Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Social Security Administr

Social Security Administr Vendor Cyber Rating & Cyber Score

ssa.gov


SSA A.I CyberSecurity Scoring

SSA
Company Information
Website:http://www.ssa.gov
Employees number:61
Number of followers:26
NAICS:92
Industry Type:Government Administration
Homepage:ssa.gov
SSA Risk Score (AI oriented)
Between 600 and 649
logo
SSAGovernment Administration
Updated:
02/04/2026
638/1000
Poor
Caa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
SSA Global Score (TPRM)
xxxx
logo
SSAGovernment Administration
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

SSA
SSAPoor
Current Score
638Caa (POOR)
01000
2 incidents
-92 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
648Before Incident
JULY 2026
648Before Incident
JUNE 2026
645Before Incident
MAY 2026
641Before Incident
APRIL 2026
641Before Incident
MARCH 2026
636Before Incident
FEBRUARY 2026
635Before Incident
JANUARY 2026
633Before Incident
DECEMBER 2025
631Before Incident
NOVEMBER 2025
628Before Incident
OCTOBER 2025
625Before Incident
SEPTEMBER 2025
678Before Incident
AUGUST 2025
709Before Incident
Breach
01 Aug 2025SSA
Social Security Administration: The Social Security data breach is a national-security disaster that could hurt Americans for the rest of their lives: whistleblower

Potential Massive Social Security Data Breach

617After Incident
CRITICAL-92
SOC1772105364
Former SSA Chief Data Officer Warns of Massive Social Security Data Breach A whistleblower has raised alarms over a potential national security disaster involving the exposure of sensitive Social Security Administration (SSA) data. Chuck Borges, who served as the SSA’s chief data officer until his resignation in August, alleges that employees of the Department of Government Efficiency (DOGE) uploaded a copy of the SSA’s database containing names, Social Security numbers, and addresses of every American with an SSN to an unsecured cloud environment. Borges, who filed a formal complaint, claims the mishandling of this data puts all current and former SSN holders at risk of fraud, with potential lifelong consequences. The breach, described as a "national-security disaster," has prompted calls for a congressional investigation into the government’s data management practices. The incident underscores systemic vulnerabilities in federal data protection, raising concerns about the security of personal information held by government agencies. No timeline for the alleged breach or further details on DOGE’s involvement have been confirmed.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
Data Compromised: Names, Social Security numbers, and addresses of every American with an SSNSystems Affected: SSA database, unsecured cloud environmentBrand Reputation Impact: HighLegal Liabilities: PotentialIdentity Theft Risk: High
DATA BREACH
Type Of Data Compromised: Personally Identifiable Information (PII)Number Of Records Exposed: All Americans with an SSNSensitivity Of Data: HighPersonally Identifiable Information: Names, Social Security numbers, addresses
JANUARY 2025
771Before Incident
Breach
01 Jan 2025SSA
Defense Operations for Government Efficiency and Social Security Administration: Whistleblower Complaint Alleges Former DOGE Engineer Stole Social Security Data

Former DOGE Engineer Accused of Stealing Massive Troves of Social Security Data

701After Incident
CRITICAL-70
SOCUNI1773786686
Former DOGE Engineer Accused of Stealing Massive Troves of Social Security Data An anonymous whistleblower has alleged that John Solly, a former engineer for the Defense Operations for Government Efficiency (DOGE), stole highly sensitive Social Security Administration (SSA) data on a thumb drive with the intent of sharing it with his current employer, Leidos. The accusations, which remain unverified by third parties, claim Solly accessed two critical SSA databases NUMIDENT (the master database of all SSN applications) and the "death master file" (used to prevent fraud involving deceased individuals) during his tenure. Solly, now employed in Leidos’ health IT division, reportedly sought assistance in transferring the data from the thumb drive to a personal computer and "sanitizing" it before uploading it to Leidos’ systems. When questioned about potential legal consequences, Solly allegedly stated he believed he could secure a presidential pardon. Both Solly and Leidos have denied the allegations, with Leidos asserting that a digital forensics investigation found no evidence of the data being uploaded to its systems. The SSA has strongly refuted the claims, though the Government Accountability Office (GAO) and the SSA’s Office of Inspector General have launched investigations. Some House Democrats are pushing for a broader probe into potential DOGE-related leaks. If substantiated, the breach could rank among the largest in U.S. history, given the scale of personally identifiable information (PII) involved. This is not the first controversy surrounding DOGE, a Trump-era agency co-developed by Elon Musk in 2024. The Supreme Court previously ruled that DOGE, operating as an external consultant, is not required to disclose its activities to the public. The agency has faced repeated accusations of mishandling SSA data, including allegations that staffers shared sensitive information via insecure cloud servers and sought to provide voter fraud evidence to a right-wing advocacy group in violation of the Hatch Act. DOGE is set to sunset in July 2025, with much of its operations already winding down.
INCIDENT DETAILS -
TYPE
Data Theft
MOTIVATION
Potential data sharing with current employer (Leidos)
IMPACT
Data Compromised: Social Security Administration (SSA) data, including NUMIDENT and death master file recordsNUMIDENT databaseDeath Master File databaseOperational Impact: Potential disruption to SSA operations if data was exfiltratedBrand Reputation Impact: Severe reputational damage to DOGE and SSA if allegations are substantiatedLegal Liabilities: Potential violations of federal data protection laws (e.g., Privacy Act, Hatch Act)Identity Theft Risk: High (exposure of Social Security Numbers and PII)
DATA BREACH
Social Security Numbers (SSNs)Personally Identifiable Information (PII)Death recordsSensitivity Of Data: High (SSNs, PII, death records)Data Exfiltration: Alleged transfer to thumb drive and attempted upload to Leidos systemsPersonally Identifiable Information: Yes (SSNs, PII)

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for SSA ?
?
What was SSA's A.I Rankiteo Cyber Score in July 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in June 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in May 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in April 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in March 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in February 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in January 2026 ?
?
What was SSA's A.I Rankiteo Cyber Score in December 2025 ?
?
What was SSA's A.I Rankiteo Cyber Score in November 2025 ?
?
What was SSA's A.I Rankiteo Cyber Score in October 2025 ?
?
What was SSA's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on SSA's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with SSA ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view SSA's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?