16 unchanged sentences
Our risk management program is also reviewed annually as part of SOC 2 and Health Information Trust Alliance, or HITRUST, Common Security Framework audits.
−Removed: PART I Item 1B — 4
−Removed: AND SUBSIDIARIES
We are not aware of any known risks from cybersecurity threats, including as a result of any previous cybersecurity incidents, that have materially affected or are reasonably likely to materially affect us, including our business strategy, results of operations, or financial condition.
6 unchanged sentences
The board of directors is informed of our cybersecurity risk management and receives an overview of our cybersecurity program from the Chief Information Security Officer, or CISO, at least annually.
−Removed: That overview covers, among other topics, the cybersecurity risk landscape and trends, data security posture, results from third-party assessments, training and vulnerability testing, our incident response plan, material cybersecurity risks, whether developing or actual, as well as the steps management has taken to respond to such risks, emerging cybersecurity regulations, technologies and best practices.
+Added: That overview covers, among other topics, the cybersecurity risk landscape and trends, data security posture, results from third-party assessments, training and vulnerability testing, our incident
+Added: PART I Item 1B — 4
+Added: AND SUBSIDIARIES
+Added: response plan, material cybersecurity risks, whether developing or actual, as well as the steps management has taken to respond to such risks, emerging cybersecurity regulations, technologies and best practices.
Role of Management
7 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.