COGNEX CORP 10-K Cybersecurity GRC - 2024-02-15

Page last updated on April 11, 2024

COGNEX CORP reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2024-02-15 06:32:50 EST.

Filings

10-K filed on 2024-02-15

COGNEX CORP filed an 10-K at 2024-02-15 06:32:50 EST
Accession Number: 0000851205-24-000027

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

ITEM 1C: CYBERSECURITY Cybersecurity Risk Management As part of our overall Enterprise Risk Management program, the Company has implemented a cybersecurity risk management program that is informed by recognized industry standards and frameworks. The cybersecurity risk management program includes a number of components, including information security program assessments, penetration testing, and threat simulation exercises that are conducted periodically by both internal and external resources, as well as continuous monitoring of critical risks from cybersecurity threats using automated tools. During onboarding and periodically thereafter, we conduct trainings for the Company s employees, contractors, and temporary workers about cybersecurity risks, including sending test phishing emails for training purposes to all users of the Company s email system. As part of our cybersecurity risk management program, we maintain processes to assess and review the cybersecurity practices of third-party vendors and service providers, including utilization of software to evaluate, assess, and monitor cybersecurity risks posed by third parties that provide critical services or handle confidential information. Additionally, prior to engaging a critical third-party vendor or service provider, and periodically thereafter, we conduct security audits of such third parties, and, as appropriate, include security requirements in contracts. We, like other companies in our industry, face a number of cybersecurity risks in connection with our business. Although such risks have not materially affected us, including our business strategy, results of operations, or financial condition, to date, we have, from time to time, experienced threats to and security incidents related to our data and systems, including denial of service and phishing attacks. For more information about the cybersecurity risks we face, see the risk factor entitled Information security breaches may adversely affect our business in Item 1A- Risk Factors. Governance Our cybersecurity risk management program and related operations and processes are managed by our Information Security team (the IS Team ), which is led by the Senior Director of Information Security. The Senior Director of Information Security role is currently held by an individual who has approximately fifteen years of experience managing information security programs. The IS Team is responsible for assessing risks from cybersecurity threats, including their potential business impact and likelihood of occurrence, as well as implementing risk remediations and mitigations. The IS Team provides reports on cybersecurity risk management processes to the Chief Financial Officer and other leaders of the Company on a quarterly basis, or as potentially critical risks from cybersecurity threats or incidents arise. The IS Team provides reports on an annual basis to the Audit Committee, which oversees cybersecurity risks pursuant to the Audit Committee Charter. The Audit Committee periodically reports on cybersecurity risk management to the full Board of Directors. The Board of Directors, as a whole and through its committees, has responsibility for the oversight of risk management.


Company Information

NameCOGNEX CORP
CIK0000851205
SIC DescriptionIndustrial Instruments For Measurement, Display, and Control
TickerCGNX - Nasdaq
Website
CategoryLarge accelerated filer
Fiscal Year EndDecember 30