Diversified Energy Co 10-K Cybersecurity GRC - 2026-02-26

Page last updated on February 26, 2026

Diversified Energy Co reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2026-02-26 16:33:20 EST.

Filings

10-K filed on 2026-02-26

Diversified Energy Co filed a 10-K at 2026-02-26 16:33:20 EST
Accession Number: 0001922446-26-000020

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

Item 1C. Cybersecurity We face various cybersecurity risks due to the threat and sophistication of cybercrime. A cybersecurity breach, incident, or failure of our IT systems could disrupt our businesses, put employees or others at risk, result in the disclosure of confidential information, damage our reputation, and create significant financial and legal exposure for DEC. Governance Our Chief Information Security Officer oversees our cybersecurity program . He is responsible for creating and executing the cybersecurity strategy that is aligned with our technology posture while also accountable for the detection, mitigation and remediation of cybersecurity incidents . Our Chief Information Security Officer has over 25 years of experience in the oil and gas industry with numerous leadership positions from digital transformation to cybersecurity at large E&P companies and in consulting. Our Information Security Management Team, which includes certain members of the Senior Leadership Team including the Chief Financial Officer, Chief Operating Officer, Chief Information Officer, Head of Internal Audit, Chief Information Security Officer, Chief Legal and Risk Officer, meets at least once a quarter to discuss cybersecurity issues, risks and strategies. The Audit Committee of the Board of Directors provides oversight of our cybersecurity risk management efforts, and receives regular reports from our Information Security Management Team on information security matters, including assessing risks, efforts to improve our network security systems and enhanced employee trainings. The membership of this committee is adequately trained and educated to provide proper oversight over the cybersecurity program utilizing the National Institute of Standards and Technology framework . Risk Management & Strategy Our Information Security Management Team engages in robust processes for assessing and overseeing cybersecurity risks. The Information Security Team uses advanced network security detection with regular threat testing to detect cybersecurity threats and is responsible for controlling and protecting our confidential information. They are responsible for testing our cybersecurity crisis management and business continuity teams including conducting tabletop exercises biennially . The Information Security Team oversees our IT Security Policy, which includes measures to protect against cyber-attacks, and updates it on an annual basis. They also regularly engage with key technology partners and suppliers to ensure potentially vulnerable systems are identified and secured. In addition, we have robust mandatory employee training, phishing simulations, and e-learning sessions delivered quarterly by our digital security team. Form 10-K Diversified Energy Company Through the date of this report, there were no cybersecurity incidents that have materially affected or are reasonably likely to materially affect the Company or our strategy, financial condition, or results of operations. However, the scope and impact of any future incident cannot be predicted. Refer to Item 1A. Risk Factors of this Annual Report on Form 10-K for more information on our cybersecurity related risks.


Company Information

NameDiversified Energy Co
CIK0001922446
SIC DescriptionCrude Petroleum & Natural Gas
TickerDEC - NYSE
Website
CategoryAccelerated filer
Fiscal Year EndDecember 31