Comparison Overview

UW Medicine Advancement

VS

NDSU Foundation

UW Medicine Advancement

850 Republican St, None, Seattle, Washington, US, 98109
Last Update: 2025-12-19

At UW Medicine, we work to improve health for all people through excellence in clinical, research, and education and training programs. As the only comprehensive clinical, research and learning health system in the five-state WWAMI (Washington, Wyoming, Alaska, Montana, Idaho) region, UW Medicine provides the most up-to-date care for each individual patient, leads one of the world’s largest and most comprehensive medical research programs, and provides innovative learning programs for students, trainees, and practitioners in the health professions. The passionate, 86-person team at UW Medicine Advancement works collaboratively to connect donors with meaningful opportunities to enhance patient care, expand educational opportunities and advance research at UW Medicine. This inspiring, challenging and rewarding work provides team members an opportunity to grow their careers, while making a difference in people’s lives, in our community and around the world. In the 2024 fiscal year, UW Medicine Advancement raised $305 million in gifts and private grants (48 percent of the University of Washington’s total) from over 14,300 donors to support the mission of UW Medicine. Please connect and follow us to stay connected to our career opportunities and job openings as we continue to grow our amazing team at UW Medicine Advancement!

NAICS: 561499
NAICS Definition: All Other Business Support Services
Employees: 25
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

NDSU Foundation

1241 University Dr N, None, Fargo, North Dakota, US, 58102
Last Update: 2025-12-21

The North Dakota State University Foundation and Alumni Association creates opportunities to advance education, research, and service at the University. We work in close collaboration with faculty, staff, students, and alumni, along with businesses, different industries, and the community, to better understand and represent common interests. With the needs of the entire university in mind, we efficiently and effectively raise funds, manage assets, and administer other privately funded resources to stimulate continued development at NDSU. The Foundation achieves success by: •Partnering with the University community to deliver education at a higher level in new environments; •Building on its strong relationship with NDSU alumni and the Alumni Association; •Supporting the continuous improvement of the quality of an NDSU education, research, the University experience, and athletics; •Recognizing best practices in the spirit of collaboration with other higher learning institutions for the mutual benefit of all; •Working with the University to engage with state and local government, alumni, businesses, and industry communities to stimulate University advancement and economic development through visionary planning, innovation, and entrepreneurship; •Communicating effectively with donors and partners on relevant issues and our stewardship and recognizing them for their contributions; and •Increasing the visibility of the University and enhancing its image – locally, regionally, nationally, and internationally.

NAICS: 561499
NAICS Definition: All Other Business Support Services
Employees: 64
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/uw-medicine-advancement.jpeg
UW Medicine Advancement
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/ndsu-foundation.jpeg
NDSU Foundation
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
UW Medicine Advancement
100%
Compliance Rate
0/4 Standards Verified
NDSU Foundation
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Fundraising Industry Average (This Year)

No incidents recorded for UW Medicine Advancement in 2025.

Incidents vs Fundraising Industry Average (This Year)

No incidents recorded for NDSU Foundation in 2025.

Incident History — UW Medicine Advancement (X = Date, Y = Severity)

UW Medicine Advancement cyber incidents detection timeline including parent company and subsidiaries

Incident History — NDSU Foundation (X = Date, Y = Severity)

NDSU Foundation cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/uw-medicine-advancement.jpeg
UW Medicine Advancement
Incidents

No Incident

https://images.rankiteo.com/companyimages/ndsu-foundation.jpeg
NDSU Foundation
Incidents

No Incident

FAQ

Both UW Medicine Advancement company and NDSU Foundation company demonstrate a comparable AI Cybersecurity Score, with strong governance and monitoring frameworks in place.

Historically, NDSU Foundation company has disclosed a higher number of cyber incidents compared to UW Medicine Advancement company.

In the current year, NDSU Foundation company and UW Medicine Advancement company have not reported any cyber incidents.

Neither NDSU Foundation company nor UW Medicine Advancement company has reported experiencing a ransomware attack publicly.

Neither NDSU Foundation company nor UW Medicine Advancement company has reported experiencing a data breach publicly.

Neither NDSU Foundation company nor UW Medicine Advancement company has reported experiencing targeted cyberattacks publicly.

Neither UW Medicine Advancement company nor NDSU Foundation company has reported experiencing or disclosing vulnerabilities publicly.

Neither UW Medicine Advancement nor NDSU Foundation holds any compliance certifications.

Neither company holds any compliance certifications.

Neither UW Medicine Advancement company nor NDSU Foundation company has publicly disclosed detailed information about the number of their subsidiaries.

NDSU Foundation company employs more people globally than UW Medicine Advancement company, reflecting its scale as a Fundraising.

Neither UW Medicine Advancement nor NDSU Foundation holds SOC 2 Type 1 certification.

Neither UW Medicine Advancement nor NDSU Foundation holds SOC 2 Type 2 certification.

Neither UW Medicine Advancement nor NDSU Foundation holds ISO 27001 certification.

Neither UW Medicine Advancement nor NDSU Foundation holds PCI DSS certification.

Neither UW Medicine Advancement nor NDSU Foundation holds HIPAA certification.

Neither UW Medicine Advancement nor NDSU Foundation holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

Versa SASE Client for Windows versions released between 7.8.7 and 7.9.4 contain a local privilege escalation vulnerability in the audit log export functionality. The client communicates user-controlled file paths to a privileged service, which performs file system operations without impersonating the requesting user. Due to improper privilege handling and a time-of-check time-of-use race condition combined with symbolic link and mount point manipulation, a local authenticated attacker can coerce the service into deleting arbitrary directories with SYSTEM privileges. This can be exploited to delete protected system folders such as C:\\Config.msi and subsequently achieve execution as NT AUTHORITY\\SYSTEM via MSI rollback techniques.

Risk Information
cvss4
Base: 8.5
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to unauthorized modification of data due to a missing capability check on the 'cs_update_application_status_callback' function in all versions up to, and including, 7.7. This makes it possible for authenticated attackers, with Candidate-level access and above, to inject cross-site scripting into the 'status' parameter of applied jobs for any user.

Risk Information
cvss3
Base: 7.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Description

The WP JobHunt plugin for WordPress, used by the JobCareer theme, is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 7.7 via the 'cs_update_application_status_callback' due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Candidate-level access and above, to send a site-generated email with injected HTML to any user.

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Description

The FiboSearch – Ajax Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `thegem_te_search` shortcode in all versions up to, and including, 1.32.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This vulnerability requires TheGem theme (premium) to be installed with Header Builder mode enabled, and the FiboSearch "Replace search bars" option enabled for TheGem integration.

Risk Information
cvss3
Base: 5.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Description

The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.0 via the ajax_get_members function. This is due to the use of a predictable low-entropy token (5 hex characters derived from md5 of post ID) to identify member directories and insufficient authorization checks on the unauthenticated AJAX endpoint. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, display names, user roles (including administrator accounts), profile URLs, and user IDs by enumerating predictable directory_id values or brute-forcing the small 16^5 token space.

Risk Information
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N