NATIONAL PRESTO INDUSTRIES INC 10-K Cybersecurity GRC - 2024-03-15

Page last updated on April 11, 2024

NATIONAL PRESTO INDUSTRIES INC reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2024-03-15 16:13:32 EDT.

Filings

10-K filed on 2024-03-15

NATIONAL PRESTO INDUSTRIES INC filed an 10-K at 2024-03-15 16:13:32 EDT
Accession Number: 0001437749-24-008099

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

Item 1C CYBERSECURITY for a further discussion. Health Epidemics, Pandemics, or Similar Public Health Crises Risks: The Company faces a wide variety of risks related to health epidemics, pandemics and similar outbreaks, especially of infectious diseases. A global health crisis like the COVID-19 pandemic has contributed to business slowdowns or shutdowns, labor shortages, supply chain challenges, changes in government spending and requirements, regulatory challenges, reductions in demand for products and services, inflationary pressures and market volatility, If a health epidemic, pandemic or similar outbreak were to occur or worsen, the Company will likely experience broad and varied impacts, including potentially to its workforce and supply chain, inflationary pressures and increased costs (which may or may not be fully recoverable or insured), contracting, production and/or distribution delays, market volatility and other financial impacts. If any or all of these items were to occur, the Company could experience material adverse impacts on its business, financial condition, results of operations and/or cash flows. 13 ITEM 1B. UNRESOLVED STAFF COMMENTS None. ITEM 1C. CYBERSECURITY The Company faces various cybersecurity threats. The purpose of the Company’s cybersecurity program is to assess, identify, manage and mitigate cybersecurity risk while supporting the achievement of the Company’s business objectives. Under the Company’s comprehensive risk management program, the board of directors (the “Board”) of the Company maintains oversight of the most significant risks facing the Company, including cybersecurity risks, while senior management is responsible for the identification and prioritization of risks that are material to the Company’s business, corresponding risk-mitigation efforts and day-to-day management of the Company’s risk management program. At least annually, the Board receives cybersecurity briefings from senior executives. The Company’s cybersecurity program sets the framework for the Company’s approach to cybersecurity. Each business segment of the Company designates individuals with appropriate qualifications and experience to be responsible for addressing cybersecurity matters, including assessing, identifying and managing risks from cybersecurity threats, with a direct reporting line to senior management. Under the Company’s approach to cybersecurity, each business segment designs and operates its own information and cybersecurity program tailored to its market, customer requirements, regulatory requirements and threats. The Company’s cybersecurity policy and procedures are designed to ensure senior management receives timely and adequate information regarding cybersecurity matters, including threats and incident response, as appropriate to the matter. As part of the Company’s approach to cyber risk management, the Company performs internal audits of internal processes and controls relating to cybersecurity. Every year, the Company engages third-party experts to conduct cyber penetration testing. Based on their findings and recommendations, the Company makes the appropriate updates to its cybersecurity software. Although the Company has designed its cybersecurity program and oversight to mitigate cybersecurity risks, the Company faces unknown cybersecurity risks, threats, and attacks. To date, these risks, threats or attacks have not had a material impact on the Company’s operations, business strategies or financial results, but the Company cannot provide assurance that they will not have a material impact in the future. See Item 1A - Risk Factors above for additional discussion of various cybersecurity risks.
ITEM 1C. CYBERSECURITY The Company faces various cybersecurity threats. The purpose of the Company’s cybersecurity program is to assess, identify, manage and mitigate cybersecurity risk while supporting the achievement of the Company’s business objectives. Under the Company’s comprehensive risk management program, the board of directors (the “Board”) of the Company maintains oversight of the most significant risks facing the Company, including cybersecurity risks, while senior management is responsible for the identification and prioritization of risks that are material to the Company’s business, corresponding risk-mitigation efforts and day-to-day management of the Company’s risk management program. At least annually, the Board receives cybersecurity briefings from senior executives. The Company’s cybersecurity program sets the framework for the Company’s approach to cybersecurity. Each business segment of the Company designates individuals with appropriate qualifications and experience to be responsible for addressing cybersecurity matters, including assessing, identifying and managing risks from cybersecurity threats, with a direct reporting line to senior management. Under the Company’s approach to cybersecurity, each business segment designs and operates its own information and cybersecurity program tailored to its market, customer requirements, regulatory requirements and threats. The Company’s cybersecurity policy and procedures are designed to ensure senior management receives timely and adequate information regarding cybersecurity matters, including threats and incident response, as appropriate to the matter. As part of the Company’s approach to cyber risk management, the Company performs internal audits of internal processes and controls relating to cybersecurity. Every year, the Company engages third-party experts to conduct cyber penetration testing. Based on their findings and recommendations, the Company makes the appropriate updates to its cybersecurity software. Although the Company has designed its cybersecurity program and oversight to mitigate cybersecurity risks, the Company faces unknown cybersecurity risks, threats, and attacks. To date, these risks, threats or attacks have not had a material impact on the Company’s operations, business strategies or financial results, but the Company cannot provide assurance that they will not have a material impact in the future. See Item 1A - Risk Factors above for additional discussion of various cybersecurity risks.


Company Information

NameNATIONAL PRESTO INDUSTRIES INC
CIK0000080172
SIC DescriptionOrdnance & Accessories, (No Vehicles/Guided Missiles)
TickerNPK - NYSE
Website
CategoryAccelerated filer
Fiscal Year EndDecember 30