NVAX · All filings · Read this filing
What changed 10-K
Item 1B. Unresolved Staff Comments
2025-02-27 compared with 2024-02-28 · 1 added, 1 removed, 16 unchanged (11% of the section changed)
5 unchanged sentences
Those processes include conducting an assessment of internal and external threats to the security, confidentiality, integrity and availability of Company data and systems along with other material risks to Company operations, at least annually or whenever there are material changes to the Company’s systems or operations and responding to risks identified.
−Removed: The Company uses NIST cybersecurity and risk management frameworks to assess its cybersecurity controls, risks, and overall program effectiveness.
+Added: The Company's information security program is developed using industry standards as a guide, including the National Institute of Standards and Technology Cybersecurity Framework.
As part of our risk management process, the Company also engages outside providers to conduct periodic internal and external penetration testing and security assessments.
9 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.