WESTWATER RESOURCES, INC. 10-K Cybersecurity GRC - 2024-03-19

Page last updated on April 11, 2024

WESTWATER RESOURCES, INC. reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2024-03-19 16:22:55 EDT.

Filings

10-K filed on 2024-03-19

WESTWATER RESOURCES, INC. filed an 10-K at 2024-03-19 16:22:55 EDT
Accession Number: 0001558370-24-003570

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

ITEM 1C. CYBERSECURITY RISK MANAGEMENT AND STRATEGY The Company stores and transmits data including sensitive and nonpublic data regarding our company, employees, counterparties and customers, among others. Like many companies, we are the subject of attempts by unauthorized actors to disrupt our operations, access our data, or otherwise cause damage to our technology infrastructure, including through the use of phishing, malware and other attack vectors. In addition, we are subject to cybersecurity risk in connection with vendors we utilize. For example, a weakness in vendor systems or software products that we use in the operation of our business may provide a mechanism for a cyber threat actor to access the Company s systems or information through trusted paths. Recent global supply chain security incidents such as compromises of reputable software update services are illustrative of this type of occurrence. To date, Westwater has not been materially affected by cybersecurity incidents. In light of the nature of the data at risk and the cyber-related threats faced by the Company, the Company employs an agency-wide cybersecurity detection, protection and prevention program for the protection of the Company s operations and assets. This program includes cybersecurity protocols and controls, network protection, system monitoring and 31 Table of Contents detection processes, vendor risk management process, and regular cybersecurity and privacy training for employees. However, cybersecurity is an evolving landscape, and we are constantly learning from our own experiences as well as the experiences of others, and there can be no assurance that our processes and procedures will be successful in preventing all cybersecurity incidents. GOVERNANCE The Company s Board of Directors is responsible for the oversight of risks related to cybersecurity threats. Management communicates with the Board of Directors on a regular basis regarding cybersecurity efforts through risk reporting and the development and testing of procedures and exercises for responding to both internal and external cyber threats. The Company s Information Technology department, which is headed by the Company s Information Technology Administrator, is responsible for the Company s information technology program, including addressing cybersecurity risks, and utilizes specialized vendors to enhance the program. The Information Technology department assess the effectiveness of its cybersecurity efforts through ongoing monitoring. For a discussion of whether and how any risks from cybersecurity threats, including as a result of any previous cybersecurity incidents, have materially affected or are reasonably likely to materially affect the Company, including its business strategy, results of operations or financial condition, see Item 1A. Risk Factors , which is incorporated by reference into this Item 1C. 32 Table of Contents
Item 1C. 32 Table of Contents


Company Information

NameWESTWATER RESOURCES, INC.
CIK0000839470
SIC DescriptionMetal Mining
TickerWWR - NYSE
Website
CategoryNon-accelerated filer
Smaller reporting company
Fiscal Year EndDecember 30