SINGING MACHINE CO INC 10-K Cybersecurity GRC - 2024-04-15

Page last updated on April 15, 2024

SINGING MACHINE CO INC reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2024-04-15 17:24:21 EDT.

Filings

10-K filed on 2024-04-15

SINGING MACHINE CO INC filed an 10-K at 2024-04-15 17:24:21 EDT
Accession Number: 0001493152-24-014674

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

ITEM 1C. Cybersecurity Risk Management and Strategy We recognize the critical importance of developing, implementing, and maintaining robust cybersecurity measures to safeguard our information systems and protect the confidentiality, integrity, and availability of our data. We primarily rely on expert third-party managed IT service providers to protect our IT systems from cybersecurity threats. Managing Material Risks & Integrated Overall Risk Management As one of the critical elements of our overall risk management program, our cybersecurity program is focused on the following key areas: Technical Safeguards: We deploy technical safeguards that are designed to protect our information systems from cybersecurity threats, including firewalls, anti-malware software, and monitoring software agents that are installed on Company devices. Third-Party Management: Our financial data and primary operational systems are hosted off-site in virtual cloud environments which get periodically backed up and can be restored in the event of a cybersecurity incident. Our music subscription service is managed by our content provider, Stingray, who processes payments, and our e-commerce website payment processing is handled by Shopify. We do not store sensitive customer credit card data within our IT systems. Risk Management: We have strategically integrated cybersecurity risk management into our broader risk management framework to promote a company-wide culture of cybersecurity risk management. This integration ensures that cybersecurity considerations are an integral part of our decision-making processes at every level. Our management team works closely with our third-party IT service provider to continuously evaluate and address cybersecurity risks in alignment with our business objectives and operational needs. Oversee Third-party Risk Because we are aware of the risks associated with third-party service providers, we conduct annual assessments of the SOC reports of our providers. This approach is designed to mitigate risks related to data breaches or other security incidents originating from third parties. Risks from Cybersecurity Threats As of the date of this Form 10-KT, there have been no cybersecurity incidents that have materially affected our results of operations or financial condition. None. 19


Company Information

NameSINGING MACHINE CO INC
CIK0000923601
SIC DescriptionPhonograph Records & Prerecorded Audio Tapes & Disks
TickerMICS - Nasdaq
Website
CategoryNon-accelerated filer
Smaller reporting company
Fiscal Year EndMarch 30