
Norton Healthcare Company Cyber Security Posture
nortonhealthcare.comNorton Healthcare is a leader in serving adult and pediatric patients from throughout Greater Louisville, Southern Indiana, the commonwealth of Kentucky and beyond. The not-for-profit hospital and health care system is Louisvilleโs second largest employer, with more than 18,600 employees, over 1,750 employed medical providers and nearly 3,000 total providers on its medical staff. Norton Healthcare has five Louisville-based hospitals with a total of 1,907 licensed beds. Norton West Louisville Hospital is scheduled to open in late 2024. The system also includes eight outpatient centers, 18 Norton Immediate Care Centers, eight Norton Prompt Care at Walgreens clinics and an expanded telehealth program. It provides care at more than 350 locations throughout Kentucky and Southern Indiana. The hospitals provide inpatient and outpatient general care as well as specialty care including heart, neuroscience, cancer, orthopedic, womenโs and pediatric services. A strong research program provides access to clinical trials in a multitude of areas. Norton Kingโs Daughtersโ Health in Madison, Indiana, also is part of Norton Healthcare. Read more at KDHMadison.org/About-Us. Since 2018, Norton Healthcareโs five Louisville hospitals and Norton Cancer Institute have been named LGBTQ+ Healthcare Equality Leaders by the Human Rights Campaign Foundation, earning a top score of 100 on the Healthcare Equality Index (HEI). Norton Healthcare also was recognized in 2022 as one of the โBest Places to Work for Disability Inclusionโ by the Disability Equality Index. To learn more about career opportunities, visit NortonHealthcareCareers.com.
Norton Healthcare Company Details
norton-healthcare
9543 employees
45636.0
62
Hospitals and Health Care
nortonhealthcare.com
15
NOR_3293484
In-progress

Between 700 and 800
This score is AI-generated and less favored by cyber insurers, who prefer the TPRM score.

.png)

Norton Healthcare Company Scoring based on AI Models
Model Name | Date | Description | Current Score Difference | Score |
---|---|---|---|---|
AVERAGE-Industry | 03-12-2025 | This score represents the average cybersecurity rating of companies already scanned within the same industry. It provides a benchmark to compare an individual company's security posture against its industry peers. | N/A | Between 700 and 800 |
Norton Healthcare Company Cyber Security News & History
Entity | Type | Severity | Impact | Seen | Url ID | Details | View |
---|---|---|---|---|---|---|---|
Norton Healthcare | Ransomware | 100 | 4 | 05/2023 | NOR161925623 | Link | |
Rankiteo Explanation : Attack with significant impact with customers data leaksDescription: An attack that appeared to involve ransomware was reported by Norton Healthcare in Kentucky and Indiana. Although they acknowledged receiving faxed threats and demands, they never referred to the situation as a ransomware occurrence. 4.7 TB of data, according to BlackCat, were also exfiltrated.Quite a bit of information, indeed. Examining the several files BlackCat provided as evidence tends to support their assertions regarding the kinds of files they obtained. Although there were no patient photos in the sample, the mention of the images serves as a sobering reminder of what BlackCat did to the breast cancer patients at Lehigh Valley Health Network whose naked images were leaked. |
Norton Healthcare Company Subsidiaries

Norton Healthcare is a leader in serving adult and pediatric patients from throughout Greater Louisville, Southern Indiana, the commonwealth of Kentucky and beyond. The not-for-profit hospital and health care system is Louisvilleโs second largest employer, with more than 18,600 employees, over 1,750 employed medical providers and nearly 3,000 total providers on its medical staff. Norton Healthcare has five Louisville-based hospitals with a total of 1,907 licensed beds. Norton West Louisville Hospital is scheduled to open in late 2024. The system also includes eight outpatient centers, 18 Norton Immediate Care Centers, eight Norton Prompt Care at Walgreens clinics and an expanded telehealth program. It provides care at more than 350 locations throughout Kentucky and Southern Indiana. The hospitals provide inpatient and outpatient general care as well as specialty care including heart, neuroscience, cancer, orthopedic, womenโs and pediatric services. A strong research program provides access to clinical trials in a multitude of areas. Norton Kingโs Daughtersโ Health in Madison, Indiana, also is part of Norton Healthcare. Read more at KDHMadison.org/About-Us. Since 2018, Norton Healthcareโs five Louisville hospitals and Norton Cancer Institute have been named LGBTQ+ Healthcare Equality Leaders by the Human Rights Campaign Foundation, earning a top score of 100 on the Healthcare Equality Index (HEI). Norton Healthcare also was recognized in 2022 as one of the โBest Places to Work for Disability Inclusionโ by the Disability Equality Index. To learn more about career opportunities, visit NortonHealthcareCareers.com.
Access Data Using Our API

