Company Details
ssm-health-care
19,512
89,663
62
ssmhealth.com
19
SSM_7239795
Completed


SSM Health Vendor Cyber Rating & Cyber Score
ssmhealth.comSSM Health is a Catholic, not-for-profit, fully integrated health system dedicated to advancing innovative, sustainable, and compassionate care for patients and communities throughout the Midwest and beyond. The organization’s 40,000 team members and 13,900 providers are committed to fulfilling SSM Health’s Mission: “Through our exceptional health care services, we reveal the healing presence of God.” With care delivery sites in Illinois, Missouri, Oklahoma and Wisconsin, SSM Health includes hospitals, physician offices, outpatient and virtual care services, comprehensive home care and hospice services, a fully transparent pharmacy benefit company, a health insurance company and an accountable care organization. It is one of the largest employers in every community it serves. For more information, visit ssmhealth.com Visit jobs.ssmhealth.com to fulfill your calling with SSM Health. Together – We Care.
Company Details
ssm-health-care
19,512
89,663
62
ssmhealth.com
19
SSM_7239795
Completed
Between 700 and 749

SSM Health Global Score (TPRM)XXXX

Description: SSM Health Care Corporation, a major U.S. healthcare provider, was targeted in a cyberattack allegedly orchestrated by Owen Flowers, one of the two British teenagers charged in the UK for cybercrimes. The attack involved infiltration and attempted damage to SSM Health’s systems, potentially compromising sensitive healthcare data, operational integrity, or patient services. While the exact extent of the breach remains undisclosed, the involvement of a healthcare entity suggests high-risk exposure, including possible disruption to medical services, unauthorized access to patient records (e.g., personal, financial, or treatment-related data), or systemic outages. The attack’s connection to a broader campaign including attempts against Sutter Health highlights its coordinated and malicious nature. Given the critical role of healthcare infrastructure, such incidents can threaten patient safety, erode trust in the organization, and trigger regulatory penalties. The case’s international dimension (UK-US) and the defendants’ alleged ties to other high-profile attacks (e.g., Transport for London) underscore the severity of the threat.
Description: The U.S. Department of Health and Human Services reported that SSM Health Insurance Company experienced a data breach on December 11, 2020. This breach affected 4,492 individuals and involved paper/films. There was no business associate present during the breach.


No incidents recorded for SSM Health in 2026.
No incidents recorded for SSM Health in 2026.
No incidents recorded for SSM Health in 2026.
SSM Health cyber incidents detection timeline including parent company and subsidiaries

SSM Health is a Catholic, not-for-profit, fully integrated health system dedicated to advancing innovative, sustainable, and compassionate care for patients and communities throughout the Midwest and beyond. The organization’s 40,000 team members and 13,900 providers are committed to fulfilling SSM Health’s Mission: “Through our exceptional health care services, we reveal the healing presence of God.” With care delivery sites in Illinois, Missouri, Oklahoma and Wisconsin, SSM Health includes hospitals, physician offices, outpatient and virtual care services, comprehensive home care and hospice services, a fully transparent pharmacy benefit company, a health insurance company and an accountable care organization. It is one of the largest employers in every community it serves. For more information, visit ssmhealth.com Visit jobs.ssmhealth.com to fulfill your calling with SSM Health. Together – We Care.

Cencora, a company building on the legacy of AmerisourceBergen, is a leading global pharmaceutical solutions organization centered on improving the lives of people and animals around the world. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, w

Answering God's call to bring health, healing and hope to all. Ascension is one of the nation’s leading non-profit and Catholic health systems, with a Mission of delivering compassionate, personalized care to all, with special attention to those most vulnerable. In FY2025, Ascension provided $1.7

American Medical Response, America’s leading provider of medical transportation, has a single mission: making a difference by caring for people in need. AMR solutions include 911 emergency, interfacility transportation, event medical, advanced & basic life support transports and federal disaster res

At Optum, we take a bold approach to solving the challenges of healthcare. We call it Healthy Optumism — the realistic yet hopeful belief that when you’re grounded in real world needs, human connection and data-driven expertise, better is always possible. We use advanced technology to connect people

Com 80 anos de experiência, a Hapvida é hoje a maior empresa de saúde integrada da América Latina. A companhia, que possui mais de 73 mil colaboradores, atende 16 milhões de beneficiários de saúde e odontologia espalhados pelas cinco regiões do Brasil. Todo o aparato foi construído a partir de uma
DaVita means “to give life,” reflecting our proud history as leaders in dialysis—an essential, life-sustaining treatment for those living with end stage kidney disease (ESKD). Today, our mission is to minimize the devastating impacts of kidney disease across the full spectrum of kidney health care.

