UNRESOLVED STAFF COMMENTS
+Added: Not applicable.
CYBERSECURITY
−Removed: recognize the critical importance of developing, implementing, and maintaining cybersecurity measures to safeguard our information systems
−Removed: and protect the confidentiality, integrity, and availability of our data.
−Removed: We address cybersecurity risks by implementing security measures
−Removed: on our internal computer systems and ensuring that third parties and business partners implement similar measures.
−Removed: These security measures
−Removed: include firewalls, intrusion prevention and detection systems, antimalware functionality and access controls, which are evaluated by
−Removed: our external IT consultant and improved through vulnerability assessments and cybersecurity threat intelligence.
−Removed: vice president of operations is responsible for day-to-day assessment and management of risks from cybersecurity threats, including the
−Removed: prevention, mitigation, detection, and remediation of cybersecurity incidents.
−Removed: Audit Committee is responsible for reviewing our policies with respect to cybersecurity risks and relevant contingent liabilities and
−Removed: risks that may be material to the Company, including risks from third parties and business partners.
−Removed: The Audit Committee receives updates
−Removed: from management with respect to risks from cybersecurity threats.
−Removed: Such updates cover the Company’s information technology security
−Removed: program, including its current status, capabilities, changes during the last quarter, objectives and plans, as well as the evolving cybersecurity
−Removed: threat landscape.
−Removed: date, risks from cybersecurity threats have not materially affected us and we do not currently believe any risks from cybersecurity threats
−Removed: are reasonably likely to affect the Company, including our business strategy, results of operations or financial condition.
−Removed: information, see “ Risk Factors — Our business and operations would suffer in the event of computer system failures, cyber-attacks
−Removed: or deficiencies in our cyber-security.
+Added: We recognize the critical importance of developing,
+Added: implementing, and maintaining cybersecurity measures to safeguard our information systems and protect the confidentiality, integrity ,
+Added: and availability of our data.
+Added: We address cybersecurity risks by implementing security measures on our internal computer systems and ensuring
+Added: that third parties and business partners implement similar measures.
+Added: These security measures include firewalls, intrusion prevention and
+Added: detection systems, antimalware functionality and access controls, which are evaluated by our external IT consultant and improved through
+Added: vulnerability assessments and cybersecurity threat intelligence.
+Added: Our vice president of operations is responsible
+Added: for day-to-day assessment and management of risks from cybersecurity threats, including the prevention, mitigation, detection, and remediation
+Added: of cybersecurity incidents.
+Added: The Audit Committee is responsible for reviewing
+Added: our policies with respect to cybersecurity risks and relevant contingent liabilities and risks that may be material to the Company, including
+Added: risks from third parties and business partners.
+Added: The Audit Committee receives updates from management with respect to risks from cybersecurity
+Added: Such updates cover the Company’s information technology security program, including its current status, capabilities, changes
+Added: during the last quarter, objectives and plans, as well as the evolving cybersecurity threat landscape.
+Added: To date, risks from cybersecurity threats have
+Added: not materially affected us and we do not currently believe any risks from cybersecurity threats are reasonably likely to affect the Company,
+Added: including our business strategy, results of operations or financial condition.
+Added: For further information, see “ Risk Factors —
+Added: Our business and operations would suffer in the event of computer system failures, cyber-attacks or deficiencies in our cyber-security.
in Item 1A of this Annual Report.
We maintain a cyber liability insurance policy.
−Removed: our cyber liability insurance policy may not cover all claims made against us, and defending a suit, regardless of its merit, could be
−Removed: costly and divert management’s attention from our business and operations.
+Added: However, our cyber liability insurance policy may not
+Added: cover all claims made against us, and defending a suit, regardless of its merit, could be costly and divert management’s attention
+Added: from our business and operations.
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.