17 unchanged sentences
(2) our information security team works with our management team in an effort to prioritize our risk management processes and mitigate cybersecurity threats that are more likely to lead to a material impact to our business;
−Removed: (3) our information
−Removed: security and management team evaluates material risks from cybersecurity threats against our overall business objectives and reports to the audit committee for further communication as required, to evaluate our overall enterprise risk.
+Added: (3) our information security and management team evaluates material risks from cybersecurity threats against our overall business objectives and reports to the audit committee for further communication as required, to evaluate our overall enterprise risk.
We use third-party service providers to assist us in identifying potential risks from cybersecurity threats.
7 unchanged sentences
The audit committee, in turn, periodically reports on its review with the board of directors.
−Removed: Management is responsible for day-to-day assessment and management of cybersecurity risks.
−Removed: The Company officer with oversight of Information Technology (“IT”) has primary oversight of material risks from cybersecurity threats.
−Removed: Through November 2024, our Chief Information Officer was responsible for IT and had more than 25 years of experience across various engineering, business and management roles, including leading the development and implementation of information technology strategies and roadmaps for manufacturing automation.
−Removed: After the departure of our Chief Information Officer, our Vice President of Administration has responsibility and oversight for IT.
+Added: The Chief Information Officer is responsible for day-to-day assessment and management of cybersecurity risks and any material risks from cybersecurity threats with oversight by the Chief Financial Officer.
+Added: In March 2025, our new Chief Information Officer assumed responsibilities for IT leveraging over twenty-five years of experience aligning Information Technology organizations to businesses' strategic and operation needs in multiple industries, including construction, engineering, pipeline services, energy, manufacturing, healthcare, insurance, and financial services.
Management assesses our cybersecurity readiness through internal assessment tools as well as third-party control tests, vulnerability assessments, audits and evaluation against industry standards.
3 unchanged sentences
The incident response team works with the Company’s management team to help mitigate and remediate cybersecurity incidents of which they are notified.
−Removed: In addition, the Company’s information security incident response plan includes reporting to the board of directors for certain cybersecurity incidents.
+Added: In addition, the Company’s
+Added: information security incident response plan includes reporting to the board of directors for certain cybersecurity incidents.
Management meets with the audit committee periodically to review our information technology systems and discuss key cybersecurity risks.
1 unchanged sentence
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.