Rochester Regional Health, headquartered in Rochester, NY, is an integrated health services organization serving the people of Western New York, the Finger Lakes, St. Lawrence County, and beyond. We are dedicated to helping our community stay healthy and live fulfilling lives. Together, we find the
Tenet Healthcare Corporation (NYSE: THC) is a diversified healthcare services company headquartered in Dallas. Our care delivery network includes United Surgical Partners International, the largest ambulatory platform in the country, which operates ambulatory surgery centers and surgical hospitals.

Mayo Clinic has expanded and changed in many ways, but our values remain true to the vision of our founders. Our primary value – The needs of the patient come first – guides our plans and decisions as we create the future of health care. Join us and you'll find a culture of teamwork, professionalism
.png)
Access to health care can be a challenge for many families, especially those managing chronic conditions.
Protera Health, a physician-led, multidisciplinary musculoskeletal (MSK) care company, and SSM Health at Work, the employer solutions...
Oklahoma took a big step forward in expanding mental health care access in the metro on Wednesday after the Oklahoma Department of Mental...
The St. Louis Business 500 highlights some of the metro area's most impactful, innovative, and inspirational leaders.
Navitus, the nation's first and largest transparent, pass-through pharmacy benefit manager (PBM), today announced it has earned HITRUST r2...
The cybersecurity and privacy regulation update proposed in January would place "extreme and unnecessary regulatory burden" on providers.
Bronson is proud to welcome three new leaders to its executive team who bring a wealth of collective experience in healthcare strategy and...
SSM Health agreed to a class action lawsuit settlement to resolve claims that it disclosed patients' private information to third parties without their...
Cybersecurity failures are putting vulnerable hospitals at risk, prompting healthcare leaders to call for stronger national policies and...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of SSM Health is http://www.ssmhealth.com.
According to Rankiteo, SSM Health’s AI-generated cybersecurity score is 745, reflecting their Moderate security posture.
According to Rankiteo, SSM Health currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, SSM Health has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, SSM Health is not certified under SOC 2 Type 1.
According to Rankiteo, SSM Health does not hold a SOC 2 Type 2 certification.
According to Rankiteo, SSM Health is not listed as GDPR compliant.
According to Rankiteo, SSM Health does not currently maintain PCI DSS compliance.
According to Rankiteo, SSM Health is not compliant with HIPAA regulations.
According to Rankiteo,SSM Health is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
SSM Health operates primarily in the Hospitals and Health Care industry.
SSM Health employs approximately 19,512 people worldwide.
SSM Health presently has no subsidiaries across any sectors.
SSM Health’s official LinkedIn profile has approximately 89,663 followers.
SSM Health is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
Yes, SSM Health has an official profile on Crunchbase, which can be accessed here: https://www.crunchbase.com/organization/ssm-health-cardinal-glennon-children-s-hospital.
Yes, SSM Health maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/ssm-health-care.
As of March 30, 2026, Rankiteo reports that SSM Health has experienced 2 cybersecurity incidents.
SSM Health has an estimated 32,295 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach and Cyber Attack.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with national crime agency (nca), and .
Title: SSM Health Insurance Data Breach
Description: The U.S. Department of Health and Human Services reported that SSM Health Insurance Company experienced a data breach due to unauthorized access/disclosure on December 11, 2020, affecting 4,492 individuals. The breach involved paper/films and did not have a business associate present.
Date Detected: 2020-12-11
Type: Data Breach
Attack Vector: Unauthorized Access/Disclosure
Title: Cyberattack on Transport for London (TfL) and Alleged Attacks on U.S. Healthcare Companies by British Teenagers
Description: Two British teenagers, Thalha Jubair (19) and Owen Flowers (18), were charged under the Computer Misuse Act for a cyberattack on Transport for London (TfL) in 2024. Flowers is also accused of conspiring to infiltrate and damage U.S. healthcare entities SSM Health Care Corporation and Sutter Health. Both pleaded not guilty in a U.K. court. The trial is scheduled for June 8, 2026, with both defendants remanded in custody. The U.S. DOJ has not publicly filed charges against Flowers, while charges against Jubair were unsealed in September 2024.
Date Publicly Disclosed: 2024-09
Type: cyberattack
Threat Actor: Thalha JubairOwen Flowers
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Brand Reputation Impact: potential reputational damage to TfLpotential reputational damage to SSM Health Care Corporationpotential reputational damage to Sutter Health
Legal Liabilities: Computer Misuse Act charges (U.K.)potential U.S. charges for healthcare attacks
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Paper/Films.

