2 unchanged sentences
believe cybersecurity is critical to advancing our technological advancements.
−Removed: As a biopharmaceutical company, we face a multitude of
−Removed: cybersecurity threats that range from attacks common to most industries, such as ransomware and denial-of service.
−Removed: Our customers, suppliers,
−Removed: subcontractors, and business partners face similar cybersecurity threats, and a cybersecurity incident impacting us or any of these entities
−Removed: could materially adversely affect our operations, performance, and results of operations.
−Removed: These cybersecurity threats and related risks
−Removed: make it imperative that we expend resources on cybersecurity.
+Added: We face a multitude of cybersecurity threats that range
+Added: from attacks common to most industries, such as ransomware and denial-of service.
+Added: Our customers, suppliers, subcontractors, and business
+Added: partners face similar cybersecurity threats, and a cybersecurity incident impacting us or any of these entities could materially adversely
+Added: affect our operations, performance, and results of operations.
+Added: These cybersecurity threats and related risks make it imperative that
+Added: we expend resources on cybersecurity.
Board of Directors oversees management’s processes for identifying and mitigating risks, including cybersecurity risks, to help
11 unchanged sentences
We have implemented a governance structure and processes to assess, identify, manage, and report cybersecurity
−Removed: a biopharmaceutical company, we must comply with extensive regulations, including requirements imposed by the Federal Drug Administration
−Removed: related to adequately safeguarding patient information and reporting cybersecurity incidents to the SEC.
−Removed: We work with our cybersecurity
−Removed: consultant on assessing cybersecurity risk and on policies and practices aimed at mitigating these risks.
−Removed: We believe we are positioned
−Removed: to meet the requirements of the SEC.
−Removed: In addition to following SEC guidance and implementing pre-existing third party frameworks, we have
−Removed: developed our own practices and frameworks, which we believe enhance our ability to identify and manage cybersecurity risks.
−Removed: Third parties
−Removed: also play a role in our cybersecurity.
−Removed: We engage third-party services to conduct evaluations of our security controls, whether through
−Removed: penetration testing, independent audits, or consulting on best practices to address new challenges.
−Removed: Assessing, identifying, and managing
−Removed: cybersecurity related risks are factored into our overall business approach.
−Removed: rely heavily on our supply chain to deliver our products and services, and a cybersecurity incident at a supplier, subcontractor or business
−Removed: partner could materially adversely impact us.
−Removed: We require that our subcontractors report cybersecurity incidents to us so that we can
−Removed: assess the impact of the incident on us.
−Removed: Notwithstanding the extensive approach we take to cybersecurity, we may not be successful in
−Removed: preventing or mitigating a cybersecurity incident that could have a material adverse effect on us.
−Removed: While we maintain cybersecurity insurance,
−Removed: the costs related to cybersecurity threats or disruptions may not be fully insured.
−Removed: See “Risk Factors” for a discussion of
−Removed: cybersecurity risks.
+Added: are subject to extensive regulations, including requirements imposed by the Federal Drug Administration related to adequately safeguarding
+Added: patient information and reporting cybersecurity incidents to the SEC.
+Added: We work with our cybersecurity consultant on assessing cybersecurity
+Added: risk and on policies and practices aimed at mitigating these risks.
+Added: We believe we are positioned to meet the requirements of the SEC.
+Added: In addition to following SEC guidance and implementing pre-existing third party frameworks, we have developed our own practices and frameworks,
+Added: which we believe enhance our ability to identify and manage cybersecurity risks .
+Added: Third parties also play a role in our cybersecurity.
+Added: We engage third-party services to conduct evaluations of our security controls, whether through penetration testing, independent audits,
+Added: or consulting on best practices to address new challenges.
+Added: Assessing, identifying, and managing cybersecurity related risks are factored
+Added: into our overall business approach .
+Added: rely on third-party service providers to carry out our daily operations, and a cybersecurity incident at a supplier, subcontractor or
+Added: business partner could materially adversely impact us.
+Added: We require that our subcontractors report cybersecurity incidents to us so that
+Added: we can assess the impact of the incident on us.
+Added: Notwithstanding the extensive approach we take to cybersecurity, we may not be successful
+Added: in preventing or mitigating a cybersecurity incident that could have a material adverse effect on us.
+Added: While we maintain cybersecurity
+Added: insurance, the costs related to cybersecurity threats or disruptions may not be fully insured.
+Added: See “Risk Factors” for a discussion
+Added: of cybersecurity risks.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.