13 unchanged sentences
● A third-party risk management evaluation process for key service providers based on our assessment of their criticality to our operations and respective risk profile, suppliers, and vendors with access to our information systems or data.
−Removed: We have not identified risks from known cybersecurity threats, including as a result of any prior cybersecurity incidents, that have materially affected us, including our operations, business strategy, results of operations, or financial condition.
+Added: We are not currently aware of any cybersecurity incidents that have materially affected the Company, including our operations, business strategy, results of operations, or financial condition.
We face risks from cybersecurity threats that, if realized, are reasonably likely to materially affect us, including our operations, business strategy, results of operations, or financial condition.
+Added: Our cybersecurity risk environment includes risks associated with cloud-based systems, distributed devices deployed in customer environments, and third-party service providers.
For more information, see the section titled “Risk Factor — Our business and operations may suffer in the event of information technology system failures, cyberattacks or deficiencies in our cybersecurity.”
Cybersecurity Governance
−Removed: Our Board considers cybersecurity risk as part of its risk oversight function and has delegated to the Audit Committee (the “Committee”) oversight of cybersecurity risks, including oversight of management’s implementation of our cybersecurity risk management program.
+Added: Our Board of Directors considers cybersecurity risk as part of its risk oversight function and has delegated to the Audit Committee (the “Committee”) oversight of cybersecurity risks, including oversight of management’s implementation of our cybersecurity risk management program.
The Committee receives periodic reports from management on our cybersecurity risks.
In addition, management updates the Committee, where it deems appropriate, regarding any cybersecurity incidents it considers to be significant or potentially significant, as well as any incidents with lesser impact potential.
−Removed: The Committee reports to the full Board regarding its activities, including those related to cybersecurity.
−Removed: The full Board also receives briefings from management on our cyber risk management program.
+Added: The Committee reports to the full Board of Directors regarding its activities, including those related to cybersecurity.
+Added: The full Board of Directors also receives briefings from management on our cyber risk management program.
Our management team takes steps to stay informed about and supervises efforts to prevent, detect, mitigate and remediate cybersecurity risks and incidents.
Mercedes Soria, EVP and Chief Intelligence Officer / Chief Information Security Officer (“CISO”) has primary responsibility for our overall cybersecurity program and supervises both our internal cybersecurity personnel and our retained external cybersecurity consultants.
−Removed: Soria has over four years of cyber risk management experience, and is primarily responsible for assessing
−Removed: and managing our material risks from cybersecurity threats.
+Added: Soria has over four years of cyber risk management experience, and is primarily responsible for assessing and managing our material risks from cybersecurity threats.
Soria actively leads her team’s efforts to prevent, detect, mitigate, and remediate cybersecurity risks and incidents through various means, which may include briefings from internal personnel, threat intelligence and other information obtained from governmental, public or private sources, including external vendors and consultants engaged by us, and alerts and reports produced by security tools deployed in our information technology environment and our products.
2 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.