Entity Name: SSM Health Insurance Company
Entity Type: Health Insurance Company
Industry: Healthcare
Customers Affected: 4,492

Entity Name: Transport for London (TfL)
Entity Type: government agency
Industry: transportation
Location: London, U.K.

Entity Name: SSM Health Care Corporation
Entity Type: private organization
Industry: healthcare
Location: U.S.

Entity Name: Sutter Health
Entity Type: private organization
Industry: healthcare
Location: U.S.

Third Party Assistance: National Crime Agency (Nca).
Third-Party Assistance: The company involves third-party assistance in incident response through National Crime Agency (NCA), .

Type of Data Compromised: Paper/Films
Number of Records Exposed: 4,492

Regulations Violated: Computer Misuse Act (U.K.),
Legal Actions: criminal charges filed (U.K.), potential extradition or U.S. charges,
Ensuring Regulatory Compliance: The company ensures compliance with regulatory requirements through criminal charges filed (U.K.), potential extradition or U.S. charges, .

Source: U.S. Department of Health and Human Services

Source: The Record

Source: BBC (Neil Henderson)

Source: U.S. Department of Justice (unsealed charges for Jubair)
Date Accessed: 2024-09
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: U.S. Department of Health and Human Services, and Source: The Record, and Source: BBC (Neil Henderson), and Source: U.S. Department of Justice (unsealed charges for Jubair)Date Accessed: 2024-09.

Investigation Status: ongoing (trial scheduled for June 8, 2026)

High Value Targets: Tfl, Ssm Health Care Corporation, Sutter Health,
Data Sold on Dark Web: Tfl, Ssm Health Care Corporation, Sutter Health,
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as National Crime Agency (Nca), .
Last Attacking Group: The attacking group in the last incident was an Thalha JubairOwen Flowers.
Most Recent Incident Detected: The most recent incident detected was on 2020-12-11.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2024-09.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was national crime agency (nca), .
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 4.5K.
Most Significant Legal Action: The most significant legal action taken for a regulatory violation was criminal charges filed (U.K.), potential extradition or U.S. charges, .
Most Recent Source: The most recent source of information about an incident are BBC (Neil Henderson), U.S. Department of Health and Human Services, U.S. Department of Justice (unsealed charges for Jubair) and The Record.
Current Status of Most Recent Investigation: The current status of the most recent investigation is ongoing (trial scheduled for June 8, 2026).
.png)
A weakness has been identified in code-projects Simple Food Order System 1.0. Affected is an unknown function of the file register-router.php of the component Parameter Handler. Executing a manipulation of the argument Name can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
A security flaw has been discovered in code-projects Simple Food Order System 1.0. This impacts an unknown function of the file /all-tickets.php of the component Parameter Handler. Performing a manipulation of the argument Status results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
A vulnerability was identified in elecV2 elecV2P up to 3.8.3. This affects the function eAxios of the file /mock of the component URL Handler. Such manipulation of the argument req leads to server-side request forgery. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.
A vulnerability was determined in elecV2 elecV2P up to 3.8.3. The impacted element is an unknown function of the file /logs of the component Endpoint. This manipulation of the argument filename causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.
A vulnerability was found in elecV2 elecV2P up to 3.8.3. The affected element is the function path.join of the file /log/ of the component Wildcard Handler. The manipulation results in path traversal. The attack may be performed from remote. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.