XML 60 R29.htm IDEA: XBRL DOCUMENT v3.25.3
Cybersecurity Risk Management and Strategy Disclosure
12 Months Ended
Oct. 03, 2025
Cybersecurity Risk Management, Strategy, and Governance [Line Items]  
Cybersecurity Risk Management Processes for Assessing, Identifying, and Managing Threats [Text Block]
Cybersecurity risk management is a critical component of the Company’s overall risk management. The Company proactively addresses cybersecurity risk through a comprehensive cybersecurity program to identify, protect, respond to, and manage any reasonably foreseeable cybersecurity risks, threats and incidents. The Company’s cybersecurity risk management program is aligned with the International Standards Organization (ISO 27001:2022) and mapped to National Institute of Standards Special Publication 800-53 Revision 5 (NIST 800-53). The Company’s cybersecurity program is integrated into the Company’s overarching enterprise risk management program.

The Company’s Chief Information Security Officer (CISO) is responsible for developing and managing the Company’s cybersecurity program and reporting on cybersecurity matters to management, the Audit Committee and the Company’s Board of Directors. The CISO has over twenty years of cybersecurity and technology experience, originating with cryptography and security experience as a military officer and progressing through senior management roles at prominent global audit and technology consulting corporations. The CISO is supervised by the Company’s Chief Information Officer.

The Company has established and maintains a cross-functional Cyber Governance Committee that is responsible for helping the CISO prioritize and manage evolving cyber risks and reports to the Company’s Chief Information Officer. The Cyber Governance Committee, which oversees the Company’s governance and oversight of information security, meets quarterly and interfaces with other functional areas within the Company, including, but not limited to, legal, internal audit, accounting, risk management, human resources, as well as external third-party partners. The CISO serves as the chair of the Cyber Governance Committee. The CISO also provides response and oversight during any significant cybersecurity incidents and informs the Cyber Governance Committee of all cybersecurity incidents that have been identified by the Company to date.

The Company engages third parties to assist with the monitoring components of the security infrastructure that we have deployed. As required, the Company engages consultants and third parties to assist with penetration testing, tabletop incident response exercises, or other activities necessary to comply with various standards and certifications that are necessary for the Company’s business operations. The Company provides regular awareness training to its employees and consultants using its collaboration platforms to help identify, avoid, and mitigate cybersecurity threats, as well as targeted security training for key departments that routinely process, store or handle sensitive data types. Where service providers are materially utilized, the company obtains SOC1 or SOC2 reports and complies with complementary user entity controls to keep those attestations valid. Where needed, the Company requires appropriate certifications and contractually requires adherence to data privacy and security requirements from its vendors.

The Company operates technologies that are exposed to the internet, and although robust cybersecurity programs, technologies, and safeguards are deployed to help protect the Company’s operations and assets, the Company, by nature, is exposed to material cybersecurity attacks that are either generally targeted at companies that operate on the internet, or the Company, by nature, remains exposed to attacks that are specifically directed at the Company’s technology systems exposed to the internet.
Cybersecurity Risk Management Processes Integrated [Flag] true
Cybersecurity Risk Management Processes Integrated [Text Block] Cybersecurity risk management is a critical component of the Company’s overall risk management. The Company proactively addresses cybersecurity risk through a comprehensive cybersecurity program to identify, protect, respond to, and manage any reasonably foreseeable cybersecurity risks, threats and incidents. The Company’s cybersecurity risk management program is aligned with the International Standards Organization (ISO 27001:2022) and mapped to National Institute of Standards Special Publication 800-53 Revision 5 (NIST 800-53). The Company’s cybersecurity program is integrated into the Company’s overarching enterprise risk management program.
Cybersecurity Risk Management Third Party Engaged [Flag] true
Cybersecurity Risk Third Party Oversight and Identification Processes [Flag] true
Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Flag] false
Cybersecurity Risk Board of Directors Oversight [Text Block]
The Company’s Board of Directors recognizes the importance of cybersecurity and has ultimate oversight of the Company’s cybersecurity risk management program. As reflected in the Audit Committee’s charter, the Audit Committee of the Company’s Board of Directors has been delegated certain cybersecurity oversight responsibility and, among other things, monitors the Company’s cybersecurity risk profile, receives periodic updates from management on all matters related to cybersecurity and reports to the full Board of Directors. The CISO presents quarterly updates to the Audit
Committee on the Company’s cyber risks and threats, status of projects to strengthen the Company’s information security systems, and emerging threats.
Cybersecurity Risk Board Committee or Subcommittee Responsible for Oversight [Text Block]
The Company has established and maintains a cross-functional Cyber Governance Committee that is responsible for helping the CISO prioritize and manage evolving cyber risks and reports to the Company’s Chief Information Officer. The Cyber Governance Committee, which oversees the Company’s governance and oversight of information security, meets quarterly and interfaces with other functional areas within the Company, including, but not limited to, legal, internal audit, accounting, risk management, human resources, as well as external third-party partners. The CISO serves as the chair of the Cyber Governance Committee. The CISO also provides response and oversight during any significant cybersecurity incidents and informs the Cyber Governance Committee of all cybersecurity incidents that have been identified by the Company to date.
Cybersecurity Risk Process for Informing Board Committee or Subcommittee Responsible for Oversight [Text Block] The CISO presents quarterly updates to the Audit
Committee on the Company’s cyber risks and threats, status of projects to strengthen the Company’s information security systems, and emerging threats.
Cybersecurity Risk Role of Management [Text Block] The Company’s Chief Information Security Officer (CISO) is responsible for developing and managing the Company’s cybersecurity program and reporting on cybersecurity matters to management, the Audit Committee and the Company’s Board of Directors.
Cybersecurity Risk Management Positions or Committees Responsible [Flag] true
Cybersecurity Risk Management Positions or Committees Responsible [Text Block]
The Company’s Chief Information Security Officer (CISO) is responsible for developing and managing the Company’s cybersecurity program and reporting on cybersecurity matters to management, the Audit Committee and the Company’s Board of Directors. The CISO has over twenty years of cybersecurity and technology experience, originating with cryptography and security experience as a military officer and progressing through senior management roles at prominent global audit and technology consulting corporations. The CISO is supervised by the Company’s Chief Information Officer.
Cybersecurity Risk Management Expertise of Management Responsible [Text Block] The CISO has over twenty years of cybersecurity and technology experience, originating with cryptography and security experience as a military officer and progressing through senior management roles at prominent global audit and technology consulting corporations.
Cybersecurity Risk Process for Informing Management or Committees Responsible [Text Block] The CISO presents quarterly updates to the Audit
Committee on the Company’s cyber risks and threats, status of projects to strengthen the Company’s information security systems, and emerging threats.
Cybersecurity Risk Management Positions or Committees Responsible Report to Board [Flag] true