1 unchanged sentence
Cybersecurity
−Removed: Cyber Risk Management and Strategy
+Added: Cybersecurity Risk Management and Strategy
We have adopted cybersecurity risk management processes that are informed by and incorporate elements of recognized industry standards, such as the National Institute of Standards and Technology Cybersecurity Framework, and that are designed to identify, assess, and mitigate critical risks from cybersecurity threats.
−Removed: To support our cybersecurity risk management processes, we leverage a third-party Information Security Coordinator who provides ongoing support for the protection of our information technology infrastructure and also engage with other third-party providers and cybersecurity consultants as appropriate, including engagement of third parties to assist with managed detection and response.
−Removed: Additionally, our cybersecurity risk management strategy is informed by a recent risk assessment conducted by a third-party cybersecurity consultant.
+Added: To support our cybersecurity risk management processes, we leverage a third-party information security firm (“Information Security Coordinator”) who provides ongoing support for the protection of our information technology infrastructure and also engage with other third-party providers and cybersecurity consultants as appropriate, including engagement of third parties to assist with managed detection and response.
+Added: Additionally, our cybersecurity risk management strategy is informed by a risk assessment conducted by a third-party cybersecurity consultant.
We have an employee security awareness training program, required upon onboarding and on an annual basis thereafter, that is designed to raise awareness of cybersecurity threats across functions as well as to encourage consideration of cybersecurity risks across our Company.
5 unchanged sentences
Governance Related to Cybersecurity Risks
−Removed: Our Information Security Coordinator is responsible for the establishment and maintenance of our cybersecurity risk management processes, including the day-to-day oversight of the assessment and management of cybersecurity risks.
+Added: Our Information Security Coordinator is responsible for the maintenance of our cybersecurity risk management processes, including the day-to-day oversight of the assessment and management of cybersecurity risks.
The individual who is currently in this role has approximately 20 years of experience in information security.
−Removed: Our Information Security Coordinator reports to, and meets periodically with, our Director of Operations to discuss and review our information security and cybersecurity risk management processes.
+Added: Our Information Security Coordinator meets periodically with our Director of Operations, to discuss and review our information security and cybersecurity risk management processes.
Our board of directors has delegated oversight of the Company’s enterprise risk management processes, including those related to cybersecurity risks, to the Audit Committee of the Board of Directors.
1 unchanged sentence
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.