3 unchanged sentences
We maintain a cybersecurity program designed to protect our company, company data, customer data and personal data within information systems used by the Company.
−Removed: In order to respond to potential cybersecurity threats, we maintain policies,
−Removed: procedures and systems that provide for controls on detecting and addressing cybersecurity threats, including a formal incident response plan.
+Added: In order to respond to potential cybersecurity threats, we maintain policies, procedures and systems that provide for controls on detecting and addressing cybersecurity threats, including a formal incident response plan.
We also maintain business continuity and disaster recovery capabilities, which we test regularly.
10 unchanged sentences
However, there can be no assurance that our protection efforts will be successful.
−Removed: See “Risks Relating to Our Business and Operations – A security incident impacting customer, employee, supplier, or Company information, or Company systems or infrastructure, may have a material adverse effect on our business, financial condition, and results of operations.
+Added: See “Risks Relating to Our Business and Operations – A cybersecurity incident impacting customer, employee, supplier, or Company information, or Company systems or infrastructure, may have a material adverse effect on our business, financial condition, and results of operations.
” in “Risk Factors” on page 10 of this Form 10-K.
2 unchanged sentences
The Audit and Risk Committee receives at least quarterly reports from our Chief Information Officer on our information technology and cyber risk profile, enterprise cyber program, key enterprise cyber initiatives, and significant updates on external audits of our information security program.
−Removed: The full Board attends one of the Audit and Risk Committee meetings at which information technology and cyber risk are discussed.
+Added: The full Board attends two of the Audit and Risk Committee meetings at which information technology and cyber risk are discussed.
Additionally, at least annually, the full Board attends a cybersecurity training from external experts and reviews and discusses our technology strategy with the Chief Information Officer and approves our technology strategic plan.
9 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.