurred at SFU School of Public Policy ?

Incident Types: The types of cybersecurity incidents that have occurred include Breach.

Incident Details

Can you provide details on each incident ?

Incident : Data Breach

Title: Simon Fraser University Data Breach

Description: A Metro Vancouver university, Simon Fraser University (SFU), became a victim of a data breach which took place at the institution. Those affected include any faculty, staff, students, alumni, and retirees who joined the university before June 20, 2019. Information that was exposed includes SFU Computing IDs; SFU student or employee ID numbers; first, last, and preferred names; birthdates; employee groups; mail list memberships; course enrollment; external email addresses; web form data; and encrypted passwords.

Type: Data Breach

What are the most common types of attacks the company has faced ?

Common Attack Types: The most common types of attacks the company has faced is Breach.

Impact of the Incidents

What was the impact of each incident ?

Incident : Data Breach SIM1811231222

Data Compromised: Sfu computing ids, Sfu student or employee id numbers, First, last, and preferred names, Birthdates, Employee groups, Mail list memberships, Course enrollment, External email addresses, Web form data, Encrypted passwords

What types of data are most commonly compromised in incidents ?

Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Sfu Computing Ids, Sfu Student Or Employee Id Numbers, First, Last, And Preferred Names, Birthdates, Employee Groups, Mail List Memberships, Course Enrollment, External Email Addresses, Web Form Data, Encrypted Passwords and .

Which entities were affected by each incident ?

Incident : Data Breach SIM1811231222

Entity Name: Simon Fraser University

Entity Type: Educational Institution

Industry: Education

Location: Metro Vancouver

Customers Affected: faculty, staff, students, alumni, retirees

Data Breach Information

What type of data was compromised in each breach ?

Incident : Data Breach SIM1811231222

Type of Data Compromised: Sfu computing ids, Sfu student or employee id numbers, First, last, and preferred names, Birthdates, Employee groups, Mail list memberships, Course enrollment, External email addresses, Web form data, Encrypted passwords

Data Encryption: encrypted passwords

Personally Identifiable Information: SFU Computing IDsSFU student or employee ID numbersfirst, last, and preferred namesbirthdates

Additional Questions

Impact of the Incidents

What was the most significant data compromised in an incident ?

Most Significant Data Compromised: The most significant data compromised in an incident were SFU Computing IDs, SFU student or employee ID numbers, first, last, and preferred names, birthdates, employee groups, mail list memberships, course enrollment, external email addresses, web form data, encrypted passwords and .

Data Breach Information

What was the most sensitive data compromised in a breach ?

Most Sensitive Data Compromised: The most sensitive data compromised in a breach were web form data, SFU student or employee ID numbers, mail list memberships, encrypted passwords, SFU Computing IDs, external email addresses, first, last, and preferred names, birthdates, employee groups and course enrollment.

cve

Latest Global CVEs (Not Company-Specific)

Description

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.

Risk Information
cvss4
Base: 7.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.

Risk Information
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Access Data Using Our API

SubsidiaryImage

Get company history

curl -i -X GET 'https://api.rankiteo.com/underwriter-getcompany-history?linkedin_id=sfu-school-of-public-policy' -H 'apikey: YOUR_API_KEY_HERE'

What Do We Measure ?

revertimgrevertimgrevertimgrevertimg
Incident
revertimgrevertimgrevertimgrevertimg
Finding
revertimgrevertimgrevertimgrevertimg
Grade
revertimgrevertimgrevertimgrevertimg
Digital Assets

Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.

These are some of the factors we use to calculate the overall score:

Network Security

Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.

SBOM (Software Bill of Materials)

Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.

CMDB (Configuration Management Database)

Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.

Threat Intelligence

Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.

Top LeftTop RightBottom LeftBottom Right
Rankiteo is a unified scoring and risk platform that analyzes billions of signals weekly to help organizations gain faster, more actionable insights into emerging threats. Empowering teams to outpace adversaries and reduce exposure.
Users Love Us Badge