The CIO, CISO, Materiality And SEC Cybersecurity Risk Factor Disclosures

For the first time in 30 years, the SEC has updated its risk factor disclosure guidance under Regulation S-K (Reg S-K).

One of the foundational updates replaces the requirement for issuers to disclose the “most significant” risk factors with “material” risk factors. That’s a significant shift in the SEC’s principles-based approach to risk factor disclosure that has implications for cybersecurity-focused risk factors and their disclosure.

Registrants should begin reviewing their risk factor disclosure now to prepare for the final rules going into effect for the 4th quarter 2020 Form 10-Q filing and the fiscal year 2020 10-K annual filing.

This DDN Insight is Part 1 of a series focused on what CIOs and CISOs need to understand about cybersecurity risk factor disclosures relative to this change and other trends. But first, some background.

admin

Share
Published by
admin

Recent Posts

How ESG Metrics Are Taking Over Annual Incentive Plans

Compensation committees at S&P 500 companies are increasingly tying annual bonuses to measures beyond financial…

3 weeks ago

Visual Investigation: Pay Gaps Widen as Workforce Scrutiny Grows

The pay gap between CEOs and their employees has widened over the past half decade,…

1 month ago

In a Bumper Year for CEO Pay, One Chief’s $161 Million Award Swells to $1.3 Billion

Chip maker Broadcom gave Hock Tan, its chief executive, a $161 million stock award, instantly…

2 months ago

Are Companies Really Reincorporating in Nevada?

Elon's Musk's $56 billion pay package's upheaval, a hedge fund sanctioned for failing to preserve…

2 months ago

Are Check Marks ‘Cheap Talk’ in Board Skills Matrices?

Disclosures about directors' skills and expertise are increasingly coming under the microscope as investors ramp…

3 months ago

Boards Looking for ‘Soft Skills’ in New Crop of CEOs

On Jan. 1, several of the nation's biggest companies — including Morgan Stanley, Kraft Heinz,…

4 months ago