XML 61 R40.htm IDEA: XBRL DOCUMENT v3.25.0.1
Cybersecurity Risk Management and Strategy Disclosure
12 Months Ended
Dec. 31, 2024
Cybersecurity Risk Management, Strategy, and Governance [Line Items]  
Cybersecurity Risk Management Processes for Assessing, Identifying, and Managing Threats [Text Block]
Information security is an integral part of the Company’s overall enterprise risk management program. The Company maintains cybersecurity processes designed to detect and assess the severity of cybersecurity threats and incidents and, where applicable and possible, to identify the source of a threat or incident, including, whether it is associated with the use of third-party service providers. The Company's processes also include cybersecurity testing, detection, response, prevention and mitigation strategies, conducting contract and vendor due diligence review, and informing management and the Company's Board of Directors of material cybersecurity threats and incidents. The Company's information security team also engages third-party security consultants for penetration testing, training and system enhancements. The Company provides training and education for employees on cybersecurity awareness, including confidential information protection and simulated phishing attacks where appropriate for the employee’s role.
Cybersecurity Risk Management Processes Integrated [Flag] true
Cybersecurity Risk Management Processes Integrated [Text Block] Information security is an integral part of the Company’s overall enterprise risk management program. The Company maintains cybersecurity processes designed to detect and assess the severity of cybersecurity threats and incidents and, where applicable and possible, to identify the source of a threat or incident, including, whether it is associated with the use of third-party service providers. The Company's processes also include
Cybersecurity Risk Management Third Party Engaged [Flag] true
Cybersecurity Risk Third Party Oversight and Identification Processes [Flag] true
Cybersecurity Risk Materially Affected or Reasonably Likely to Materially Affect Registrant [Flag] false
Cybersecurity Risk Board of Directors Oversight [Text Block] The Board of Directors has overall oversight responsibility for the Company's risk management function, and primarily relies on the Audit Committee to administer this oversight.
Cybersecurity Risk Board Committee or Subcommittee Responsible for Oversight [Text Block] The Board of Directors has overall oversight responsibility for the Company's risk management function, and primarily relies on the Audit Committee to administer this oversight. With respect to cybersecurity, the Board and Audit Committee are responsible for confirming that the Company's management maintains appropriate cybersecurity policies and has processes in place designed to identify and evaluate cybersecurity risks to which the Company is exposed, to manage cybersecurity risks and to mitigate any cybersecurity incidents. The Vice President of Information Technology is responsible for identifying, considering and assessing material cybersecurity risks on an ongoing basis, establishing processes for monitoring and mitigating potential cybersecurity risks, exposures, implementing appropriate mitigation measures and maintaining our cybersecurity program.
Cybersecurity Risk Process for Informing Board Committee or Subcommittee Responsible for Oversight [Text Block] is responsible for identifying, considering and assessing material cybersecurity risks on an ongoing basis, establishing processes for monitoring and mitigating potential cybersecurity risks, exposures, implementing appropriate mitigation measures and maintaining our cybersecurity program. The Company's dedicated personnel, who report to the Vice President of Information Technology, are certified and experienced information systems security professionals and information security managers with many years of experience. The Vice President of Information Technology has managed this team for over five years after having progressed through various roles of increasing responsibility in both operations and technology at the Company. The Vice President of Information Technology and other members of management report to either the Board of Directors or the Audit Committee at least annually on, among other topics, updates to the Company’s cybersecurity program and mitigation strategies, developments in cybersecurity practices generally, and third-party assessments of the Company’s cybersecurity program. Management also provides general program updates and industry trends to the Board and Audit Committee on a more ad hoc basis.
Cybersecurity Risk Role of Management [Text Block] With respect to cybersecurity, the Board and Audit Committee are responsible for confirming that the Company's management maintains appropriate cybersecurity policies and has processes in place designed to identify and evaluate cybersecurity risks to which the Company is exposed, to manage cybersecurity risks and to mitigate any cybersecurity incidents. The Vice President of Information Technology is responsible for identifying, considering and assessing material cybersecurity risks on an ongoing basis, establishing processes for monitoring and mitigating potential cybersecurity risks, exposures, implementing appropriate mitigation measures and maintaining our cybersecurity program.
Cybersecurity Risk Management Positions or Committees Responsible [Flag] true
Cybersecurity Risk Management Positions or Committees Responsible [Text Block] With respect to cybersecurity, the Board and Audit Committee are responsible for confirming that the Company's management maintains appropriate cybersecurity policies and has processes in place designed to identify and evaluate cybersecurity risks to which the Company is exposed, to manage cybersecurity risks and to mitigate any cybersecurity incidents. The Vice President of Information Technology is responsible for identifying, considering and assessing material cybersecurity risks on an ongoing basis, establishing processes for monitoring and mitigating potential cybersecurity risks, exposures, implementing appropriate mitigation measures and maintaining our cybersecurity program.
Cybersecurity Risk Management Expertise of Management Responsible [Text Block] The Company's dedicated personnel, who report to the Vice President of Information Technology, are certified and experienced information systems security professionals and information security managers with many years of experience.
Cybersecurity Risk Process for Informing Management or Committees Responsible [Text Block] The Vice President of Information Technology and other members of management report to either the Board of Directors or the Audit Committee at least annually on, among other topics, updates to the Company’s cybersecurity program and mitigation strategies, developments in cybersecurity practices generally, and third-party assessments of the Company’s cybersecurity program. Management also provides general program updates and industry trends to the Board and Audit Committee on a more ad hoc basis.
Cybersecurity Risk Management Positions or Committees Responsible Report to Board [Flag] true