Comparison Overview

Richemont

VS

Kering

Richemont

Chemin de la Chênaie 50, Bellevue, Geneva, CH, 1293
Last Update: 2026-04-03
Between 800 and 849

At Richemont, we craft the future. Our unique portfolio includes prestigious Maisons distinguished by their craftsmanship and creativity. Richemont’s ambition is to nurture its Maisons and businesses and enable them to grow and prosper in a responsible, sustainable manner over the long term. Richemont operates in three business areas: Jewellery Maisons with Buccellati, Cartier, Van Cleef & Arpels and Vhernier; Specialist Watchmakers with A. Lange & Söhne, Baume & Mercier, IWC Schaffhausen, Jaeger-LeCoultre, Panerai, Piaget, Roger Dubuis and Vacheron Constantin; and Other, primarily Fashion & Accessories Maisons with Alaïa, Chloé, Delvaux, dunhill, G/FORE, Gianvito Rossi, Montblanc, Peter Millar, Purdey, Serapian as well as Watchfinder & Co. To deliver on its mission of crafting the future, the Group nurtures the distinctive craftsmanship and creativity of its teams, employing a workforce of nearly 40 000 people spanning 136 nationalities across 40 countries in five regions.

NAICS: 4483
NAICS Definition: Jewelry, Luggage, and Leather Goods Stores
Employees: 30,756
Subsidiaries: 5
12-month incidents
0
Known data breaches
0
Attack type number
0

Kering

40, rue de Sèvres, PARIS, 75007, FR
Last Update: 2026-04-01
Between 700 and 749

Kering is a global, family-led luxury group, home to people whose passion and expertise nurture creative Houses across ready-to-wear and couture, leather goods, jewelry, eyewear and beauty: Gucci, Saint Laurent, Bottega Veneta, Balenciaga, McQueen, Brioni, Boucheron, Pomellato, Dodo, Qeelin, Ginori 1735, as well as Kering Eyewear and Kering Beauté. Inspired by their creative heritage, Kering’s Houses design and craft exceptional products and experiences that reflect the Group’s commitment to excellence, sustainability and culture. This vision is expressed in our signature: Creativity is our Legacy.

NAICS: 4483
NAICS Definition: Jewelry, Luggage, and Leather Goods Stores
Employees: 38,974
Subsidiaries: 13
12-month incidents
0
Known data breaches
1
Attack type number
2

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/richemont.jpeg
Richemont
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/kering.jpeg
Kering
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Richemont
100%
Compliance Rate
0/4 Standards Verified
Kering
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Retail Luxury Goods and Jewelry Industry Average (This Year)

No incidents recorded for Richemont in 2026.

Incidents vs Retail Luxury Goods and Jewelry Industry Average (This Year)

No incidents recorded for Kering in 2026.

Incident History — Richemont (X = Date, Y = Severity)

Richemont cyber incidents detection timeline including parent company and subsidiaries

Incident History — Kering (X = Date, Y = Severity)

Kering cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/richemont.jpeg
Richemont
Incidents

No Incident

https://images.rankiteo.com/companyimages/kering.jpeg
Kering
Incidents

Date Detected: 4/2025
Type:Cyber Attack
Attack Vector: Credential Theft (Salesforce Logins), Social Engineering
Motivation: Financial Gain, Data Exfiltration for Secondary Exploitation
Blog: Blog

Date Detected: 6/2024
Type:Breach
Attack Vector: Compromised Cloud Account (Salesforce), Credential Theft/Phishing (likely)
Motivation: Financial Gain (Ransom Demand), Data Theft for Resale
Blog: Blog

FAQ

Richemont company demonstrates a stronger AI Cybersecurity Score compared to Kering company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Kering company has historically faced a number of disclosed cyber incidents, whereas Richemont company has not reported any.

In the current year, Kering company and Richemont company have not reported any cyber incidents.

Neither Kering company nor Richemont company has reported experiencing a ransomware attack publicly.

Kering company has disclosed at least one data breach, while Richemont company has not reported such incidents publicly.

Kering company has reported targeted cyberattacks, while Richemont company has not reported such incidents publicly.

Neither Richemont company nor Kering company has reported experiencing or disclosing vulnerabilities publicly.

Neither Richemont nor Kering holds any compliance certifications.

Neither company holds any compliance certifications.

Kering company has more subsidiaries worldwide compared to Richemont company.

Kering company employs more people globally than Richemont company, reflecting its scale as a Retail Luxury Goods and Jewelry.

Neither Richemont nor Kering holds SOC 2 Type 1 certification.

Neither Richemont nor Kering holds SOC 2 Type 2 certification.

Neither Richemont nor Kering holds ISO 27001 certification.

Neither Richemont nor Kering holds PCI DSS certification.

Neither Richemont nor Kering holds HIPAA certification.

Neither Richemont nor Kering holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X