Constellation
ent_c8babf098fd2d87f307bee1f
Disclosures
4
SEC 10-K Item 1C · State AG · 4 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
1,105
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Constellation
- Normalized
- constellation— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 969500SDB8DSPXO2V233
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- constellation.com
Disclosure history (4)newest first
- FEDERALSEC 10-K Item 1Cas victim2024-02-27
Constellation's Form 10-K Item 1C cybersecurity disclosure describes the company's risk management program, NIST CSF alignment, NERC/NRC compliance, board oversight structure, and CIO/CISO governance roles. The filing explicitly states that risks from cyber threats have not materially affected the company's business strategy, results of operations, or financial condition to date. No specific cybersecurity incident is disclosed.
- ⛰️New Hampshire State AGas victim2023-05-25
Constellation Software Inc. reported an unauthorized third-party access to its network between Feb 27 and Apr 3, 2023. The attacker viewed and took files containing personal information. Constellation engaged forensic investigators, notified law enforcement, isolated systems, and offered 12 months of credit monitoring to affected individuals.
- 🦞Maine State AGas victim2023-05-25
Constellation Software Inc. reported an external system breach (hacking) occurring between February 27, 2023, and April 3, 2023. The incident affected 1,105 individuals, including 3 Maine residents. Acquired data included names and financial account or credit/debit card numbers (with security codes/PINs). The company provided written notification on May 8, 2023, and offered one year of credit monitoring and identity protection services via TransUnion.
- 🍁Vermont State AGas victim2023-05-12
Constellation Software Inc. disclosed a cybersecurity incident where an unauthorized third party accessed systems between Feb 27 and Apr 3, 2023. The attacker viewed and took files containing personal information. Constellation retained a cybersecurity firm, notified law enforcement, isolated systems, and provided 12 months of credit monitoring to affected individuals.