23 unchanged sentences
The Security Council's membership consists of the following:
−Removed: the Company's Chief Executive Officer, Chief Financial Officer, General Counsel, Vice President of Technology Operations, Director of Systems Engineering, and Head of Internal Audit.
+Added: the Company's Chief Executive Officer, Chief Financial Officer, Chief Legal Officer, Chief Information Officer, Director of Systems Engineering, and Internal Audit Director.
We also employ a Security Department responsible for cybersecurity across the organizations.
−Removed: The individuals in this department are vetted for their experience and expertise before joining the team and maintain continued education and training each year using our enhanced learning program.
+Added: The individuals in this department are vetted for their
+Added: experience and expertise before joining the team and maintain continued education and training each year using our enhanced learning program.
This department's responsibilities include cyber security risk management, security operations, awareness training, incident response, industry awareness and reporting.
1 unchanged sentence
The team then considers each of these threats as applied to our environment, process, operations, vendors and clients.
−Removed: The Security Council is led by the Vice President of Technology Operations, and Director of Systems Engineering, each of whom have a depth of knowledge and experience in the cyber security space.
+Added: The Security Council is led by the Chief Information Officer, and Director of Systems Engineering, each of whom have a depth of knowledge and experience in the cyber security space.
Our Board of Directors has ultimate oversight of cybersecurity risk, which it manages as part of our enterprise risk management program, while the Audit Committee is directly responsible for oversight of the Company's cybersecurity and is briefed by the Security Council on a quarterly basis.
−Removed: Members of the Audit Committee receive updates on a quarterly basis from senior management, including leaders from our Information Security, Product Security, Compliance and Legal teams regarding matters of cybersecurity.
+Added: Members of the Audit Committee receive updates on a quarterly basis from senior management, including leaders from impacted and responsible teams regarding matters of cybersecurity.
This includes existing and new cybersecurity risks, status on how management is addressing and/or mitigating those risks, cybersecurity and data privacy incidents (if any) and status on key information security initiatives.
−Removed: Board members also engage in ad hoc conversations with management on cybersecurity-related news events and discuss any updates to our cybersecurity risk management and strategy programs.
+Added: Our Board members also engage in ad hoc conversations with management on cybersecurity-related news events and discuss any updates to our cybersecurity risk management and strategy programs.
Although the risks from cybersecurity threats, including as a result of any previous cybersecurity incidents, have not materially affected or are reasonably likely to materially affect the Company, including its business strategy, results of operations, or financial condition, such incidents could have a material adverse effect in the future as cyberattacks continue to increase in frequency and sophistication.
2 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.