Item 1B. Unresolved Staff Comments
Item1B. Unresolved Staff Comments
None.
19
Item 1C. Cybersecurity.
Governance Related to Cybersecurity Risks
Our board of directors, as a whole and through its committees, holds overall oversight responsibility for our risk management processes, including in relation to risks from cybersecurity threats. Our board of directors exercises its oversight function through the audit committee, which oversees the management of risk exposure across various areas, including cybersecurity risks, in accordance with its charter. The audit committee receives quarterly reports from our Management on the status of our cybersecurity program. The Chair of the audit committee provides a quarterly report to the board of directors, which includes any key updates on cybersecurity matters, as applicable.
Our management team is responsible for the day-to-day administration and management of our cybersecurity program, under the direct supervision of our Chief Executive Officer currently we also work with external security service providers to support our security monitoring and threat detection capabilities and have implemented a process to report relevant findings to the Chair of audit committee where appropriate.
Cybersecurity Risk Management and Strategy
We maintain a cybersecurity program, which includes processes for identification, assessment, and management of cybersecurity risks. We conduct periodic risk assessments, including with support from external vendors, to assess our cyber program, identify potential areas of enhancement, and develop strategies for the mitigation of cyber risks. We have implemented a process to periodically conduct security awareness training for employees.
Our team is informed about and monitor the prevention, detection, mitigation, and remediation of cybersecurity risks through various means, including by leveraging a managed security service provider and other third-party security software and technology services. In addition, we use third-party security solutions, monitoring, and alerting tools and resources, designed to monitor, identify, and address risks from cybersecurity threats. We also have implemented processes and technologies for network monitoring and data loss prevention procedures, and from time to time review such processes and technologies.
We have not identified any cybersecurity incidents or threats that have materially affected us or are reasonably likely to materially affect us, including our business strategy, results of operations or financial condition; however, like other companies in our industry, we and our third-party vendors may, from time to time, experience threats and security incidents relating to our and our third-party vendors’ information systems. See Item 1A “Risk Factors” in this Annual Report on Form 10 K for more information.
Item 2. Description of Property
The headquarters for Milestone Scientific is located at 425 Eagle Rock Avenue, Roseland, New Jersey 07068, and our telephone number is (973) 535-2717. In August 2019, the Company signed a seven-year lease for a facility in Roseland, New Jersey (the “Roseland Facility”). The Roseland Facility carries monthly lease payments of $9,275, commencing April 1, 2021. The Company is also responsible for electric charges equal to $2.00 per square foot, which is equal to $11,130 annually, payable in equal monthly installments of $928. The Company will also be required to pay its proportionate share of certain operating costs and property taxes applicable to the leased premises more than the new base year amounts. A third-party distribution and logistics center in Pennsylvania handles shipping and order fulfillment on a month-to-month basis.
Milestone Scientific does not own or intend to invest in any real property. Milestone Scientific currently has no policy with respect to investments or interests in real estate, real estate mortgages or securities of, or interests in, persons primarily engaged in real estate activities.
Item 3. Legal Proceedings
Milestone Scientific is not involved in any material litigation.
Item 4. Mine Safety Disclosure
Not applicable.
20
PART II