|
Cybersecurity Risk Management and Strategy Disclosure
|12 Months Ended
Dec. 31, 2024
|Cybersecurity Risk Management, Strategy, and Governance [Line Items]
|Cybersecurity Risk Management Processes for Assessing, Identifying, and Managing Threats [Text Block]
|
Cybersecurity Risk Management and Strategy
The security and integrity of our information systems, communication networks, IT infrastructure, and data centers are critical to the successful operation of our business.
As such, we have invested in advanced technologies to identify and manage material cybersecurity risks that could impede our operations. We also engage reputable outsourced service providers to perform key operational functions, ensuring comprehensive protection of shared data and adherence to rigorous cybersecurity protocols.
Microvast utilizes a set of policies, procedures, and technologies designed to prevent, detect, respond to, and recover from cybersecurity threats and incidents. These policies, based on the NIST Cybersecurity Framework, are regularly reviewed and updated to integrate industry best practices. Internal control evaluations are conducted routinely to ensure compliance and address any identified vulnerabilities.
Our company did not experience any cybersecurity incidents that materially impacted our operations for the year ended December 31, 2024. We remain unaware of any active threats that could significantly affect our business strategy or financial condition. For more information on cybersecurity risks, see “Risk Factors — Risks Related to Our Business and Industry.”
|Cybersecurity Risk Management Processes Integrated [Flag]
|true
|Cybersecurity Risk Management Processes Integrated [Text Block]
|
Microvast utilizes a set of policies, procedures, and technologies designed to prevent, detect, respond to, and recover from cybersecurity threats and incidents. These policies, based on the NIST Cybersecurity Framework, are regularly reviewed and updated to integrate industry best practices. Internal control evaluations are conducted routinely to ensure compliance and address any identified vulnerabilities.
|Cybersecurity Risk Management Third Party Engaged [Flag]
|true
|Cybersecurity Risk Third Party Oversight and Identification Processes [Flag]
|true
|Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Flag]
|false
|Cybersecurity Risk Board of Directors Oversight [Text Block]
|Microvast's SVP of Information Technology, is responsible for risk assessment and management.
This individual has experience in developing security policies, enforcing compliance, orchestrating incident responses, and implementing cybersecurity strategies.
|Cybersecurity Risk Board Committee or Subcommittee Responsible for Oversight [Text Block]
|Microvast's SVP of Information Technology, is responsible for risk assessment and management.
|Cybersecurity Risk Process for Informing Board Committee or Subcommittee Responsible for Oversight [Text Block]
|
Management is actively involved in cybersecurity governance, ensuring alignment with our overall business strategy. Their responsibilities include:
•Security Objectives: Establishing security goals that correspond with corporate objectives and risk appetite.
•Resource Allocation: Providing adequate resources, including budget and personnel, to address cybersecurity risks effectively.
•Policy Development: Developing and maintaining policies that meet industry standards.
•Risk Management: Directing risk management initiatives and instituting control measures to mitigate recognized risks.
•Incident Response: Overseeing the implementation and regular testing of incident response plans, with employee training to ensure effective response capabilities.
•Compliance: Ensuring adherence to applicable regulations, while remaining vigilant about emerging threats.
Our Board of Directors evaluates our readiness to manage cybersecurity threats, receiving regular updates from the SVP of Information Technology, General Counsel, and CEO regarding any materially impactful cybersecurity risks.
|Cybersecurity Risk Role of Management [Text Block]
|
Management is actively involved in cybersecurity governance, ensuring alignment with our overall business strategy. Their responsibilities include:
•Security Objectives: Establishing security goals that correspond with corporate objectives and risk appetite.
•Resource Allocation: Providing adequate resources, including budget and personnel, to address cybersecurity risks effectively.
•Policy Development: Developing and maintaining policies that meet industry standards.
•Risk Management: Directing risk management initiatives and instituting control measures to mitigate recognized risks.
•Incident Response: Overseeing the implementation and regular testing of incident response plans, with employee training to ensure effective response capabilities.
•Compliance: Ensuring adherence to applicable regulations, while remaining vigilant about emerging threats.
Our Board of Directors evaluates our readiness to manage cybersecurity threats, receiving regular updates from the SVP of Information Technology, General Counsel, and CEO regarding any materially impactful cybersecurity risks.
Specific Cybersecurity Measures
Microvast has implemented various cybersecurity measures, including, but not limited to the following:
•Establishing physical security protocols and securing network access via VPN.
•Requiring multi-factor authentication for email and collaboration platforms.
•Deploying endpoint detection and response (EDR) and antivirus solutions across all devices.
•Enforcing strong password policies with a secured password vault for system credentials.
•Minimizing attack vectors by eliminating external web-facing business-critical applications.
•Utilizing encryption technologies to safeguard intellectual property and mitigate data loss risks.
•Developing a comprehensive suite of information security policies and a strategic information security roadmap.
•Implementing a Security Information and Event Management (SIEM) system.
These efforts, coupled with the isolation of industrial networks and structured software installation processes, demonstrate our continued commitment to maintaining robust cybersecurity defenses.
|Cybersecurity Risk Management Positions or Committees Responsible [Flag]
|true
|Cybersecurity Risk Management Positions or Committees Responsible [Text Block]
|Microvast's SVP of Information Technology, is responsible for risk assessment and management.
This individual has experience in developing security policies, enforcing compliance, orchestrating incident responses, and implementing cybersecurity strategies.
|Cybersecurity Risk Management Expertise of Management Responsible [Text Block]
|
This individual has experience in developing security policies, enforcing compliance, orchestrating incident responses, and implementing cybersecurity strategies.
|Cybersecurity Risk Process for Informing Management or Committees Responsible [Text Block]
|
Management is actively involved in cybersecurity governance, ensuring alignment with our overall business strategy. Their responsibilities include:
•Security Objectives: Establishing security goals that correspond with corporate objectives and risk appetite.
•Resource Allocation: Providing adequate resources, including budget and personnel, to address cybersecurity risks effectively.
•Policy Development: Developing and maintaining policies that meet industry standards.
•Risk Management: Directing risk management initiatives and instituting control measures to mitigate recognized risks.
•Incident Response: Overseeing the implementation and regular testing of incident response plans, with employee training to ensure effective response capabilities.
•Compliance: Ensuring adherence to applicable regulations, while remaining vigilant about emerging threats.
Our Board of Directors evaluates our readiness to manage cybersecurity threats, receiving regular updates from the SVP of Information Technology, General Counsel, and CEO regarding any materially impactful cybersecurity risks.
|Cybersecurity Risk Management Positions or Committees Responsible Report to Board [Flag]
|true
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef