11 unchanged sentences
The Company has also implemented technical safeguards that are designed to protect our information systems from cybersecurity threats, including firewalls, intrusion prevention and detection systems, anti-malware functionality, access controls, and vulnerability and patch management.
+Added: The Company also makes ongoing strategic investments to address cybersecurity risks, including maintaining insurance coverage to mitigate the potential financial consequences of cybersecurity incidents.
Risk Management Personnel
2 unchanged sentences
Each member of the Company’s IT cybersecurity leadership team, comprised of the AMC Director Cybersecurity, the Odeon Group Head of Cyber, Risk and Operations and the AMC SVP & Chief Information Officer, brings 20+ years of IT experience.
−Removed: The Company regularly invests in training on these teams, and key leadership positions hold CISSP certifications.
−Removed: Our senior IT leadership and IT cybersecurity team, with input as appropriate from the Security
−Removed: Committees, oversee our governance programs, tests our compliance with standards, remediate known risks, and direct employee training.
+Added: The Company regularly invests in training for these teams, and key leadership positions hold Certified Information Systems Security Professional certifications.
+Added: Our senior IT leadership and IT cybersecurity team, with input as appropriate from the Security Committees, oversee our governance programs, tests our compliance with standards, remediate known risks, and direct employee training.
Monitoring Cybersecurity Incidents
1 unchanged sentence
The Security Committees, and in particular senior IT leadership, IT cybersecurity and internal audit members serving on the Security Committees, implement and oversee processes for the regular monitoring of our information systems.
−Removed: The Company follows the National Institute of Standards and Technology (“NIST”) framework to design and implement security processes, tools and procedures, and regular system audits identify and lead to prompt remediation of potential vulnerabilities.
+Added: The Company follows the National Institute of Standards and Technology framework to design and implement security processes, tools and procedures, and regular system audits identify and lead to prompt remediation of potential vulnerabilities.
In the event of a cybersecurity incident, senior IT leadership and the Security Committees are equipped with a well-defined incident response plan.
29 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.