30 unchanged sentences
The CCO/CAO reports to the Audit Committee, which is the primary governing body that drives alignment on security decisions across the Company.
−Removed: The Audit Committee meets at least four times a year on cybersecurity and such meetings are attended by the CCO/CAO, CISO, chief legal officer (“CLO”), chief financial officer (“CFO”), corporate controller, associate general counsel, and other senior company executives as needed to review security performance metrics, identify security risks, and assess the status of approved security enhancements.
+Added: The Audit Committee meets at least four times a year on cybersecurity and such meetings are attended by the CCO/CAO, CISO, in-house counsel, chief financial officer (“CFO”), corporate controller, associate general counsel, and other senior company executives as needed to review security performance metrics, identify security risks, and assess the status of approved security enhancements.
The Audit Committee also considers and makes recommendations on security policies and procedures, security service requirements, and risk mitigation.
2 unchanged sentences
The CCO/CAO has a master’s degree in Computer Science with a specialization in Cyber Security from Boston University, a qualifying UK law degree from the University of Edinburgh, an MBA in Accounting, and a Master's of Finance from Northeastern University, in addition to a BA in Economics from Dartmouth College.
−Removed: The Chief Information Security Officer (CISO) brings over 27 years of experience in Cyber Security and IT Controls, with the last 15 years serving as CISO at OPKO Health and previously at Everest Insurance Corp.
+Added: The CISO brings over 28 years of experience in Cyber Security and IT Controls, with the last 16 years serving as CISO of the Company and previously at Everest Insurance Corp.
Prior experience includes several years at PricewaterhouseCoopers as an IT auditor and Cyber Security consultant.
1 unchanged sentence
The CISO oversees a department comprising five cyber security engineers with extensive experience.
−Removed: Structured Data Requirement
−Removed: Consistent with SEC regulations, OPKO Health, Inc.
−Removed: commits to providing the information required by this Item in an Interactive Data File format, in accordance with Rule 405 of Regulation S–T and the EDGAR Filer Manual.
−Removed: OPKO Health, Inc.'s strategic approach to cybersecurity governance, characterized by our rigorous third-party assessments, industry certifications, and a clear organizational reporting structure, underscores our unwavering dedication to safeguarding sensitive information and maintaining trust.
+Added: The Company's strategic approach to cybersecurity governance, characterized by our rigorous third-party assessments, industry certifications, and a clear organizational reporting structure, underscores our unwavering dedication to safeguarding sensitive information and maintaining trust.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.