1 unchanged sentence
CYBERSECURITY
−Removed: We maintain various information security processes
−Removed: designed to identify, assess and manage material risks from cybersecurity threats to our critical computer networks, third party hosted
−Removed: services, communications systems, hardware and software, and our critical data, including intellectual property, strategic or competitive
−Removed: in nature, and proprietary or confidential information, including clinical trial data, personal and financial information (“Information
−Removed: Systems and Data”).
−Removed: Our President and Chief Executive Officer works
−Removed: directly with third party service providers, as applicable, to identify, assess and manage the Company’s cybersecurity threats
−Removed: In doing so, he seeks to identify and assess risks from cybersecurity threats by monitoring and evaluating our threat environment
−Removed: and the Company’s risk profile using various methods including, for example, automated and manual tools, accessing reports and
−Removed: services that identify cybersecurity threats, analyzing reports of threats and threat actors, evaluating the Company’s and the
−Removed: industry’s risk profile, evaluating reported threats, coordinating with law enforcement relating to threats, conducting threat
−Removed: assessments for internal and external threats and conducting vulnerability assessments to identify vulnerabilities.
−Removed: Depending on the environment, we implement and
−Removed: maintain various technical, physical, and organizational measures and processes designed to manage and mitigate material risks from cybersecurity
−Removed: threats to our information systems and data.
−Removed: Our assessment and management of material risks
−Removed: from cybersecurity threats are integrated into the Company’s overall risk management processes.
−Removed: For example, our IT department works
−Removed: with management to prioritize our risk management processes and mitigate cybersecurity threats that are more likely to lead to a material
−Removed: impact to our business.
−Removed: Our Board of Directors addresses the Company’s
−Removed: cybersecurity risk management as part of its general oversight function.
−Removed: The Board is responsible for overseeing Company’s cybersecurity
−Removed: risk management processes, including oversight and mitigation of risks from cybersecurity threats.
−Removed: Our cybersecurity risk assessment and
−Removed: management processes are implemented and maintained by our President and Chief Executive Officer .
−Removed: Our cybersecurity incident response and vulnerability
−Removed: management processes are designed to escalate certain cybersecurity incidents to members of management and/or the Board of Directors depending
−Removed: on the circumstances.
−Removed: The Board receives periodic reports and updates from our senior management concerning significant cybersecurity
−Removed: threats and risks, and the processes that the Company has implemented to address them, when deemed appropriate.
−Removed: We have leased two facilities in Acton, Massachusetts which will expire
−Removed: in November 2024 and March 2027.
+Added: maintain various information security processes designed to identify, assess and manage material risks from cybersecurity threats.
+Added: President and Chief Executive Officer is responsible for overseeing our cybersecurity processes and works directly with third party service
+Added: providers, as applicable, to identify , assess and manage the Company’s cybersecurity threats and risks.
+Added: In doing so, he seeks to
+Added: identify and assess risks from cybersecurity threats in a manner appropriate for a company of comparable size and resources.
+Added: assessment and management of material risks from cybersecurity threats are integrated into the Company’s overall risk management
+Added: For example, our IT Consulting Firm works with management to prioritize our risk management processes and mitigate cybersecurity
+Added: threats that are more likely to lead to a material impact to our business.
+Added: Board of Directors addresses the Company’s cybersecurity risk management as part of its general oversight function.
+Added: responsible for overseeing Company’s cybersecurity risk management processes.
+Added: Our cybersecurity risk assessment and management
+Added: processes are implemented and maintained by our President and Chief Executive Officer.
+Added: cybersecurity incident response and vulnerability management processes are designed to escalate certain cybersecurity incidents to members
+Added: of management and/or the Board of Directors depending on the circumstances.
+Added: The Board receives periodic reports and updates from our
+Added: senior management concerning cybersecurity threats and risks, and the processes that the Company has implemented to address them.
+Added: are not aware of any instances of material cybersecurity incidents that impacted the Company.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.