37 unchanged sentences
Third-party risk management
−Removed: Our polices and processes address cybersecurity threat risks associated with the use of third-party service providers, including those who access, use and/or store our client, candidate, associate and employee data or have access to our network and systems.
+Added: Our policies and processes address cybersecurity threat risks associated with the use of third-party service providers, including those who access, use and/or store our client, candidate, associate and employee data or have access to our network and systems.
Third-party risks are included within our enterprise risk management assessment program, as well as our information security-specific risk identification program, both of which are discussed above.
10 unchanged sentences
Cybersecurity is an important part of our risk management processes and an area of focus for our Board and management.
−Removed: Our Innovation and Technology (“I&T”) Committee of the Board is responsible for the oversight of risks from cybersecurity threats.
−Removed: All of our Board members are members of the I&T Committee.
−Removed: At least quarterly, management provides the I&T Committee with updates regarding our cybersecurity risks, threats, and efforts focused on mitigating those risks.
+Added: The Audit Committee of our Board is responsible for oversight of risks from cybersecurity threats.
+Added: Through the end of the fiscal third quarter of 2025, our Innovation and Technology (“I&T”) Committee of the Board was responsible for the oversight of risks from cybersecurity threats.
+Added: The I&T Committee was comprised of all of our Board members.
+Added: Beginning in the fiscal fourth quarter of 2025, the Audit Committee, which is comprised of four members of the Board, has taken over the responsibility for this oversight.
+Added: During fiscal 2025, at least quarterly, management provided the I&T or Audit Committee, as applicable, with updates regarding our cybersecurity risks, threats and efforts focused on mitigating those risks.
+Added: Beginning in the fiscal fourth quarter of 2025, these updates are provided to the Audit Committee.
These updates are provided by our Chief Digital Officer (“CDO”) and our CISO, and include recent developments in cybersecurity, the company’s actual experience with cybersecurity incidents, and the systems and processes in place to defend against cyberattacks.
8 unchanged sentences
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.