3 unchanged sentences
The operation of our business is dependent on the secure functioning of our digital information systems and infrastructure.
−Removed: Our cybersecurity risk management program intends to protect the confidentiality, integrity, and availability of our critical systems and information.
−Removed: We design and assess our cybersecurity risk management program based on published frameworks, including the National Institute of Standards and Technology and routinely evaluate our program for ongoing adherence to those frameworks.
−Removed: Our cybersecurity program is aligned with our company strategy and governance processes.
−Removed: Our program is designed to deploy and monitor the prevention, detection, mitigation, and remediation of cyber risks and incidents through various means, including:
+Added: Our cybersecurity risk management program (our “Cybersecurity Program”) has been designed to protect the confidentiality, integrity, and availability of our critical systems and information.
+Added: We design and assess our Cybersecurity Program based on published frameworks, including the National Institute of Standards and Technology, and routinely evaluate our program for ongoing adherence to those frameworks.
+Added: Our Cybersecurity Program is aligned with our company strategy and governance processes and is designed to deploy and monitor the prevention, detection, mitigation, and remediation of cyber risks and incidents through various means, including:
• A security team responsible for monitoring our infrastructure and managing our cybersecurity risk assessment processes, our security controls, and response to cybersecurity incidents;
4 unchanged sentences
We assess the risks from cybersecurity threats posed by such services;
+Added: • An AI committee to set Company-wide policy and drive the safe use of AI technologies.
We have not encountered cybersecurity incidents or identified risks from cybersecurity threats that have materially impaired our operations or financial standing.
For a discussion of whether and how any risks from cybersecurity threats are reasonably likely to materially affect us, including our business strategy, results of operations or financial condition, refer to Item 1A.
−Removed: Risk Factors – titled "Our business depends on numerous complex information systems.
+Added: Risk Factors – “Our business depends on numerous complex information systems.
Any failure to maintain these systems, a network disruption, or breaches in data security could cause a material adverse effect on our business”, which is incorporated by reference into this Item 1C.
Cybersecurity Governance
−Removed: The Strategy and Risk Committee of the Board of Directors oversees the Company’s cybersecurity risks and strategy.
−Removed: A member of the committee has a bachelor and doctoral degrees relevant to and experience in cybersecurity and information technology trends.
−Removed: Management provides the Strategy and Risk Committee periodic reports on cybersecurity risks, risk mitigation in place and planned, and any material cybersecurity incidents.
+Added: The Strategy and Risk Committee of the Board (the “ Strategy and Risk Committee ”) oversees the Company’s cybersecurity risks and strategy, including our Cybersecurity Program.
+Added: A member of the Strategy and Risk Committee has bachelor and doctoral degrees relevant to and experience in cybersecurity and information technology trends.
+Added: Management provides the Strategy and Risk Committee with periodic reports on cybersecurity risks, risk mitigation in place and planned, and any material cybersecurity incidents.
These reports are provided to our Board of Directors.
−Removed: If a material cybersecurity incident were to occur, the Audit Committee would oversee the financial reporting and disclosure and law compliance aspects.
−Removed: Our program and team of cybersecurity professionals and resources is led and supervised by our Vice President of Information Technology, who has over 25 years of experience in information technology.
−Removed: To execute the program, we utilize internal and external technical experts in cybersecurity risk management, data and network security structures, incident response and security operations, and laws, regulation, and reporting requirements.
−Removed: Our cybersecurity team monitors the prevention, detection, mitigation, management, and remediation of cybersecurity risks and incidents through various means, which may include briefings with internal security personnel threat intelligence and other information obtained from governmental, public or private sources, including external consultants engaged by us;
−Removed: and alerts and reports produced by security tools deployed in our information technology environment.
−Removed: As part of the program, our executive management team is regularly informed about the monitoring, prevention, detection, mitigation, management, and remediation efforts.
+Added: If a material cybersecurity incident were to occur, the Audit Committee of the Board would oversee the financial reporting and disclosure and law compliance aspects.
+Added: Our Cybersecurity Program and team of cybersecurity professionals and resources are led and supervised by our Vice President of Information Technology, who has over 25 years of experience in information technology.
+Added: To execute the Cybersecurity Program and promote compliance with applicable cybersecurity laws, regulations, and reporting requirements, we utilize internal and external technical experts in cybersecurity risk management, data and network security structures, and incident response and security operations.
+Added: Our cybersecurity team monitors the prevention, detection, mitigation, management, and remediation of cybersecurity risks and incidents through various means, which may include briefings with internal security personnel threat intelligence and other information obtained from governmental, public, or private sources, including external consultants engaged by us, and alerts and reports produced by security tools deployed in our information technology environment.
+Added: As part of the Cybersecurity Program, our executive management team is regularly informed about the monitoring, prevention, detection, mitigation, management, and remediation efforts.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.