GROUP 1 AUTOMOTIVE INC
ent_019de5fec360651487fbf36da90bae49
Disclosures
3
SEC 10-K Item 1C · SEC 8-K · State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
—
no filed count in sample
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- GROUP 1 AUTOMOTIVE INC
- Normalized
- group 1 automotive— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0001031203
- Domain
- None on record
Disclosure history (3)newest first
- FEDERALSEC 10-K Item 1Cas victim2026-02-13
This 10-K Item 1C filing describes the registrant's cybersecurity risk management processes, including risk assessment, incident response, training, access controls, and encryption. The company states it is not aware of any cybersecurity threats that have materially affected or are reasonably likely to materially affect the Company. No specific breach incident is disclosed.
- FEDERALSEC 8-Kas victim2024-06-24
On June 19, 2024, Group 1 Automotive, Inc. was informed of a cybersecurity incident at CDK Global LLC, its SaaS dealer management system provider. The CDK incident caused service outages disrupting Group 1's U.S. dealership business applications. U.K. dealerships were unaffected. Group 1 activated cyber incident response procedures and isolated its systems from CDK's platform. U.S. dealerships continued operating using alternative processes. Filed as Item 8.01 (Other Events).
- 🐻California State AGas victim2018-11-27
On November 1, 2018, Group 1 Automotive, Inc. experienced a data security incident where personal information of some employees was inadvertently and temporarily exposed to the administrator of another Paylocity client due to a misdelivery error. The exposed information included names and Social Security numbers. The information was not viewed or compromised. Paylocity investigated, provided supplemental training, and implemented systemic fixes. Affected individuals were offered 12 months of identity protection.