13 unchanged sentences
• a third-party risk management process for key service providers, suppliers, and vendors based on our assessment of their criticality to our operations and respective risk profiles .
−Removed: We have not identified risks from known cybersecurity threats, including as a result of any prior cybersecurity incidents, that have materially affected or are reasonably likely to materially affect us, including our operations, business strategy, results of operations, or financial condition.
−Removed: We face risks from cybersecurity threats that, if realized, are reasonably likely to materially affect us, including our operations, business strategy, results of operations, or financial condition.
+Added: We have not identified risks from known cybersecurity threats, including as a result of any prior cybersecurity incidents, that have materially affected us, including our operations, business strategy, results of operations, or financial condition.
+Added: We face risks from cybersecurity threats that, if realized, are reasonably likely to materially affect us, including our operations, business strategy, results
+Added: of operations, or financial condition.
For more information, see the section titled “Risk Factor— Our information technology systems, or those of our CROs or other contractors or consultants we may utilize, may fail, suffer disruptions or suffer security breaches, which could result in a material disruption of our product development programs.”
5 unchanged sentences
The full Board also receives briefings from management on our cyber risk management program.
−Removed: Board members receive presentations on cybersecurity topics
−Removed: from management and, where applicable, external experts, as part of our efforts to keep the Board updated on topics that impact similarly-sized biopharmaceutical public companies.
−Removed: Our Director of Information Technology Infrastructure and Operations, who reports to the Chief Financial Officer, is primarily responsible for assessing and managing material risks from cybersecurity threats .
−Removed: Our Director of Information Technology Infrastructure and Operations has primary responsibility for our overall cybersecurity risk management program and supervises our retained external cybersecurity resources.
−Removed: Our Director of Information Technology Infrastructure and Operations' experience includes information systems architecture, operations, cybersecurity, and data privacy protection.
+Added: Board members receive presentations on cybersecurity topics from management and, where applicable, external experts, as part of our efforts to keep the Board updated on topics that impact similarly-sized biopharmaceutical public companies.
+Added: Our Senior Director of Information Technology Infrastructure and Operations, who reports to the Chief Financial Officer, is primarily responsible for assessing and managing material risks from cybersecurity threats .
+Added: Our Senior Director of Information Technology Infrastructure and Operations has primary responsibility for our overall cybersecurity risk management program and supervises our retained external cybersecurity resources.
+Added: Our Senior Director of Information Technology Infrastructure and Operations' experience includes over 25 years of managing information systems architecture, operations, cybersecurity, and data privacy protection matters .
Our management team takes steps to stay informed about and monitor efforts to prevent, detect, mitigate, and remediate cybersecurity risks and incidents through various means, which may include briefings from internal security personnel;
1 unchanged sentence
and alerts and reports produced by security tools deployed in the information technology environment.
−Removed: Our principal executive office is currently located in South San Francisco, California, and consists of approximately 76,000 square feet of office and research and development space, all of which is located in a single building, under a lease that expires in October 2026.
−Removed: We believe that our existing facilities are sufficient for our current needs.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.