Comparison Overview

Tivly

VS

AXA XL

Tivly

136 4th St N, Suite 201, St Petersburg, Florida, US, 33701
Last Update: 2026-04-04
Between 750 and 799

At Tivly, we believe finding business insurance should be simple, not stressful. That’s why we connect small business owners with the right coverage—quickly, easily, and without the hassle. Our name, Tivly, is inspired by the word "positively"—because we bring energy, clarity, and ease to a process that’s often anything but. We’re here to make sure every connection is meaningful, whether it’s helping business owners find the right insurance or connecting insurance agents and providers with high-quality leads.

NAICS: 524
NAICS Definition: Insurance Carriers and Related Activities
Employees: 139
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

AXA XL

One Bermudiana Road, Hamilton, Bermuda, BM, HM08
Last Update: 2026-04-01
Between 750 and 799

We are a leading provider of insurance and reinsurance offering innovative risk management solutions for businesses worldwide. We partner with those who move the world forward, navigating complex risks and working across diverse industries to support and empower our clients. Note: We are currently experiencing some technical issues with our recruitment platform which we hope to resolve shortly, please be patient with us, thank you for your interest in jobs at AXA XL.

NAICS: 524
NAICS Definition: Insurance Carriers and Related Activities
Employees: 10,555
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/tivlyofficial.jpeg
Tivly
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/axaxl.jpeg
AXA XL
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Tivly
100%
Compliance Rate
0/4 Standards Verified
AXA XL
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Insurance Industry Average (This Year)

No incidents recorded for Tivly in 2026.

Incidents vs Insurance Industry Average (This Year)

No incidents recorded for AXA XL in 2026.

Incident History — Tivly (X = Date, Y = Severity)

Tivly cyber incidents detection timeline including parent company and subsidiaries

Incident History — AXA XL (X = Date, Y = Severity)

AXA XL cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/tivlyofficial.jpeg
Tivly
Incidents

No Incident

https://images.rankiteo.com/companyimages/axaxl.jpeg
AXA XL
Incidents

No Incident

FAQ

AXA XL company demonstrates a stronger AI Cybersecurity Score compared to Tivly company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, AXA XL company has disclosed a higher number of cyber incidents compared to Tivly company.

In the current year, AXA XL company and Tivly company have not reported any cyber incidents.

Neither AXA XL company nor Tivly company has reported experiencing a ransomware attack publicly.

Neither AXA XL company nor Tivly company has reported experiencing a data breach publicly.

Neither AXA XL company nor Tivly company has reported experiencing targeted cyberattacks publicly.

Neither Tivly company nor AXA XL company has reported experiencing or disclosing vulnerabilities publicly.

Neither Tivly nor AXA XL holds any compliance certifications.

Neither company holds any compliance certifications.

AXA XL company has more subsidiaries worldwide compared to Tivly company.

AXA XL company employs more people globally than Tivly company, reflecting its scale as a Insurance.

Neither Tivly nor AXA XL holds SOC 2 Type 1 certification.

Neither Tivly nor AXA XL holds SOC 2 Type 2 certification.

Neither Tivly nor AXA XL holds ISO 27001 certification.

Neither Tivly nor AXA XL holds PCI DSS certification.

Neither Tivly nor AXA XL holds HIPAA certification.

Neither Tivly nor AXA XL holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.