Comparison Overview

Soaring Health Sport, Wellness & Community Centre

VS

X-PERT Health

Soaring Health Sport, Wellness & Community Centre

54 Main Street, Thomastown, Victoria, 3074, AU
Last Update: 2025-11-28

At Soaring Health, we offer a values-driven environment where you can develop and harness your professional skills while making a meaningful contribution to the community. Our practitioners work collaboratively to facilitate tangible, positive, and often life-changing treatment outcomes. With state-of-the-art clinics, cutting-edge research partnerships, and structured career development paths, we cater to diverse client needs from athletes to wellness enthusiasts and NDIS participants. Our values of family, integrity, and extraordinary service are evident in everything we do. Working at Soaring Health means every day is different. You'll experience a supportive, collaborative culture where your clinical skills are valued and extended. Our state-of-the-art clinics offer cutting-edge resources and technology that enable you to do your best work. We encourage you to expand your professional interests and scope and progress your career as far as you wish to take it. At Soaring Health, we treat each client and participant as we would family, making a real difference in their lives. We're committed to employee work-life balance and wellbeing, offering flexible structures and provisions. Come and soar with us, and experience the enriching difference of a career with purpose.

NAICS: 923
NAICS Definition:
Employees: 41
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

X-PERT Health

Linden Road, West Yorkshire, HX7 7DP, GB
Last Update: 2025-11-28

Educate not medicate. X-PERT Health is an award-winning UK based charity. We aim to help transform people’s lives through inspirational diabetes, insulin and weight loss education programmes. We support people with prediabetes, type 1 and type 2 diabetes (newly diagnosed or established), obesity, and anyone overweight. Our programmes offer choice with flexible and personalised solutions. We believe that food-related education and wellbeing support helps make us all healthier. On average people living with diabetes only spend 3 hours a year with a healthcare professional. Most of these individuals manage their condition themselves. We pride ourselves on delivering effective approaches that help make a difference to people’s lives. Year-on-year our audit results have demonstrated that our programmes help people lose weight, improve their HbA1c, reduce medications and place conditions such as prediabetes and Type 2 diabetes into remission. Our programmes also support the government’s current initiative of greater focus on education and awareness to help control the cost of health care. Education not medication means reducing NHS costs. We are trusted by the NHS, and work with lots of organisations such as Councils, Charities, health professionals and employers in order to reach patients, communities and workforces. • Over 300,000 patients educated nationwide on X-PERT programmes • X-PERT has been commissioned by over 100 different organisations • Potentially saving the NHS £367,000,000 through education not medication • BAME programme participants over 25% • Over 600 trained educators Linkedin ID: 3154488

NAICS: 923
NAICS Definition:
Employees: 14
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/soaringhealth.jpeg
Soaring Health Sport, Wellness & Community Centre
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/x-pert-health.jpeg
X-PERT Health
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Soaring Health Sport, Wellness & Community Centre
100%
Compliance Rate
0/4 Standards Verified
X-PERT Health
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for Soaring Health Sport, Wellness & Community Centre in 2025.

Incidents vs Public Health Industry Average (This Year)

No incidents recorded for X-PERT Health in 2025.

Incident History — Soaring Health Sport, Wellness & Community Centre (X = Date, Y = Severity)

Soaring Health Sport, Wellness & Community Centre cyber incidents detection timeline including parent company and subsidiaries

Incident History — X-PERT Health (X = Date, Y = Severity)

X-PERT Health cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/soaringhealth.jpeg
Soaring Health Sport, Wellness & Community Centre
Incidents

No Incident

https://images.rankiteo.com/companyimages/x-pert-health.jpeg
X-PERT Health
Incidents

No Incident

FAQ

Soaring Health Sport, Wellness & Community Centre company demonstrates a stronger AI Cybersecurity Score compared to X-PERT Health company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, X-PERT Health company has disclosed a higher number of cyber incidents compared to Soaring Health Sport, Wellness & Community Centre company.

In the current year, X-PERT Health company and Soaring Health Sport, Wellness & Community Centre company have not reported any cyber incidents.

Neither X-PERT Health company nor Soaring Health Sport, Wellness & Community Centre company has reported experiencing a ransomware attack publicly.

Neither X-PERT Health company nor Soaring Health Sport, Wellness & Community Centre company has reported experiencing a data breach publicly.

Neither X-PERT Health company nor Soaring Health Sport, Wellness & Community Centre company has reported experiencing targeted cyberattacks publicly.

Neither Soaring Health Sport, Wellness & Community Centre company nor X-PERT Health company has reported experiencing or disclosing vulnerabilities publicly.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Soaring Health Sport, Wellness & Community Centre company nor X-PERT Health company has publicly disclosed detailed information about the number of their subsidiaries.

Soaring Health Sport, Wellness & Community Centre company employs more people globally than X-PERT Health company, reflecting its scale as a Public Health.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds SOC 2 Type 1 certification.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds SOC 2 Type 2 certification.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds ISO 27001 certification.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds PCI DSS certification.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds HIPAA certification.

Neither Soaring Health Sport, Wellness & Community Centre nor X-PERT Health holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.