McMenamins
| Primary URL | Location | Industry | mcmenamins[.]com |
Country
United States of America
|
Hospitality & Leisure
|
|---|
Profile
McMenamins is identified as a regional brewery and hospitality chain with its headquarters located in the United States of America. The organisation combines beer production with hospitality services. This dual focus distinguishes it from entities that concentrate solely on brewing or solely on hospitality. Its regional character indicates that its operations are confined to a specific geographic area within the country.
The organisation’s distinguishing attributes stem from its integration of brewing and hospitality services under a single brand. This integration enables the organisation to manage quality and presentation from production to service. Such vertical alignment is a notable competency that supports a consistent guest experience across its locations. The regional scope allows it to tailor offerings to local tastes while maintaining a cohesive brand identity.
Structural information about ownership or parent‑subsidiary relationships is not provided in the source material. Consequently, any description of corporate governance or affiliations would be speculative and must be omitted. The available data therefore focuses on the organisation’s operational profile rather than its financial or equity structure.
On December 12, 2021, McMenamins experienced a Conti ransomware attack that encrypted its servers, workstations, and point‑of‑sale systems. The breach prompted an immediate shutdown of IT infrastructure and payment processing to contain the malware’s spread. As a result, the chain was forced to operate on a cash‑only basis and temporarily halted gift‑card sales while systems were being restored.
Initial assessments indicated that customer payment data managed by third‑party processors was not compromised, but employee information—including names, Social Security numbers, bank details, and benefits records—was potentially exposed. In response, McMenamins offered identity‑protection services to affected staff members. The incident also raised suspicions of corporate data theft, although this aspect remained unconfirmed. The company engaged the Federal Bureau of Investigation and external cybersecurity experts to investigate the attack’s scope and origin.
