Unresolved Staff Comments.
+Added: P3 Health Partners Inc.
+Added: | 2025 Form 10-K | 51
Cybersecurity.
5 unchanged sentences
Key elements of our cybersecurity risk management program include but are not limited to:
−Removed: P3 Health Partners Inc.
−Removed: | 2024 Form 10-K | 49
• risk assessments designed to help identify material risks from cybersecurity threats to our critical systems and information;
14 unchanged sentences
Board members receive presentations on cybersecurity topics from our Senior Vice President of Technology and Director of Information Systems Security or other internal security staff or external experts as part of the Board’s continuing education on topics that impact public companies.
+Added: P3 Health Partners Inc.
+Added: | 2025 Form 10-K | 52
Our management team, including our Senior Vice President of Technology, Director of Information Systems Security, and Director of Information Systems Governance Risk and Compliance, is responsible for assessing and managing our material risks from cybersecurity threats.
3 unchanged sentences
Our Director of Information Systems Security’s experience includes over 20 years in IT, with 12 years within the healthcare sector, managing risk assessments and leading security programs using the HITRUST framework to ensure compliance with HIPAA, NIST, ISO27001, and GDPR.
−Removed: Our Director of Information Systems Governance Risk and Compliance’s experiences includes over 25 years in IT audit and security governance, establishing and leading IT GRC programs, directing IT security initiatives, and maintaining relevant certifications including CDPSE, CRISC, and CISA .
−Removed: Our management team takes steps to stay informed about and monitor efforts to prevent, detect, mitigate, and remediate cybersecurity risks and incidents through various means, which may include briefings from internal security
−Removed: P3 Health Partners Inc.
−Removed: | 2024 Form 10-K | 50
+Added: Our Director of Information Systems Governance Risk and Compliance’s experiences includes over 25 years in IT audit and security governance, establishing and leading IT GRC programs, directing IT security initiatives, and maintaining relevant certifications including CDPSE, CRISC, CISM, and GRC/P/A .
+Added: Our management team takes steps to stay informed about and monitor efforts to prevent, detect, mitigate, and remediate cybersecurity risks and incidents through various means, which may include briefings from internal security personnel;
threat intelligence and other information obtained from governmental, public or private sources, including external consultants engaged by us;
1 unchanged sentence
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.