Comparison Overview

Univest Capital, Inc.

VS

J.P. Morgan

Univest Capital, Inc.

3331 Street Road Suite 325, Bensalem, PA, 19020, US
Last Update: 2026-04-04

Univest Capital, Inc. specializes in equipment financing for transactions ranging from $2,500 to $500,000. Our goal is to make acquisition plans affordable for businesses and municipalities across the U.S. by offering a combination of below market rates, 100% financing, and flexible financing terms. Financing Program: Univest Capital provides essential finance options that allow business owners to acquire the equipment needed to stay competitive without waiting or impacting cash flow. Vendor Program: Univest Capital creates specialty finance programs tailored to specific markets such as health care, office equipment, technology, and municipal finance to allow equipment vendors to improve closing ratios and increase sales. Univest Capital, Inc. is a subsidiary of Univest Bank and Trust Co. Equal Opportunity Lender.

NAICS: 52
NAICS Definition:
Employees: 23
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

J.P. Morgan

270 Park Avenue, New York, NY, US, 10017
Last Update: 2026-04-02
Between 800 and 849

J.P. Morgan is a leader in financial services, offering solutions to clients in more than 100 countries with one of the most comprehensive global product platforms available. We have been helping our clients to do business and manage their wealth for more than 200 years. Our business has been built upon our core principle of putting our clients'​ interests first. J.P. Morgan is part of JPMorgan Chase & Co. (NYSE: JPM), a global financial services firm. Social Media Terms and Conditions: https://bit.ly/JPMCSocialTerms © 2017 JPMorgan Chase & Co. JPMorgan Chase is an equal opportunity and affirmative action employer Disability/Veteran.

NAICS: 52
NAICS Definition: Finance and Insurance
Employees: 82,484
Subsidiaries: 0
12-month incidents
1
Known data breaches
1
Attack type number
2

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/univest-capital.jpeg
Univest Capital, Inc.
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/jpmorgan.jpeg
J.P. Morgan
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Univest Capital, Inc.
100%
Compliance Rate
0/4 Standards Verified
J.P. Morgan
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Financial Services Industry Average (This Year)

No incidents recorded for Univest Capital, Inc. in 2026.

Incidents vs Financial Services Industry Average (This Year)

J.P. Morgan has 50.0% fewer incidents than the average of same-industry companies with at least one recorded incident.

Incident History — Univest Capital, Inc. (X = Date, Y = Severity)

Univest Capital, Inc. cyber incidents detection timeline including parent company and subsidiaries

Incident History — J.P. Morgan (X = Date, Y = Severity)

J.P. Morgan cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/univest-capital.jpeg
Univest Capital, Inc.
Incidents

No Incident

https://images.rankiteo.com/companyimages/jpmorgan.jpeg
J.P. Morgan
Incidents

Date Detected: 3/2026
Type:Cyber Attack
Attack Vector: Email
Blog: Blog

Date Detected: 8/2021
Type:Breach
Blog: Blog

FAQ

J.P. Morgan company demonstrates a stronger AI Cybersecurity Score compared to Univest Capital, Inc. company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

J.P. Morgan company has historically faced a number of disclosed cyber incidents, whereas Univest Capital, Inc. company has not reported any.

In the current year, J.P. Morgan company has reported more cyber incidents than Univest Capital, Inc. company.

Neither J.P. Morgan company nor Univest Capital, Inc. company has reported experiencing a ransomware attack publicly.

J.P. Morgan company has disclosed at least one data breach, while Univest Capital, Inc. company has not reported such incidents publicly.

J.P. Morgan company has reported targeted cyberattacks, while Univest Capital, Inc. company has not reported such incidents publicly.

Neither Univest Capital, Inc. company nor J.P. Morgan company has reported experiencing or disclosing vulnerabilities publicly.

Neither Univest Capital, Inc. nor J.P. Morgan holds any compliance certifications.

Neither company holds any compliance certifications.

Univest Capital, Inc. company has more subsidiaries worldwide compared to J.P. Morgan company.

J.P. Morgan company employs more people globally than Univest Capital, Inc. company, reflecting its scale as a Financial Services.

Neither Univest Capital, Inc. nor J.P. Morgan holds SOC 2 Type 1 certification.

Neither Univest Capital, Inc. nor J.P. Morgan holds SOC 2 Type 2 certification.

Neither Univest Capital, Inc. nor J.P. Morgan holds ISO 27001 certification.

Neither Univest Capital, Inc. nor J.P. Morgan holds PCI DSS certification.

Neither Univest Capital, Inc. nor J.P. Morgan holds HIPAA certification.

Neither Univest Capital, Inc. nor J.P. Morgan holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service availability.

Risk Information
cvss3
Base: 7.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

Description

XSS vulnerability in cveInterface.js allows for inject HTML to be passed to display, as cveInterface trusts input from CVE API services

Description

Multiple reflected cross-site scripting (XSS) vulnerabilities in the login.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda and red_url parameters.

Description

A reflected cross-site scripting (XSS) vulnerability in the login_newpwd.php endpoint of Interzen Consulting S.r.l ZenShare Suite v17.0 allows attackers to execute arbitrary Javascript in the context of the user's browser via a crafted URL injected into the codice_azienda parameter.