3 unchanged sentences
We have implemented and maintain various information security processes designed to identify, assess and manage material risks from cybersecurity threats to our critical computer networks, third party hosted services, communications systems, hardware and software, and our critical data, including intellectual property, confidential information that is proprietary, strategic or competitive in nature, and data related to our products (“Information Systems and Data”).
−Removed: Our information technology function is overseen by our Chief Information Officer (“CIO”), with support from our Cybersecurity Steering Committee, and helps identify, assess and manage the Company’s cybersecurity threats and risks, including through the use of the Company’s risk register.
+Added: Our information technology function is overseen by our Chief Information Officer (“CIO”), with support from our Cybersecurity Steering Committee, and helps to identify, assess and manage the Company’s cybersecurity threats and risks, including through the use of the Company’s risk register.
This group works to identify and assess risks from cybersecurity threats by monitoring and evaluating our threat environment and the Company’s risk profile using various methods including, for example:
1 unchanged sentence
Depending on the environment, we implement and maintain various technical, physical, and organizational measures, processes, standards and policies designed to manage and mitigate material risks from cybersecurity threats to our Information Systems and Data, including, for example:
−Removed: documented incident response process, vulnerability management policy, disaster recovery and business continuity processes, risk assessments, network security controls, access controls, physical security, asset management, tracking and disposal for certain assets, systems monitoring, employee cyber security training, penetrating testing, cybersecurity insurance, dedicated cybersecurity staff, and a security operations center.
+Added: documented incident response process, vulnerability management, disaster recovery and business continuity processes, risk assessments, network security controls, access controls, physical security, asset management, tracking and disposal for certain assets, systems monitoring, employee cyber security training, penetration testing, cybersecurity insurance, dedicated cybersecurity staff, and a security operations center.
Our assessment and management of material risks from cybersecurity threats are integrated into the Company’s overall risk management processes.
22 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.