5 unchanged sentences
This assessment is shared with members of senior management, including the Chief Information Officer (CIO) and Chief Information Security Officer (CISO), and helps guide the Company's cybersecurity operational priorities and strategy.
−Removed: In addition, cybersecurity risks are integrated into the Company’s broader Enterprise Risk Management program and, when identified, are reported to relevant business and governance leaders within the Company for appropriate action.
+Added: In addition, cybersecurity risks are integrated into the Company’s broader Enterprise Risk Management program.
+Added: When cybersecurity risks are identified through the Enterprise Risk Management program or otherwise, they are reported to relevant business and governance leaders within the Company for appropriate action.
To support the ongoing identification and management of cybersecurity issues, the Company provides information security employee training, conducts global and targeted phishing simulation campaigns and conducts tabletop exercises.
9 unchanged sentences
In support of this general oversight, the full Board reviews, at least annually, the most significant enterprise risks facing the Company, including cybersecurity risks, as identified in the Company’s Enterprise Risk Management program.
−Removed: This review, which includes key members of senior management, covers any key risks from information security that have been identified and corresponding action plans.
+Added: This review, which includes key members of senior management, covers key risks from information security that have been identified and corresponding action plans.
The Audit Committee also receives regular updates from the Company’s CIO and CISO about the Company’s information security and systems security programs and plans, including emerging trends and progress on overall enterprise cybersecurity programs and priorities.
4 unchanged sentences
The CISO's organization includes a dedicated team of centralized information security experts and a network of security professionals embedded in each business unit and function.
+Added: 10 The Procter & Gamble Company
The CISO also leads the design and development of the Company’s cybersecurity program, relying on functional experts within the central Information Security organization as well as on information security experts within each of the Company’s Organizational Units.
1 unchanged sentence
Experts within the Company’s central Information Security organization help develop the Company’s cybersecurity strategies, policies and standards and similarly report security risks within the central enterprise to the CISO.
−Removed: 10 The Procter & Gamble Company
A central team within the Company leads enterprise-wide incident investigations and response, assisting and consulting on cyber security incidents impacting individual Organizational Units.
6 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.