|
Cybersecurity Risk Management and Strategy Disclosure
|12 Months Ended
Dec. 31, 2024
|Cybersecurity Risk Management, Strategy, and Governance [Line Items]
|Cybersecurity Risk Management Processes for Assessing, Identifying, and Managing Threats [Text Block]
|
Risk Management and Strategy
To maintain a consistently high level of service experience for our clients, preserve the confidentiality, integrity, and availability of our information systems, safeguard our assets, data, intellectual property, and network infrastructure, while meeting regulatory requirements, it is crucial to effectively manage cybersecurity risks. To achieve this, we have implemented a comprehensive cybersecurity risk management framework, which is integrated in our overall enterprise risk management system and processes and is internally managed.
Our dedicated cybersecurity staff is tasked with assessing, identifying and managing risks related to cybersecurity threats and, under the leadership of our chief operating officer, is responsible for:
As of the date of this Annual Report, we have not experienced cybersecurity incidents during the year ended December 31, 2024, that resulted in an interruption to our operations, known losses of any critical data or otherwise had a material impact on our strategy, financial condition or results of operations. However, the scope and impact of any future incident cannot be predicted.
Governance
Our board of directors is responsible for overseeing risks related to cybersecurity. Our board of directors shall (i) maintain oversight of the disclosure related to cybersecurity matters in current reports or periodic reports of our company, (ii) review updates to the status of any material cybersecurity incidents or material risks from cybersecurity threats to our company, and the disclosure issues, if any, presented by our management on a quarterly basis, and (iii) review disclosure concerning cybersecurity matters in our annual report on Form 20-F presented by our management.
At the management level, our cyber security team is responsible for monitoring and mitigating cybersecurity risks, including those associated with third-party service providers. The team investigates and responds to any suspicious activities within our data environment. Upon detecting any material cybersecurity threat or cybersecurity incident, our cyber security team will report the threat or incident to our head of information technology and cybersecurity functions, who will assume the responsibility for managing the risks from such material cybersecurity threat or cybersecurity incident and monitoring the prevention, mitigation and remediation measures. Our head of information technology and cybersecurity functions is required to update our board of directors regarding the status of any material cybersecurity threats, material cybersecurity incidents or other associated risks, and they are also required to discuss with our board of directors with respect to disclosure of any material cybersecurity threat or incident, if any. Our head of information technology and cybersecurity functions has extensive experience working in the field of cybersecurity, with pertinent background and expertise in cybersecurity risk management and compliance.
If a cybersecurity incident occurs, our cyber security team will promptly organize personnel for internal assessment. If it is further determined that the incident could potentially be a material cybersecurity event, our cyber security team will promptly report the incident and assessment results to our head of information technology and cybersecurity functions, and, to the extent appropriate, involve external legal counsels to provide advice. Our management shall prepare disclosure material on the cybersecurity incident for review and approval by our board of directors before it is disseminated to the public.
|Cybersecurity Risk Management Processes Integrated [Text Block]
|To achieve this, we have implemented a comprehensive cybersecurity risk management framework, which is integrated in our overall enterprise risk management system and processes and is internally managed.
|Cybersecurity Risk Management Processes Integrated [Flag]
|true
|Cybersecurity Risk Management Positions or Committees Responsible Report to Board [Flag]
|true
|Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Text Block]
|
As of the date of this Annual Report, we have not experienced cybersecurity incidents during the year ended December 31, 2024, that resulted in an interruption to our operations, known losses of any critical data or otherwise had a material impact on our strategy, financial condition or results of operations. However, the scope and impact of any future incident cannot be predicted.
|Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Flag]
|false
|Cybersecurity Risk Role of Management [Text Block]
|
Our board of directors is responsible for overseeing risks related to cybersecurity. Our board of directors shall (i) maintain oversight of the disclosure related to cybersecurity matters in current reports or periodic reports of our company, (ii) review updates to the status of any material cybersecurity incidents or material risks from cybersecurity threats to our company, and the disclosure issues, if any, presented by our management on a quarterly basis, and (iii) review disclosure concerning cybersecurity matters in our annual report on Form 20-F presented by our management.
At the management level, our cyber security team is responsible for monitoring and mitigating cybersecurity risks, including those associated with third-party service providers. The team investigates and responds to any suspicious activities within our data environment. Upon detecting any material cybersecurity threat or cybersecurity incident, our cyber security team will report the threat or incident to our head of information technology and cybersecurity functions, who will assume the responsibility for managing the risks from such material cybersecurity threat or cybersecurity incident and monitoring the prevention, mitigation and remediation measures. Our head of information technology and cybersecurity functions is required to update our board of directors regarding the status of any material cybersecurity threats, material cybersecurity incidents or other associated risks, and they are also required to discuss with our board of directors with respect to disclosure of any material cybersecurity threat or incident, if any. Our head of information technology and cybersecurity functions has extensive experience working in the field of cybersecurity, with pertinent background and expertise in cybersecurity risk management and compliance.
If a cybersecurity incident occurs, our cyber security team will promptly organize personnel for internal assessment. If it is further determined that the incident could potentially be a material cybersecurity event, our cyber security team will promptly report the incident and assessment results to our head of information technology and cybersecurity functions, and, to the extent appropriate, involve external legal counsels to provide advice. Our management shall prepare disclosure material on the cybersecurity incident for review and approval by our board of directors before it is disseminated to the public.
|Cybersecurity Risk Management Third Party Engaged [Flag]
|true
|Cybersecurity Risk Process for Informing Management or Committees Responsible [Text Block]
|If a cybersecurity incident occurs, our cyber security team will promptly organize personnel for internal assessment. If it is further determined that the incident could potentially be a material cybersecurity event, our cyber security team will promptly report the incident and assessment results to our head of information technology and cybersecurity functions, and, to the extent appropriate, involve external legal counsels to provide advice.
|Cybersecurity Risk Management Positions or Committees Responsible [Text Block]
|Our management shall prepare disclosure material on the cybersecurity incident for review and approval by our board of directors before it is disseminated to the public.
|Cybersecurity Risk Management Positions or Committees Responsible [Flag]
|true
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef
|X
- References
+ Details
Reference 1: http://www.xbrl.org/2003/role/presentationRef