Company Details
suncorp
13,312
147,796
524
suncorpgroup.com.au
0
SUN_3236980
In-progress

Suncorp Group Company CyberSecurity Posture
suncorpgroup.com.auSuncorp offers insurance products and services through some of Australia and New Zealand’s most recognised brands. Our purpose is to build futures and protect what matters – the focus of our company for more than 100 years. With the passion of our people, and our portfolio of brands including AAMI, GIO, Vero, Bingle, Apia and more, our ambition is to be the leading Trans-Tasman insurer. We put our customers at the heart of every decision, and we genuinely care about our customers and the communities in which they live. At Suncorp, we are big on culture, which is why ours is built on trust, empowerment, and flexibility, to help our people unlock their full potential and unleash their best and brightest selves. A career with us is more than just a job, it is an opportunity to positively impact the lives of thousands of people through the work you do each day.
Company Details
suncorp
13,312
147,796
524
suncorpgroup.com.au
0
SUN_3236980
In-progress
Between 750 and 799

Suncorp Group Global Score (TPRM)XXXX



No incidents recorded for Suncorp Group in 2025.
No incidents recorded for Suncorp Group in 2025.
No incidents recorded for Suncorp Group in 2025.
Suncorp Group cyber incidents detection timeline including parent company and subsidiaries

Suncorp offers insurance products and services through some of Australia and New Zealand’s most recognised brands. Our purpose is to build futures and protect what matters – the focus of our company for more than 100 years. With the passion of our people, and our portfolio of brands including AAMI, GIO, Vero, Bingle, Apia and more, our ambition is to be the leading Trans-Tasman insurer. We put our customers at the heart of every decision, and we genuinely care about our customers and the communities in which they live. At Suncorp, we are big on culture, which is why ours is built on trust, empowerment, and flexibility, to help our people unlock their full potential and unleash their best and brightest selves. A career with us is more than just a job, it is an opportunity to positively impact the lives of thousands of people through the work you do each day.


SURA es una compañía que integra en diferentes empresas soluciones en seguros y seguridad social. Su marca se presenta a los clientes como Seguros SURA, ARL SURA y EPS SURA. Existen otras marcas y empresas, especialmente de prestación de servicios, que hacen parte de la Compañía. Nuestra experienc

QBE is an international insurer and reinsurer listed on the Australian Securities Exchange and headquartered in Sydney. We employ over 13,000 people in 26 countries. Leveraging our deep expertise and insights, QBE offers commercial, personal and specialty products and risk management solutions to h
Assurant is a leading global business services company that supports, protects, and connects major consumer purchases. A Fortune 500 company with a presence in 21 countries, Assurant supports the advancement of the connected world by partnering with the world’s leading brands to develop innovative s
Humana will never ask, nor require a candidate to provide money for work equipment and network access during the application process. If you become aware of any instances where you as a candidate are asked to provide information and do not believe it is a legitimate request from Humana or affiliate,

Bajaj Allianz Life Insurance, one of the fastest-growing life insurers, is a joint venture between Bajaj Finserv Limited, one of the most diversified financial institutions in India, and Allianz SE, a leading global financial services provider with a presence in 70+ countries. Our remarkable journe

Travelers provides insurance coverage to protect the things that are important to you – your home, your car, your valuables and your business. We have been around for more than 170 years and have earned a reputation as one of the best property casualty insurers in the industry because we take care o
As one of the largest global insurers, our purpose is to act for human progress by protecting what matters. Protection has always been at the core of our business, helping individuals, businesses and societies to thrive. And AXA has always been a leader, an innovator, an entrepreneurial company, fo

The Swiss Re Group is a leading wholesale provider of reinsurance, insurance and other insurance-based forms of risk transfer. Dealing direct and working through brokers, its global client base consists of insurance companies, mid-to-large-sized corporations and public sector clients. From standard

