8 unchanged sentences
These processes are managed and monitored by a dedicated information technology team, which is led by our Senior Vice President of Information Technology, and include mechanisms, controls, technologies, systems, and other processes designed to monitor and evaluate our threat environment, prevent or mitigate data loss, theft, misuse, or other security incidents or vulnerabilities affecting the data and maintain a stable information technology environment.
−Removed: Our cybersecurity program is informed by certain industry standards and best practices as outlined by the National Institute of Standards and Technology (“NIST”) Cybersecurity Framework.
+Added: Our cybersecurity program is informed in part by certain industry standards and best practices as outlined by the National Institute of Standards and Technology (“NIST”) Cybersecurity Framework.
We use various tools and methodologies to manage cybersecurity risk that are tested on a regular cadence.
4 unchanged sentences
Any disruption, compromise, or breach of our systems or data due to a cybersecurity threat or incident could adversely affect our operations, customer service, product development, and competitive position.
−Removed: They may also result in a breach of our contractual obligations or legal duties to protect the privacy and confidentiality of our stakeholders.
+Added: They may also result in a breach of our contractual obligations or legal duties to protect the privacy and confidentiality
+Added: of our stakeholders.
Such a breach could expose us to business interruption, lost revenue, ransom payments, remediation costs, liabilities to affected parties, cybersecurity protection costs, lost assets, litigation, regulatory scrutiny and actions, reputational harm, customer dissatisfaction, harm to our vendor relationships, or loss of market share.
1 unchanged sentence
In the last fiscal year, we have not identified risks from known cybersecurity threats, including as a result of any prior cybersecurity incidents, that have materially affected us , but we face certain ongoing cybersecurity risks threats that, if realized, are reasonably likely to materially affect us.
−Removed: Additional information on cybersecurity risks we face is discussed in Part I, Item 1A, “Risk Factors,” under the heading “Our internal information technology systems, or those of any of our CROs, manufacturers, other contractors or consultants, third party service providers, or potential future collaborators, may fail or suffer security or data privacy breaches or other unauthorized or improper access to, use of,
−Removed: or destruction of our proprietary or confidential data, employee data or personal data, which could result in additional costs, loss of revenue, significant liabilities, harm to our brand and material disruption of our operations.”
−Removed: Our Senior Vice President of Information Technology, a certified CISSP, who reports directly to the Chief Financial Officer and has over twenty years of experience managing information technology and cybersecurity, is responsible for assessing and managing cybersecurity risks .
+Added: Additional information on cybersecurity risks we face is discussed in Part I, Item 1A, “Risk Factors,” under the heading “Our internal information technology systems, or those of any of our CROs, manufacturers, other contractors or consultants, third party service providers, or potential future collaborators, may fail or suffer security or data privacy breaches or other unauthorized or improper access to, use of, or destruction of our proprietary or confidential data, employee data or personal data, which could result in additional costs, loss of revenue, significant liabilities, harm to our brand and material disruption of our operations.”
+Added: Our Senior Vice President of Information Technology, a certified CISSP, who reports directly to the Chief Financial Officer and has over 25 years of experience managing information technology and cybersecurity, is responsible for assessing and managing cybersecurity risks .
We consider cybersecurity, along with other significant risks that we face, within our overall enterprise risk management framework .
11 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.