COGNIZANT TECHNOLOGY SOLUTIONS CORPORATION
ent_019e5958037b1ad3baba0981b337a6cc
Disclosures
4
SEC 10-K Item 1C · HHS OCR · Leak Site · State AG · 4 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
7,313
nationwide · HHS OCR TX
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- COGNIZANT TECHNOLOGY SOLUTIONS CORPORATION
- Normalized
- cognizant technology— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 5493006IEVQEFQO40L83
- SEC EDGAR CIK
- 0001058290
- Domain
- cognizant.com
Disclosure history (4)newest first
- FEDERALSEC 10-K Item 1Cas victim2026-02-12
Cognizant Technology Solutions Corporation filed its 2025 Form 10-K disclosing no cybersecurity threats that materially affected or are reasonably likely to materially affect its business, results of operations, or financial condition. The filing details a robust cybersecurity risk management program aligned with NIST frameworks and ISO 27001, managed by a dedicated Corporate Security team reporting to the Board via the Audit Committee.
- TEXASHHS OCRas victim2023-08-03
Cognizant Technologies Solutions reported to HHS on 2023-08-03 a Hacking/IT Incident affecting 7313 individuals. Breached information located on Network Server. The business associate compromised PHI including names, DOB, addresses, SSNs, and claims/financial data. Response included credit monitoring, HHS/individual/media notification, and enhanced safeguards.
- GLOBALLeak Siteas victim2022-06-01
cognizant.com
- 🐻California State AGas victim2020-06-17
Cognizant Technology Solutions Corporation reported a ransomware attack occurring April 9-11, 2020, discovered April 20, 2020. Attackers exfiltrated data including SSNs, financial account info, and driver's licenses. Cognizant cooperated with the FBI and offered 12 months of credit monitoring. Approximately 34 Rhode Island residents were notified.
Subsidiary disclosures (newest 10)filed by group companies
◈ These filings were made by or about subsidiaries of COGNIZANT TECHNOLOGY SOLUTIONS CORPORATION — not by COGNIZANT TECHNOLOGY SOLUTIONS CORPORATION itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- ⭐Texas State AGvia TriZetto Provider Solutions2026-06-02
TriZetto Provider Solutions based in Earth City, Missouri, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-11-28 and reported on 2026-06-02. 312,562 Texas residents were affected. 6,974,232 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- 🦞Maine State AGvia TriZetto Provider Solutions2026-03-05
TriZetto Provider Solutions, a healthcare technology company, reported an external system breach (hacking) that occurred on November 19, 2024 and was discovered on November 28, 2025 — approximately one year later. A total of 3,433,965 individuals were affected nationwide, including 1,128 Maine residents. Affected individuals were notified on February 6, 2026. Kroll provided 12 months of single-bureau credit monitoring and identity protection services.
- 🌴South Carolina State AGvia TriZetto Provider Solutions2026-02-20
TriZetto Provider Solutions issued a consumer breach notification to South Carolina residents regarding unauthorized access to personal information. The company offered identity monitoring services and established a call center for affected individuals. No evidence of identity theft or fraud was found at the time of notification.
- 🦫Oregon State AGvia TriZetto Provider Solutions2026-02-11
TriZetto Provider Solutions reported a data breach to the Oregon Attorney General. The breach was reported on 2026-02-11. The breach occurred during 11/19/2024. The breach was discovered on 1/1/000111/28/2025. 3,433,965 individuals were affected. Notice was sent on 1/1/0001.
- ⛰️New Hampshire State AGvia TriZetto Provider Solutions2026-02-11
TriZetto Provider Solutions (TPS) notified the New Hampshire Attorney General of a security incident involving unauthorized access to a web portal used by healthcare providers. TPS became aware of suspicious activity on October 2, 2025, and determined that an unauthorized actor accessed historical eligibility transaction reports containing PHI and PII (names, SSNs, DOB) starting November 2024. TPS engaged Mandiant, contained the threat, and notified approximately 1,795 New Hampshire residents. Remediation included portal security review and offering 12 months of credit monitoring.
- ⭐Texas State AGvia TriZetto Provider Solutions2026-02-09
TriZetto Provider Solutions based in Earth City, Missouri, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-11-28 and reported on 2026-02-09. 171,158 Texas residents were affected. 3,433,965 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Medical Information;Health Insurance Information;Date of Birth. Consumers were notified via U.S. Mail.
- MOHHS OCRvia TriZetto Provider Solutions2026-02-06
TriZetto Provider Solutions reported to HHS on 2026-02-06 a Hacking/IT Incident affecting 3433965 individuals. Breached information located on Network Server. Business Associate present.
- 🦬Montana State AGvia TriZetto Provider Solutions2026-02-06
TriZetto Provider Solutions reported a data breach to the Montana Attorney General. The breach was reported on 2026-02-06. The breach occurred from 11/01/2024 to 11/30/2024. 8,072 Montana residents were affected.
- 🏎️Indiana State AGvia TriZetto Provider Solutions2026-02-06
TriZetto Provider Solutions reported a data breach to the Indiana Attorney General. The breach occurred on 2025-10-02 and was reported on 2026-02-06. 7,155 Indiana residents were affected. 3,433,965 individuals affected in total.
- 🍁Vermont State AGvia TriZetto Provider Solutions2026-02-06
TriZetto Provider Solutions notified consumers in multiple states, including Vermont, of a data breach involving unauthorized access to personal information. Affected data included names, addresses, and government IDs. The company offered identity monitoring services and established a call center for inquiries. No evidence of identity theft was found at the time of notification.