Risk Factors Dashboard

Once a year, publicly traded companies issue a comprehensive report of their business, called a 10-K. A component mandated in the 10-K is the ‘Risk Factors’ section, where companies disclose any major potential risks that they may face. This dashboard highlights all major changes and additions in new 10K reports, allowing investors to quickly identify new potential risks and opportunities.

Risk Factors - RAVE

-New additions in green
-Changes in blue
-Hover to see similar sentence in last filing

ITEM 1A.
RISK FACTORS.

Not required for a smaller reporting company.

ITEM 1B.
UNRESOLVED STAFF COMMENTS.

Not applicable.

ITEM 1C.
CYBERSECURITY.

The Company recognizes the critical importance of maintaining the safety and security of our systems and data and has a holistic process for overseeing and managing cybersecurity and related risks. The Company believes that cybersecurity threats, including as a result of any previous cybersecurity incidents, have not materially affected and are not reasonably likely to materially affect our business strategy, results of operations or financial condition.

6

Cybersecurity Risk Management and Strategy

Personnel

The Company has an information security program and procedures in place to protect, identify, detect, respond to and manage reasonably foreseeable cybersecurity risks and threats. The Company uses various security tools that help prevent, identify, investigate, resolve and recover from identified vulnerabilities and security incidents to protect our information systems and data from cybersecurity threats. This framework is implemented and overseen by management’s information security department which is led by the Information Technology (“IT”) Support Associate Director and overseen by the Company’s IT Steering Committee. The IT Support Associate Director has over twenty years of experience in technology management and cybersecurity. The IT Steering Committee is comprised of the Company’s two Associate IT Directors, the CEO, and CFO and convenes quarterly to review IT control policies and procedures are properly followed and any new employees were properly onboarded in compliance with security procedures.

Third Party Engagement

The Company employs third party risk security vendors to identify, mitigate, and remediate cybersecurity risks; however, we rely on the third parties we use to implement security programs commensurate with their risks, and we cannot ensure in all circumstances that their efforts will be successful. An annual penetration test is performed in April, which is a security test that simulates a real-world threat to the Company’s IT network and includes comprehensive “Dark Web” searches of all domain user emails. The test performed by Connection (Data Partner) revealed no current cybersecurity breaches. Scans of the Company’s firewall are conducted during the first week of each quarter by third party vendor Contego. Any necessary remediation would also be provided by Contego after the scan, but none has been required. The Company uses SolarWinds with Sentinel One software from Contego to continually monitor technology systems for viruses, malicious software, executable harmful files, and other cybersecurity risks. The Company requires the annual submission of SOC 1 security certificates from our third-party vendors which have access to our financial and sales data. The Company also maintains cybersecurity insurance providing coverage for certain costs related to security failures and specified cybersecurity related incidents.

The Company recognizes that threat actors frequently target employees to gain unauthorized access to information systems. Therefore, each employee is required to complete information security and data privacy training to build awareness of cybersecurity risks to the organization. The Company has engaged third party vendor Knowbe4 to send each employee an email that mimics a potentially harmful phishing attempt each month and to report to management the results of the phishing security test.

Governance

The Board of Directors are acutely aware of the critical nature of managing risks associated with cybersecurity threats. Each quarterly meeting, management presents a cybersecurity update which includes results of testing by third-party vendors and any suspected cybersecurity incidents to the entire Board of Directors. Management would report any material cybersecurity breach immediately to the full Board of Directors. The Company has a written policy for the employee reporting of any cybersecurity suspected incidents.

The Audit Committee of the Board has the primary responsibility to oversee effective governance in managing risks associated with cybersecurity threats. Our Audit Committee is composed of members with diverse expertise, including risk management, technology, and finance, equipping them to oversee cybersecurity risks effectively.

Recently Filed
Click on a ticker to see risk factors
Ticker * File Date
RSSS 33 minutes ago
GFLT 3 hours ago
TRT 4 hours ago
ABAT 23 hours ago
NELR 23 hours ago
CFSB 1 day ago
CPB 1 day, 8 hours ago
WSBK 1 day, 23 hours ago
RZLT 2 days ago
PLUR 2 days ago
EPM 2 days ago
FLUX 2 days, 21 hours ago
KTCC 2 days, 21 hours ago
ESP 3 days ago
ECXJ 3 days, 23 hours ago
BDCC 3 days, 23 hours ago
KARX 3 days, 23 hours ago
RLGT 3 days, 23 hours ago
ISPR 4 days ago
LRDC 4 days ago
HAIN 4 days ago
INNV 1 week, 2 days ago
ALMU 1 week, 2 days ago
CTLP 1 week, 3 days ago
GROW 1 week, 3 days ago
TWIN 2 weeks ago
GDLC 2 weeks ago
LTCN 2 weeks ago
BCHG 2 weeks ago
GCBC 2 weeks ago
FLWS 2 weeks ago
CBKM 2 weeks ago
IBIO 2 weeks ago
LFVN 2 weeks, 1 day ago
PDEX 2 weeks, 1 day ago
BRC 2 weeks, 1 day ago
CSCO 2 weeks, 1 day ago
INTU 2 weeks, 2 days ago
RGS 2 weeks, 2 days ago
GEG 2 weeks, 2 days ago
LDXC 2 weeks, 3 days ago
WDSP 2 weeks, 3 days ago
STME 2 weeks, 6 days ago
BMRA 2 weeks, 6 days ago
GLGI 2 weeks, 6 days ago
PANW 3 weeks ago
GTIC 3 weeks ago
PROV 3 weeks ago
LTRX 3 weeks ago
ARAY 3 weeks, 1 day ago

OTHER DATASETS

House Trading

Dashboard

Corporate Flights

Dashboard

App Ratings

Dashboard