2 unchanged sentences
Risk Management and Strategy
−Removed: have developed and maintain processes designed to assess, identify, and manage cybersecurity risks from potential unauthorized occurrences
−Removed: on or through our information technology systems that may result in adverse effects on the confidentiality, integrity, and availability
−Removed: of these systems and the data residing therein.
−Removed: The scope of these processes includes risks that may be associated with both our internally
−Removed: managed information technology (“IT”) systems and key business functions and sensitive data operated or managed by or maintained
−Removed: at third-party service providers.
−Removed: These processes are managed and monitored by a dedicated information technology team, which is led
−Removed: by our head of IT, and include mechanisms, controls, technologies, systems, and other processes designed to prevent or mitigate data
−Removed: loss, theft, misuse, or other security incidents or vulnerabilities affecting the data and maintain a stable information technology environment.
−Removed: We constantly monitor our information technology environment for abnormal behavior, conduct penetration and vulnerability testing, data
−Removed: recovery testing, security audits, and ongoing risk assessments, including due diligence on our key technology vendors and other third
−Removed: party service providers that have access to the personal information we collect, use, store, and transmit.
−Removed: We also conduct periodic employee
−Removed: trainings on cyber and information security, among other topics.
−Removed: We leverage standard industry tools from a software and hardware perspective
−Removed: and maintain a cybersecurity risk insurance policy.
+Added: operate in the life sciences sector, which is subject to various cybersecurity risks that could adversely affect our business, financial
+Added: condition, and results of operations.
+Added: We have developed and maintain processes, aligned with industry standards and best practices designed
+Added: to assess, identify, and manage cybersecurity risks from potential unauthorized occurrences on or through our information technology
+Added: systems that may result in adverse effects on the confidentiality, integrity, and availability of these systems and the data residing
+Added: The scope of these processes includes risks that may be associated with both our internally managed information technology (“IT”)
+Added: systems and key business functions and sensitive data operated or managed by or maintained at third-party service providers.
+Added: These processes
+Added: are managed and monitored by a dedicated information technology team, which is led by our head of IT, and include mechanisms, controls,
+Added: technologies, systems, and other processes designed to prevent or mitigate data loss, theft, misuse, or other security incidents or vulnerabilities
+Added: affecting the data and maintain a stable information technology environment.
+Added: We constantly monitor our information technology environment
+Added: for abnormal behavior, conduct penetration and vulnerability testing, data recovery testing, security audits, and ongoing risk assessments,
+Added: including due diligence on our key technology vendors and other third party service providers that have access to the personal information
+Added: we collect, use, store, and transmit.
+Added: We also conduct periodic employee trainings on cyber and information security, among other topics.
+Added: We leverage standard industry tools from a software and hardware perspective and maintain a cybersecurity risk insurance policy.
consider cybersecurity, along with other significant risks that we face, within our overall enterprise risk management framework.
17 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.