−Removed: STAFF COMMENTS
+Added: UNRESOLVED STAFF COMMENTS
CYBERSECURITY
44 unchanged sentences
are led by our consulting Senior Vice President of Technology, who has over 20 years of experience in the field of cybersecurity.
−Removed: is responsible for developing and implementing our cybersecurity strategy, policies, standards, and practices.
+Added: responsible for developing and implementing our cybersecurity strategy, policies, standards, and practices.
He also oversees our cybersecurity
3 unchanged sentences
ensure the security of our information assets.
−Removed: urban-gro adheres to the
−Removed: NIST Cybersecurity Framework 2.0, which provides a set of standards, guidelines, and best practices to manage cybersecurity-related risks.
+Added: urban-gro adheres to the NIST
+Added: Cybersecurity Framework 2.0, which provides a set of standards, guidelines, and best practices to manage cybersecurity-related risks.
We have developed and documented our systems disaster recovery plan, which outlines the roles, responsibilities, and procedures for restoring
1 unchanged sentence
We have also crafted over 12 internal policies to help maintain a secure
−Removed: environment, such as our information security policy, our data classification policy, our incident response policy, and our password
−Removed: We regularly conduct phishing simulations, vulnerability scans, penetration tests, and audits to test the effectiveness of our
−Removed: controls and backups, and to identify and remediate any gaps or weaknesses in our cybersecurity posture.
+Added: environment, such as our information security policy, our data classification policy, our incident response policy, and our password policy.
+Added: We regularly conduct phishing simulations, vulnerability scans, penetration tests, and audits to test the effectiveness of our controls
+Added: and backups, and to identify and remediate any gaps or weaknesses in our cybersecurity posture.
Cybersecurity Incidents
−Removed: Despite our efforts to prevent and mitigate cybersecurity incidents,
−Removed: we cannot guarantee that we will not experience any breaches, disruptions, or unauthorized access to our information technology systems
−Removed: and networks.
−Removed: We have experienced, and may continue to experience, cybersecurity incidents that could have a material adverse effect on
−Removed: our business, financial condition, results of operations, and prospects.
+Added: Despite our efforts to prevent
+Added: and mitigate cybersecurity incidents, we cannot guarantee that we will not experience any breaches, disruptions, or unauthorized access
+Added: to our information technology systems and networks.
+Added: We have experienced, and may continue to experience, cybersecurity incidents that
+Added: could have a material adverse effect on our business, financial condition, results of operations, and prospects .
+Added: Our principal place of
+Added: business is located at 1751 Panorama Point, Unit G, Lafayette, Colorado, 80026.
+Added: This location is leased and consists of
+Added: approximately 10,000 square feet, including approximately 3,500 square feet of office space and 6,500 square feet of warehouse
+Added: We currently do not own any property.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.