Item 1B. Unresolved Staff Comments
ITEM
1B. UNRESOLVED STAFF COMMENTS
None.
ITEM
1C. CYBERSECURITY
We
maintain a comprehensive process for identifying, assessing, and managing material risks from cybersecurity threats as part of our broader
risk management system and processes. We obtain input, as appropriate, for our cybersecurity risk management program on the security
industry and threat trends from multiple sources. Teams of dedicated security professionals oversee cybersecurity risk management and
mitigation, incident prevention, detection, and remediation. Leadership for these teams are professionals with deep cybersecurity expertise
across multiple industries, including our Chief Information Security Officer. Our executive leadership team, along with input from the
above teams, are responsible for our overall enterprise risk management system and processes and regularly consider cybersecurity risks
in the context of other material risks to the company.
- 26 -
As
part of our cybersecurity risk management system, our incident management teams track and log security incidents across our company
and our customers to remediate and resolve any such incidents. Significant incidents are reviewed by a cross-functional working
group to determine whether further escalation is appropriate. Any incident assessed as potentially being or potentially becoming
material is immediately escalated for further assessment and then reported to designated members of our senior management. We
consult with outside counsel as appropriate, including on materiality analysis and disclosure matters, and our senior management
makes the final materiality determinations and disclosure and other compliance decisions. Our management apprises our independent
registered public accounting firm of matters and any relevant developments.
The
Audit Committee has oversight responsibility for risks and incidents relating to cybersecurity threats, including
compliance with disclosure requirements, cooperation with law enforcement, and related effects on financial and other risks, and reports
any findings and recommendations, as appropriate, to the full Board for consideration. Senior management regularly discusses cyber risks
and trends and, should they arise, any material incidents with the Chief Information Security Officer.
Our
business strategy, results of operations and financial condition have not been materially affected by risks from cybersecurity threats,
including as a result of previously identified cybersecurity incidents, but we cannot provide assurance that they will not be materially
affected in the future by such risks or any future material incidents. For more information on our cybersecurity related risks, see Item
1A Risk Factors of this Annual Report on Form 10-K.
Text extracted from the filing as submitted to EDGAR. Formatting, tables and exhibits are simplified for reading; the is authoritative for anything you rely on.