Company Details
encompasshealth
14,263
142,805
62
encompasshealth.com
0
ENC_2630671
In-progress

Encompass Health Company CyberSecurity Posture
encompasshealth.comEncompass Health is the largest owner and operator of rehabilitation hospitals in the United States. With a national footprint that includes 158 hospitals in 37 states and Puerto Rico, the Company provides high-quality, compassionate rehabilitative care for patients recovering from a major injury or illness, using advanced technology and innovative treatments to maximize recovery. Encompass Health is ranked as one of Fortune’s 100 Best Companies to Work For and Modern Healthcare’s Best Places to Work in Healthcare.
Company Details
encompasshealth
14,263
142,805
62
encompasshealth.com
0
ENC_2630671
In-progress
Between 750 and 799

Encompass Health Global Score (TPRM)XXXX



No incidents recorded for Encompass Health in 2025.
No incidents recorded for Encompass Health in 2025.
No incidents recorded for Encompass Health in 2025.
Encompass Health cyber incidents detection timeline including parent company and subsidiaries

Encompass Health is the largest owner and operator of rehabilitation hospitals in the United States. With a national footprint that includes 158 hospitals in 37 states and Puerto Rico, the Company provides high-quality, compassionate rehabilitative care for patients recovering from a major injury or illness, using advanced technology and innovative treatments to maximize recovery. Encompass Health is ranked as one of Fortune’s 100 Best Companies to Work For and Modern Healthcare’s Best Places to Work in Healthcare.


Adventist Health is a faith-inspired, nonprofit integrated health system serving more than 100 communities on the West Coast and Hawaii with over 440 sites of care. Founded on Adventist heritage and values, Adventist Health provides care in hospitals, clinics, home care agencies, hospice agencies, a

A world-leading integrated healthcare provider, IHH believes that making a difference starts with our aspiration to Care. For Good. Our team of 65,000 people commit to deliver greater good to our patients, people, the public and our planet, as we live our purpose each day to touch lives and trans

Our mission is to improve the health and well-being of North Carolinians and others whom we serve. We accomplish this by providing leadership and excellence in the interrelated areas of patient care, education and research. UNC Health and its 33,000 employees, continue to serve as North Carolina’s
Sutter Health is a not-for-profit, people-centered healthcare system providing comprehensive care throughout California. Sutter Health is committed to innovative, high-quality patient care and community partnerships, and innovative, high-quality patient care. Today, Sutter Health is pursuing a bold

UMass Memorial Health is the health and wellness partner of the people of Central Massachusetts. Through pain and pandemics, our commitment to our communities never wanes. We use knowledge and innovation to create breakthrough medicine, to create jobs, and to make life better for those we serve. We

Atrium Health Wake Forest Baptist is a nationally recognized academic medical center and health system based in Winston-Salem, NC, part of Advocate Health, the third-largest nonprofit health system in the United States. Atrium Health Wake Forest Baptist’s two main components are an integrated clin

