2 unchanged sentences
We regularly assess risks from cybersecurity threats, monitor our information systems for potential vulnerabilities and test those systems pursuant to the our cybersecurity policies, standards, processes and practices, which are integrated into our overall risk management system.
−Removed: We take a risk-based approach to cybersecurity aligned with National Institute of Standards and Technology (NIST) principles and have implemented controls throughout our operations that are designed to address cybersecurity threats and incidents.
+Added: We take a risk-based approach to cybersecurity aligned with National Institute of Standards and Technology (NIST) Cybersecurity Framework principles and have implemented controls throughout our operations that are designed to address cybersecurity threats and incidents.
To protect our information systems from cybersecurity threats, we use various security tools that are designed to help us identify, escalate, investigate, resolve and recover from security incidents in a timely manner.
4 unchanged sentences
These risks are assessed, prioritized, and both tactically and strategically addressed via process, technology, and personnel improvements to ensure ongoing mitigation and tracking.
−Removed: We utilize internal and external resources to monitor for cybersecurity threats to our systems and networks and to understand the broader threat environment.
+Added: We utilize internal and external resources, including leading third party providers in the cybersecurity prevention, detection and monitoring space, to monitor for cybersecurity threats to our systems and networks and to understand the broader threat environment.
Our cybersecurity strategy is guided by prioritized risk, identified areas for improvement based on the NIST Cybersecurity Framework, and emerging business needs.
5 unchanged sentences
All employees are provided cybersecurity awareness training, which includes topics on our policies and procedures for reporting potential incidents.
−Removed: Our cybersecurity team is continuously evaluating emerging risks, regulations, and compliance matters and updating the applicable policies and procedures accordingly.
+Added: Our cybersecurity team regularly evaluates emerging risks, regulations, and compliance matters and updates applicable policies and procedures accordingly.
+Added: To date, cybersecurity threats, including as a result of any previous cybersecurity incidents, have not materially affected and we believe are not reasonably likely to materially affect the Company, including its business strategy, results
+Added: of operations or financial condition.
+Added: Refer to “Part I, Item 1A.
+Added: Risk Factors” for additional description of cybersecurity risks and potential related impacts on the Company, including the risk factor captioned “Cybersecurity attacks or security breaches or incidents impacting our systems or data could adversely affect our ability to operate, could result in personal information and our proprietary information being lost, stolen, made inaccessible, improperly disclosed or misappropriated and may cause us to be held liable or subject to regulatory penalties and sanctions and to litigation (including class action litigation), which could have a material adverse effect on our reputation and business.”
The Board , directly and through its committees, oversees our risk management process, including cybersecurity risks and regularly receive presentations and reports from management.
1 unchanged sentence
Our Chief Information Security Officer ("CISO"), in coordination with our Chief Technology Officer, is responsible for leading the assessment and management of cybersecurity risks.
−Removed: The current CISO has over 25 years of
−Removed: experience in information security and presents to the Risk Management and Compliance Committee on a bi-annual basis concerning our cybersecurity program.
−Removed: We lease our corporate headquarters in London, United Kingdom pursuant to a lease that expires on April 1, 2025.
+Added: The current CISO has over 25 years of experience managing robust security programs, including in heavily regulated environments such as financial services.
+Added: The CISO possesses extensive experience in information security, risk management, and technology governance, with a strong background in both strategic leadership and technical security operations.
+Added: The CISO presents to the Risk Management and Compliance Committee on a bi-annual basis concerning our cybersecurity program.
+Added: We lease our corporate headquarters in London, United Kingdom pursuant to a lease that expires in July 2034.
We also lease office space worldwide in various cities and locations.
5 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.