Axis Max Life Insurance Limited (earlier known as Max Life Insurance Company Limited) is a Joint Venture between Max Financial Services Limited and Axis Bank Limited. Max Financial Services Ltd. is a part of the Max Group, an Indian multi-business corporation. Axis Max Life Insurance Limited has an
.png)
ANZ, Griffith University, AWS and Queensland Police launch a Brisbane hackathon to combat rising cybercrime and boost local cyber talent and...
ANZ, in partnership with Griffith University and Amazon Web Services (AWS), will host a Hackathon in Brisbane on 23 and 24 October,...
October is Cyber Security Awareness Month, a timely reminder that in today's digital world, everyone has a role to play in keeping our...
When we invest, we're generally looking for stocks that outperform the market average. And while active stock picking...
Start your career with one of Australia & New Zealand's top graduate employers - Suncorp.
BioCatch Trust has won the 2025 Fraud Impact Award for Best Scam and APP Fraud Prevention Solution. Launched in Australia in November of...
The board of Suncorp Group Limited ( ASX:SUN ) has announced that it will pay a dividend of A$0.49 per share on the...
Suncorp Group Ltd (SNMCY) reports robust financial performance with a $1.823 billion net profit, a $400 million share buyback,...
As applications open for Suncorp's 2026 graduate program, we spoke to Technology and Operations graduates Imaan and Jamie.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Suncorp Group is http://suncorpgroup.com.au.
According to Rankiteo, Suncorp Group’s AI-generated cybersecurity score is 785, reflecting their Fair security posture.
According to Rankiteo, Suncorp Group currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Suncorp Group is not certified under SOC 2 Type 1.
According to Rankiteo, Suncorp Group does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Suncorp Group is not listed as GDPR compliant.
According to Rankiteo, Suncorp Group does not currently maintain PCI DSS compliance.
According to Rankiteo, Suncorp Group is not compliant with HIPAA regulations.
According to Rankiteo,Suncorp Group is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Suncorp Group operates primarily in the Insurance industry.
Suncorp Group employs approximately 13,312 people worldwide.
Suncorp Group presently has no subsidiaries across any sectors.
Suncorp Group’s official LinkedIn profile has approximately 147,796 followers.
Suncorp Group is classified under the NAICS code 524, which corresponds to Insurance Carriers and Related Activities.
No, Suncorp Group does not have a profile on Crunchbase.
Yes, Suncorp Group maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/suncorp.
As of November 27, 2025, Rankiteo reports that Suncorp Group has not experienced any cybersecurity incidents.
Suncorp Group has an estimated 14,861 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Suncorp Group has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HTTP clients. The vulnerability is a Credential Leak by App Logic that leads to the unauthorized disclosure of the Cross-Site Request Forgery (XSRF) token to an attacker-controlled domain. Angular's HttpClient has a built-in XSRF protection mechanism that works by checking if a request URL starts with a protocol (http:// or https://) to determine if it is cross-origin. If the URL starts with protocol-relative URL (//), it is incorrectly treated as a same-origin request, and the XSRF token is automatically added to the X-XSRF-TOKEN header. This issue has been patched in versions 19.2.16, 20.3.14, and 21.0.1. A workaround for this issue involves avoiding using protocol-relative URLs (URLs starting with //) in HttpClient requests. All backend communication URLs should be hardcoded as relative paths (starting with a single /) or fully qualified, trusted absolute URLs.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Uncontrolled Recursion vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft deep ASN.1 structures that trigger unbounded recursive parsing. This leads to a Denial-of-Service (DoS) via stack exhaustion when parsing untrusted DER inputs. This issue has been patched in version 1.3.2.
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. An Integer Overflow vulnerability in node-forge versions 1.3.1 and below enables remote, unauthenticated attackers to craft ASN.1 structures containing OIDs with oversized arcs. These arcs may be decoded as smaller, trusted OIDs due to 32-bit bitwise truncation, enabling the bypass of downstream OID-based security decisions. This issue has been patched in version 1.3.2.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, working with large buffers in Lua scripts can lead to a stack overflow. Users of Lua rules and output scripts may be affected when working with large buffers. This includes a rule passing a large buffer to a Lua script. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves disabling Lua rules and output scripts, or making sure limits, such as stream.depth.reassembly and HTTP response body limits (response-body-limit), are set to less than half the stack size.
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64_data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64_data.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.