6 unchanged sentences
Our Board of Trustees has also delegated authority to its Audit Committee to review our internal controls relating to information technology, data privacy, including data protection and cybersecurity, including network security and cloud security.
−Removed: Senior leadership, including our Senior Vice President of Information Technology (the “SVP of IT”) , meets with the Board of Trustees at least annually to present and discuss strategies
−Removed: and cybersecurity initiatives.
+Added: Senior leadership, including our Senior Vice President of Information Technology (the “SVP of IT”) , meets with the Board of Trustees at least annually to present and discuss strategies and cybersecurity initiatives.
This meeting includes reporting of cybersecurity incidents at least annually or more often, if identified.
4 unchanged sentences
A comprehensive approach to assessing, identifying, and managing cybersecurity risks is part of the Company’s overall risk management strategy.
−Removed: A combination of internal and external monitoring services help identify, manage, and assess how management responds within our enterprise risk management processes.
+Added: We believe our cybersecurity program is aligned with the National Institute of Standards and Technology (NIST) Cybersecurity Framework 2.0, which serves as the foundational model guiding our controls, governance, and continuous risk‑management practices.
+Added: A combination of internal and external monitoring services help identify, manage, and
+Added: assess how management responds within our enterprise risk management processes.
Any known cybersecurity incidents would be reported to our Board, Chief Executive Officer, and disclosure committee for evaluation.
11 unchanged sentences
Further, a penetration of our systems or a third-party’s systems or other misappropriation or misuse of personal information could subject us to business, regulatory, litigation and reputation risk, which could have a negative effect on our business, financial condition and results of operations.
−Removed: Risk Factors – “We face risks associated with cyber-attacks, cyber intrusions, or otherwise, which could pose a risk to our systems, networks, and services” and “Security breaches could compromise our information and expose us to liability, which would cause our business and reputation to suffer.” and “Security breaches could compromise our information and expose us to liability, which would cause our business and reputation to suffer.”
+Added: Risk Factors – “We face risks associated with cyber-attacks, cyber intrusions, or otherwise, which could pose a risk to our systems, networks, and services” and “Security breaches could compromise our information and expose us to liability, which would cause our business and reputation to suffer.”
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.