19 unchanged sentences
Cybersecurity Governance
−Removed: Our Board considers cybersecurity risk as part of its risk oversight function and has delegated oversight of cybersecurity risks, including oversight of management’s implementation of the cybersecurity governance program.
+Added: Our Board considers cybersecurity risk as part of its risk oversight function and has delegated to the Audit Committee oversight of cybersecurity risks, including oversight of management’s implementation of the cybersecurity governance program.
The Audit Committee receives formal annual reports from IT management regarding cybersecurity risks.
4 unchanged sentences
This group holds primary responsibility for our overall cybersecurity governance program, along with our internal Cybersecurity Oversight Committee, which includes senior personnel from key departments in the organization.
+Added: Individual cybersecurity experience for the group responsible for the program is detailed below.
The collective experience of the individuals listed above, along with the Cybersecurity Oversight Committee, includes decades of experience working in and overseeing IT and cybersecurity functions and enterprise, IT and cybersecurity risk management functions, in addition to holding active technical cybersecurity certifications and maintaining active membership in cybersecurity professional organizations, as well as local groups, to support knowledge share and ongoing cybersecurity professional development.
+Added: The Executive Vice President, Technical Operations and Administration (EVP) brings more than two decades of senior leadership experience across the biotechnology and pharmaceutical sectors, having served in roles including General Counsel, Managing Director, and Vice President at multiple global life science organizations.
+Added: The EVP continues to provide strategic oversight of corporate operations, legal governance, and enterprise risk management.
+Added: In addition the EVP provides active leadership on cybersecurity program maturity, regulatory alignment, and enterprise resilience.
+Added: This includes evaluation of cybersecurity risk posture, accountability for key IT and security controls, and board level monitoring of cybersecurity operations, incident readiness, and compliance frameworks aligned with industry best practices.
+Added: The EVP plays a critical role in ensuring organizational integrity, operational continuity, and protection of sensitive scientific, clinical, and corporate information assets.
+Added: The Vice President of IT (VP) is a highly experienced technology executive with decades of hands on expertise architecting, deploying, and managing enterprise IT systems in highly regulated and rapidly scaling environments.The VP has designed and implemented Zero Trust frameworks, conditional access models, and cloud first architectures that strengthen organizational security and performance.
+Added: In addition to hands-on cybersecurity experience, the VP has managed full scope IT operations, including network and systems engineering, enterprise cloud migrations, endpoint lifecycle management, and service delivery excellence.
+Added: The VP plays a critical role in elevating the organization’s technology posture, enhancing cybersecurity resilience, and delivering secure, reliable, high performance IT environments.
+Added: The Executive Director, Information Security, Risk & Compliance (ED) brings over sixteen years of hands on and strategic experience across cybersecurity engineering, governance, risk management, compliance, and IT operations.
+Added: The ED has led and executed programs spanning technical and business domains, including enterprise business continuity and disaster recovery planning, identity and access management architecture, access administration, security monitoring and incident response, and third party/vendor risk management.
+Added: Cybersecurity tools administration experience includes endpoint detection and response, cloud security, identity governance, vulnerability management, and Zero Trust–aligned architectures.
+Added: The ED maintains active CISSP, CISA, and CDPSE certifications.
+Added: The ED is a member of the local FBI InfraGard chapter, an active member of ISACA, ISC2, and multiple regional CISO executive roundtables.
+Added: These affiliations support continuous knowledge exchange, including best practice program development, emergent threat intelligence collaboration, and real time peer benchmarking for modern cyber defense strategies.
Our management team takes steps to stay informed about and monitor efforts to prevent, detect, mitigate, and remediate cybersecurity risks and incidents through various means, which may include briefings from internal security personnel;
1 unchanged sentence
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.