7 unchanged sentences
of our information systems or any information residing therein.
−Removed: We conduct periodic risk assessments to identify
−Removed: cybersecurity threats, as well as assessments in the event of a material change in our business practices that may affect information
−Removed: systems that are vulnerable to such cybersecurity threats.
−Removed: These risk assessments include identification of reasonably foreseeable internal
−Removed: and external risks, the likelihood and potential damage that could result from such risks, and the sufficiency of existing policies,
−Removed: procedures, systems, and safeguards in place to manage such risks.
+Added: We conduct periodic risk assessments to identify cybersecurity
+Added: threats, as well as assessments in the event of a material change in our business practices that may affect information systems that are
+Added: vulnerable to such cybersecurity threats.
+Added: These risk assessments include identification of reasonably foreseeable internal and external
+Added: risks, the likelihood and potential damage that could result from such risks, and the sufficiency of existing policies, procedures, systems,
+Added: and safeguards in place to manage such risks.
Following these risk assessments, we re-design, implement,
5 unchanged sentences
with the President who reports to our Chief Executive Officer, to manage the risk assessment and mitigation process.
−Removed: We engage consultants, or other third parties in
−Removed: connection with our risk assessment processes.
−Removed: These service providers assist us to design and implement our cybersecurity policies and
−Removed: procedures, as well as to monitor and test our safeguards.
−Removed: We require each third-party service provider to certify that it has the ability
−Removed: to implement and maintain appropriate security measures, consistent with all applicable laws, to implement and maintain reasonable security
−Removed: measures in connection with their work with us, and to promptly report any suspected breach of its security measures that may affect
−Removed: We have not encountered cybersecurity challenges
−Removed: that have materially impaired our operations or financial standing.
+Added: We engage consultants, or other third parties in connection
+Added: with our risk assessment processes.
+Added: These service providers assist us to design and implement our cybersecurity policies and procedures,
+Added: as well as to monitor and test our safeguards.
+Added: We require each third-party service provider to certify that it has the ability to implement
+Added: and maintain appropriate security measures, consistent with all applicable laws, to implement and maintain reasonable security measures
+Added: in connection with their work with us, and to promptly report any suspected breach of its security measures that may affect our company.
+Added: We have not encountered cybersecurity challenges that
+Added: have materially impaired our operations or financial standing.
Our board of directors addresses the Company’s
2 unchanged sentences
for overseeing Company’s cybersecurity risk management processes, including oversight and mitigation of risks from cybersecurity
−Removed: Our cybersecurity risk assessment and management
−Removed: processes are implemented and maintained by certain Company management, including the information technology team at the direction of
−Removed: our President.
−Removed: Our executive team including our Chief Executive Officer, and Chief Financial Officer are responsible for hiring appropriate
−Removed: personnel, helping to integrate cybersecurity risk considerations into the Company’s overall risk management strategy, and communicating
−Removed: key priorities to relevant personnel.
+Added: Our cybersecurity risk assessment and management processes
+Added: are implemented and maintained by certain Company management, including the information technology team at the direction of our President.
+Added: Our executive team including our Chief Executive Officer, and Chief Financial Officer are responsible for hiring appropriate personnel,
+Added: helping to integrate cybersecurity risk considerations into the Company’s overall risk management strategy, and communicating key
+Added: priorities to relevant personnel.
This executive team is responsible for approving budgets, helping prepare for cybersecurity incidents,
4 unchanged sentences
In addition, the Company’s incident response and vulnerability
−Removed: management policies include reporting to the audit committee of the board of directors for certain cybersecurity incidents including
−Removed: significant breaches to the Company’s networks or systems.
−Removed: The audit committee receives regular reports from the information technology
−Removed: team concerning the Company’s significant cybersecurity threats and risk and the processes the Company has implemented to address
+Added: management policies include reporting to the audit committee of the board of directors for certain cybersecurity incidents including significant
+Added: breaches to the Company’s networks or systems.
+Added: The audit committee receives regular reports from the information technology team
+Added: concerning the Company’s significant cybersecurity threats and risk and the processes the Company has implemented to address them.
The audit committee also has access to various reports, summaries or presentations related to cybersecurity threats, risk and mitigation.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.