Get company history
.png)
Norton Healthcare Cyber Security News
Norton Healthcare ransomware attack exposes 2.5M people
Ransomware attacks are soaring in the healthcare sector, impacting more than 88 million people in the first 10 months of 2023, according to HHS.
Kentucky Health System Confirms Ransomware Attack Impacting 2.5M Individuals
Kentucky-based Norton Healthcare confirmed that a May 2023 ransomware attack on the health system impacted 2.5 million individuals.
'We regret any inconvenience this incident may cause you': Norton Healthcare offers free identity protection
Months after Norton Healthcare first reported a "cyber incident," letters have been sent out warning people about a data breach.
Hackers claim responsibility for Norton Healthcare 'cyber event' as Louisville patients await answers
Hackers have claimed responsibility for the Norton Healthcare "cyber event" that took many of the company's systems offline May 9 andย ...
Several Louisville-area hospitals, services, companies impacted by global IT outage
Cybersecurity firm CrowdStrike said the outage occurred when it deployed a faulty update to computers running Microsoft Windows. Advertisement.
Norton Healthcare is a top health care organization on list of Best Places to Work in IT
At No. 11, Norton Healthcare has been named a top-ranking health care organization nationally and the highest in Kentucky among largeย ...
Attorney weighs in on Norton ransomware attack letter
Around 2.5 million people received a letter informing them their information may have been stolen in a ransomware attack on Norton Healthcare.
US healthcare giant Norton says hackers stole millions of patients' data during ransomware attack
Kentucky-based nonprofit healthcare system Norton Healthcare has confirmed that hackers accessed the personal data of millions of patientsย ...
Kentucky healthcare giant says 2.5 million people affected by May ransomware attack
The attack was claimed on May 25 by the AlphV/Black Cat ransomware gang, which posted lengthy updates criticizing the company for refusing toย ...

Norton Healthcare Similar Companies

BJC Health System
BJC Health System is one of the largest nonprofit health care organizations in the United States and the largest in the state of Missouri, serving urban, suburban, and rural communities across Missouri, southern Illinois, eastern Kansas, and the greater Midwest region. One of the largest employers i

Brigham and Women's Hospital
Boston's Brigham and Women's Hospital (BWH) is an international leader in virtually every area of medicine and has been the site of pioneering breakthroughs that have improved lives around the world. A major teaching hospital of Harvard Medical School, BWH has a legacy of excellence that continues t

Alcura
Alcura partners with healthcare companies, professionals and organizations to provide innovative personalized solutions that improve patient care and treatment experience. We help deliver medicines, run clinical trials, and outsource patient support services for secondary care. Alcura operates in

Lifespan
Formed in 1994, Brown University Health (Formerly Lifespan) is a not-for-profit health system based in Providence, RI comprising three teaching hospitals of The Warren Alpert Medical School of Brown University: Rhode Island Hospital and its Hasbro Children's; The Miriam Hospital; and Bradley Hospita

RWJBarnabas Health
RWJBarnabas Health (RWJBH) is the largest, most comprehensive academic health care system in N.J., with a service area covering eight counties with five million people. Our health system includes 12 acute care hospitals (Clara Maass Medical Center; Community Medical Center; Cooperman Barnabas Medica

Cencora
Cencora, a company building on the legacy of AmerisourceBergen, is a leading global pharmaceutical solutions organization centered on improving the lives of people and animals around the world. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, w

Frequently Asked Questions
Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
Norton Healthcare CyberSecurity History Information
How many cyber incidents has Norton Healthcare faced?
Total Incidents: According to Rankiteo, Norton Healthcare has faced 1 incident in the past.
What types of cybersecurity incidents have occurred at Norton Healthcare?
Incident Types: The types of cybersecurity incidents that have occurred incident Ransomware.
Incident Details
Can you provide details on each incident?

Incident : Ransomware
Title: Norton Healthcare Data Breach
Description: An attack that appeared to involve ransomware was reported by Norton Healthcare in Kentucky and Indiana. Although they acknowledged receiving faxed threats and demands, they never referred to the situation as a ransomware occurrence. 4.7 TB of data, according to BlackCat, were also exfiltrated.
Type: Ransomware
Threat Actor: BlackCat
Motivation: Financial Gain
What are the most common types of attacks the company has faced?
Common Attack Types: The most common types of attacks the company has faced is Ransomware.
Impact of the Incidents
What was the impact of each incident?

Incident : Ransomware NOR161925623
Data Compromised: 4.7 TB
Which entities were affected by each incident?

Incident : Ransomware NOR161925623
Entity Type: Healthcare Provider
Industry: Healthcare
Location: Kentucky, Indiana
Data Breach Information
What type of data was compromised in each breach?

Incident : Ransomware NOR161925623
Data Exfiltration: 4.7 TB
Ransomware Information
Was ransomware involved in any of the incidents?

Incident : Ransomware NOR161925623
Data Exfiltration: 4.7 TB
References
Where can I find more information about each incident?

Incident : Ransomware NOR161925623
Source: Norton Healthcare
Where can stakeholders find additional resources on cybersecurity best practices?
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Norton Healthcare.
Additional Questions
General Information
Who was the attacking group in the last incident?
Last Attacking Group: The attacking group in the last incident was an BlackCat.
Impact of the Incidents
What was the most significant data compromised in an incident?
Most Significant Data Compromised: The most significant data compromised in an incident was 4.7 TB.
Data Breach Information
What was the most sensitive data compromised in a breach?
Most Sensitive Data Compromised: The most sensitive data compromised in a breach was 4.7 TB.
References
What is the most recent source of information about an incident?
Most Recent Source: The most recent source of information about an incident is Norton Healthcare.
What Do We Measure?
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
These are some of the factors we use to calculate the overall score:
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.
