Item 1B. Unresolved Staff Comments
Item 1B. Unresolved Staff Comments.
Not applicable.
Item 1C. Cybersecurity.
In the normal course of business, we may collect
and store personal information and other sensitive information, including proprietary and confidential business information, trade secrets,
intellectual property, patient information, sensitive third-party information and employee information. To protect this information, our
existing cybersecurity policies require continuous monitoring and detection programs, network security precautions, encryption of critical
data and in-depth security assessments of vendors. We maintain various protections designed to safeguard against cyberattacks, including
firewalls and virus detection software. We have established and regularly test our disaster recovery plan, and we protect against business
interruption by backing up our major systems. In addition, we periodically scan our environment for any vulnerabilities, perform penetration
testing and engage third parties to assess the effectiveness of our data security practices. Our information technology (“ IT ”)
team is responsible for these ongoing monitoring and detection activities.
Our cybersecurity program is primarily overseen by our Head-Server
and Network Administrator, who works closely with our information technology team and our senior management to develop and advance our
cybersecurity strategy, as well as to respond to cybersecurity incidents. Our Head-Server and Network Administrator reports to our Chief
Operating Officer on cybersecurity matters and collaborates with stakeholders to assess risks and implement strategies.
The governance of our cybersecurity risks involves
active and informed participation from our management team, our IT team and our board of directors . This oversight includes briefings
by our IT team on the nature of the risks we face and the steps we are taking to mitigate these risks, as well as immediately reporting
any significant cybersecurity incident that occurs to management and the board of directors .
We have engaged a specialized consulting firm
from India to enhance and develop the cybersecurity framework for our products with the aim of protecting sensitive patient data and proprietary
device information from cyber threats and ensuring compliance with the latest cybersecurity standards including, HIPPA, FDA regulations,
IEC 62443, and NIST guidelines for medical devices.
We have not experienced a cybersecurity incident
that have materially affected or are reasonably likely to materially affect us, including our business strategy, results of operations,
or financial condition. We continue to monitor potential cybersecurity threats and incorporate findings into our risk management strategies.
Text extracted from the filing as submitted to EDGAR. Formatting, tables and exhibits are simplified for reading; the is authoritative for anything you rely on.