Risk Factors Dashboard

Once a year, publicly traded companies issue a comprehensive report of their business, called a 10-K. A component mandated in the 10-K is the ‘Risk Factors’ section, where companies disclose any major potential risks that they may face. This dashboard highlights all major changes and additions in new 10K reports, allowing investors to quickly identify new potential risks and opportunities.

Risk Factors - RAVE

-New additions in green
-Changes in blue
-Hover to see similar sentence in last filing

ITEM 1A.
RISK FACTORS.
Not required for a smaller reporting company.
ITEM 1B.
UNRESOLVED STAFF COMMENTS.
Not applicable.
ITEM 1C.
CYBERSECURITY.
The Company recognizes the critical importance of maintaining the safety and security of our systems and data and has a holistic process for overseeing and managing cybersecurity and related risks. The Company believes that cybersecurity threats, including as a result of any previous cybersecurity incidents, have not materially affected and are not reasonably likely to materially affect our business strategy, results of operations or financial condition.
Cybersecurity Risk Management and Strategy
Personnel
The Company has an information security program and procedures in place to protect, identify, detect, respond to and manage reasonably foreseeable cybersecurity risks and threats. The Company uses various security tools that help prevent, identify, investigate, resolve and recover from identified vulnerabilities and security incidents to protect our information systems and data from cybersecurity threats. This framework is implemented and overseen by management’s information security department which is led by the Information Technology (“IT”) Support Associate Director and overseen by the Company’s IT Steering Committee. The IT Support Associate Director has over twenty years of experience in technology management and cybersecurity. The IT Steering Committee is comprised of the Company’s two Associate IT Directors, the CEO, and CFO and convenes quarterly to review IT control policies and procedures are properly followed and any new employees were properly onboarded in compliance with security procedures.
Third-Party Engagement
The Company employs third-party risk security vendors to identify, mitigate, and remediate cybersecurity risks; however, we rely on the third parties we use to implement security programs commensurate with their risks, and we cannot ensure in all circumstances that their efforts will be successful. The Company employs a third-party vendor to securely host the Company’s data in a cloud-based storage system. The third-party vendor conducts quarterly vulnerability scans on both the hosted data environment and the Company’s corporate data network. Scans of the Company’s firewall are conducted regularly by the third-party vendor. Any necessary remediation would also be provided by the third-party vendor after the scan, but none has been required. The Company uses multiple third-party developed software to continually monitor technology systems for viruses, malicious software, executable harmful files, and other cybersecurity risks. The Company requires the annual submission of SOC 1 security certificates from our third-party vendors which have access to our financial and sales data. The Company also maintains cybersecurity insurance providing coverage for certain costs related to security failures and specified cybersecurity related incidents.
The Company recognizes that threat actors frequently target employees to gain unauthorized access to information systems. Therefore, each employee is required to complete information security and data privacy training to build awareness of cybersecurity risks to the organization. The Company has engaged a third-party vendor to periodically send each employee an email that mimics a potentially harmful phishing attempt each month and to report to management the results of the phishing security test.
Governance
The Board of Directors is acutely aware of the critical nature of managing risks associated with cybersecurity threats. Each quarterly meeting, management presents a cybersecurity update which includes results of testing by third-party vendors and any suspected cybersecurity incidents to the entire Board of Directors. Management would report any material cybersecurity breach immediately to the full Board of Directors. The Company has a written policy for the employee reporting of any cybersecurity suspected incidents.
The Audit Committee of the Board has the primary responsibility to oversee effective governance in managing risks associated with cybersecurity threats. Our Audit Committee is composed of members with diverse expertise, including risk management, technology, and finance, equipping them to oversee cybersecurity risks effectively.
Recently Filed
Click on a ticker to see risk factors
Ticker * File Date
DCI 19 minutes ago
CBRL 56 minutes ago
IXHL 3 hours ago
ASTC 3 hours ago
FGPR 5 hours ago
TBN 5 hours ago
RZLT 19 hours ago
LGCY 20 hours ago
SFIX 20 hours ago
TRT 1 day ago
RAVE 1 day, 3 hours ago
CPB 1 day, 4 hours ago
ATCH 1 day, 15 hours ago
KTCC 1 day, 16 hours ago
THYP 1 day, 18 hours ago
AMST 1 day, 19 hours ago
NEOV 1 day, 19 hours ago
ESP 2 days, 14 hours ago
AYTU 2 days, 20 hours ago
RADC 3 days ago
THO 3 days, 5 hours ago
MRCL 3 days, 18 hours ago
YYAI 3 days, 18 hours ago
TULP 3 days, 20 hours ago
AOXY 3 days, 21 hours ago
NEUP 6 days, 20 hours ago
MGLD 6 days, 20 hours ago
NTNX 1 week ago
FEAM 1 week ago
UPXI 1 week ago
PZG 1 week ago
VBNB 1 week ago
ALMU 1 week, 1 day ago
EPM 1 week, 1 day ago
MBBC 1 week, 2 days ago
WSBK 1 week, 2 days ago
KARX 1 week, 2 days ago
TMGI 1 week, 2 days ago
ISPR 1 week, 2 days ago
LDXC 1 week, 2 days ago
LGVT 1 week, 2 days ago
FPS 1 week, 3 days ago
LRDC 1 week, 3 days ago
RLGT 1 week, 3 days ago
WEWA 1 week, 3 days ago
BNTC 1 week, 3 days ago
HAIN 1 week, 3 days ago
VRDR 1 week, 4 days ago
ABAT 1 week, 4 days ago
UNFI 1 week, 6 days ago

OTHER DATASETS

House Trading

Dashboard

Corporate Flights

Dashboard

App Ratings

Dashboard