12 unchanged sentences
and comprehensive strategy for managing cybersecurity risks.
−Removed: We implement a risk-based approach to the management of cyber threats, supported
−Removed: by cybersecurity technologies, including automated tools, designed to monitor, identify, and address cybersecurity risks.
−Removed: of this approach, our IT security team implements processes to assess, identify, and manage security risks to the company, including
−Removed: in the areas of security and compliance, application security, infrastructure security and data privacy.
−Removed: This process includes regular
−Removed: compliance and critical system access reviews.
−Removed: In addition, we conduct application security assessments, vulnerability management, penetration
−Removed: testing, security audits and ongoing risk assessments as part of our risk management process.
−Removed: We also maintain an incident response plan
−Removed: to guide our processes in the event of an incident.
−Removed: We also have a process to require corporate employees to undertake cybersecurity
−Removed: training and compliance programs annually.
+Added: We implement a risk-based approach to managing cyber threats, supported
+Added: by cybersecurity technologies, including automated tools, to monitor, identify, and address risks.
+Added: In support of this approach, our IT
+Added: security team implements processes to assess, identify, and manage security risks to the company, including in the areas of security
+Added: and compliance, application security, infrastructure security and data privacy.
+Added: This process includes regular compliance and critical
+Added: system access reviews.
+Added: In addition, we conduct application security assessments, vulnerability management, penetration testing, security
+Added: audits and ongoing risk assessments as part of our risk management process.
+Added: We also maintain an incident response plan to guide our processes
+Added: in the event of an incident.
+Added: We also have a process that requires corporate employees to complete cybersecurity training and compliance
+Added: programs annually.
utilize third parties and consultants to assist in the identification and assessment of risks, including to support tabletop exercises
9 unchanged sentences
Risk Factors, the section titled “Risk Factors—Risks Related to Our Company and Our Business— We
−Removed: are subject to cyber security risks and risks of data loss or other security breaches.
+Added: are subject to cybersecurity risks and risks of data loss or other security breaches.
Management Oversight and Governance
−Removed: Board of Directors has oversight of our cybersecurity program and has delegated the quarterly assessments and management of cybersecurity
−Removed: risks to the Audit Committee.
+Added: Board of Directors oversees our cybersecurity program and has delegated the quarterly assessments and management of cybersecurity risks
+Added: to the Audit Committee.
IT Manager and our IT Administrator oversee our information security program and lead our information security team.
7 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.