Item 1B. Unresolved Staff Comments
ITEM 1B. UNRESOLVED STAFF COMMENTS
None.
ITEM 1C. CYBERSECURITY
Mexco
maintains a risk-based cybersecurity program designed to protect the confidentiality, integrity, and availability of information systems
and data used in our operations. The program includes technical, administrative, and organizational safeguards intended to identify,
assess, and mitigate cybersecurity risks.
Risk
Management and Strategy. Cybersecurity risk is integrated into our overall risk management processes. We use internal policies
and controls, supported by third-party cybersecurity professionals, to monitor and respond to cybersecurity threats. We maintain systems
to detect and respond to potential cybersecurity incidents.
Employees
receive periodic cybersecurity awareness training. We implement access controls based on the principle of least privilege. We also conduct
periodic testing of our incident response capabilities, including tabletop exercises, and maintain an incident response plan that outlines
procedures for identifying, escalating, investigating, and responding to cybersecurity incidents.
Governance.
The Board of Directors, through the Audit Committee, oversees cybersecurity risk. Management is responsible for implementing
and maintaining cybersecurity controls and for day-to-day risk management activities. The Board and Audit Committee receive periodic
updates on cybersecurity risks and are notified of material cybersecurity incidents in accordance with our incident response processes.
Impact
of Risks from Cybersecurity Threats. As of the date of this report, we are not aware of any cybersecurity threats that have materially
affected, or are reasonably likely to materially affect, the Company’s business, financial condition, or results of operations.
However, we may not be able to prevent all cybersecurity incidents, and future incidents could have a material adverse effect on the
Company.
For
more information on our cybersecurity-related risks, see “Item 1A. Risk Factors” above for additional information.
15
Text extracted from the filing as submitted to EDGAR. Formatting, tables and exhibits are simplified for reading; the original document is authoritative for anything you rely on.