26 unchanged sentences
We design and assess our cybersecurity policies, standards and practices following recognized frameworks established by the National Institute of Standards and Technology, the International Organization for Standardization and other applicable industry standards.
−Removed: We have established written policies that are provided to all associates regarding identification, classification of severity and escalation of cybersecurity incidents and we provide annual and ongoing cybersecurity awareness training for our associates — including regular training on information security and data privacy policies.
+Added: We have established written policies that are provided to all employees regarding identification, classification of severity and escalation of cybersecurity incidents and we provide annual and ongoing cybersecurity awareness training for our employees — including regular training on information security and data privacy policies.
We also perform internal audits on our cybersecurity and data privacy practices.
1 unchanged sentence
During 2025, Unisys engaged an external security firm to
−Removed: conduct several cybersecurity tabletop exercises.
+Added: conduct a cybersecurity tabletop exercise involving the leadership team.
Additionally, we worked with an audit firm and directed several audits related to cybersecurity.
+Added: We are planning a cybersecurity program maturity assessment in early 2026.
Unisys recognizes the importance of overseeing and identifying material risks from cybersecurity threats associated with our use of third-party service providers.
3 unchanged sentences
Whether any risks from cybersecurity threats, including as a result of any previous cybersecurity incidents, have materially affected or are reasonably likely to materially affect Unisys, including its business strategy, results of operations, or financial condition and if so, how.
−Removed: The information set forth under “Risk Factors” (Part I, Item 1A of this Form 10-K) — “We have been and could be vulnerable to disruption in our IT systems, cyber incidents, security breaches and loss of data (associate and client) that have occurred, and may continue to occur, and have resulted in and could continue to result in the incurrence of significant costs and harm to our business and reputation.” — on page 15 of this Annual Report on Form 10-K is hereby incorporated by reference.
+Added: The information set forth under “Risk Factors” (Part I, Item 1A of this Form 10-K) — “Cybersecurity incidents, security incidents and breaches and other disruption in our IT systems have occurred, and will continue to occur, and could result in the incurrence of significant costs as well as harm to our business.” — on page 18 of this Annual Report on Form 10-K is hereby incorporated by reference.
As of December 31, 2025, our financial condition, results of operations or business strategy have not been materially affected by risks from cybersecurity threats, including as a result of previously identified cybersecurity incidents, but we cannot provide assurance that they will not be materially affected in the future by such risks or any future material incidents.
25 unchanged sentences
LEGAL PROCEEDINGS
−Removed: Information with respect to litigation is set forth in Note 18, “Litigation and contingencies,” of the Notes to Consolidated Financial Statements in Part II, Item 8 of this Form 10-K and is incorporated herein by reference.
+Added: Information with respect to litigation is set forth in Note 16, “Litigation and contingencies,” of the Notes to Consolidated Financial Statements and is incorporated herein by reference.
MINE SAFETY DISCLOSURES
1 unchanged sentence
Compared sentence by sentence after normalising whitespace, quotation marks, case and digits, so re-formatting and restated figures do not read as changed language. Wording changes appear as one removal and one addition. The current filing and the prior one are authoritative.