At Johnson & Johnson MedTech, we are working to solve the world’s most pressing healthcare challenges through innovations at the intersection of biology and technology. With deep expertise in surgery, orthopaedics, cardiovascular, and vision, we design healthcare solutions that are smarter, less inv
Guided by the needs of our patients and their families, Massachusetts General Hospital aims to deliver the very best health care in a safe, compassionate environment; to advance that care through innovative research and education; and, to improve the health and well-being of the diverse communitie
UPMC is a world-renowned, nonprofit health care provider and insurer committed to delivering exceptional, people-centered care and community services. Headquartered in Pittsburgh and affiliated with the University of Pittsburgh Schools of the Health Sciences, UPMC is shaping the future of health thr
.png)
A building boom of inpatient rehabilitation projects is spreading across the country as healthcare organizations rush to meet escalating...
Vanderbilt Health and Encompass Health announced plans to build a 40-bed inpatient rehabilitation hospital near Nashville, Tennessee.
Encompass Health (NYSE: EHC) and Vanderbilt Health announced plans to build a freestanding, 40-bed inpatient rehabilitation hospital in...
BIRMINGHAM, Ala. and LEBANON, Tenn. , Nov. 25, 2025 /PRNewswire/ -- Encompass Health Corp. (NYSE: EHC), the nation's largest owner and...
The facility will be the third in Indiana for Encompass Health Corp., the nation's largest owner and operator of inpatient rehabilitation...
The 50-bed hospital in Fishers, Indiana will feature private rooms, advanced therapy gym, in-house dialysis, therapy courtyard and is...
BIRMINGHAM, Ala. and FISHERS, Ind. , Nov. 21, 2025 /PRNewswire/ -- Encompass Health Corp. (NYSE: EHC) today announced plans to build a...
A conservative federal appeals court judge is urging his court to revisit its own precedent in order to address the "serious constitutional...
Health care services provider Encompass Health (NYSE:EHC) met Wall Street's revenue expectations in Q3 CY2025, with sales up 9.4% year on...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Encompass Health is http://encompasshealth.com/.
According to Rankiteo, Encompass Health’s AI-generated cybersecurity score is 785, reflecting their Fair security posture.
According to Rankiteo, Encompass Health currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Encompass Health is not certified under SOC 2 Type 1.
According to Rankiteo, Encompass Health does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Encompass Health is not listed as GDPR compliant.
According to Rankiteo, Encompass Health does not currently maintain PCI DSS compliance.
According to Rankiteo, Encompass Health is not compliant with HIPAA regulations.
According to Rankiteo,Encompass Health is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Encompass Health operates primarily in the Hospitals and Health Care industry.
Encompass Health employs approximately 14,263 people worldwide.
Encompass Health presently has no subsidiaries across any sectors.
Encompass Health’s official LinkedIn profile has approximately 142,805 followers.
Encompass Health is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, Encompass Health does not have a profile on Crunchbase.
Yes, Encompass Health maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/encompasshealth.
As of December 11, 2025, Rankiteo reports that Encompass Health has not experienced any cybersecurity incidents.
Encompass Health has an estimated 30,929 peer or competitor companies worldwide.
Total Incidents: According to Rankiteo, Encompass Health has faced 0 incidents in the past.
Incident Types: The types of cybersecurity incidents that have occurred include .
.png)
FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. Versions prior to 16.0.96 and 17.0.1 through 17.0.9 have a weak default password. By default, this is a 6 digit numeric value which can be brute forced. (This is the app_password parameter). Depending on local configuration, this password could be the extension, voicemail, user manager, DPMA or EPM phone admin password. This issue is fixed in versions 16.0.96 and 17.0.10.
Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided by the caller using PDO::prepare() + execute() without semantic restrictions. This is consistent with the name (“write tool”), but in an LLM/agent context it becomes a high-risk capability: prompt injection or indirect prompt manipulation can cause execution of destructive queries such as DROP TABLE, TRUNCATE, DELETE, ALTER, or privilege-related statements (subject to DB permissions). Deployments that expose an agent with MySQLWriteTool enabled to untrusted input and/or run the tool with a DB user that has broad privileges are impacted. This issue is fixed in version 2.8.12.
Neuron is a PHP framework for creating and orchestrating AI Agents. Versions 2.8.11 and below use MySQLSelectTool, which is vulnerable to Read-Only Bypass. MySQLSelectTool is intended to be a read-only SQL tool (e.g., for LLM agent querying, however, validation based on the first keyword (e.g., SELECT) and a forbidden-keyword list does not block file-writing constructs such as INTO OUTFILE / INTO DUMPFILE. As a result, an attacker who can influence the tool input (e.g., via prompt injection through a public agent endpoint) may write arbitrary files to the DB server if the MySQL/MariaDB account has the FILE privilege and server configuration permits writes to a useful location (e.g., a web-accessible directory). This issue is fixed in version 2.8.12.
Okta Java Management SDK facilitates interactions with the Okta management API. In versions 11.0.0 through 20.0.0, race conditions may arise from concurrent requests using the ApiClient class. This could cause a status code or response header from one request’s response to influence another request’s response. This issue is fixed in version 20.0.1.
The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.