Marygold Companies, Inc. 10-K Cybersecurity GRC - 2024-09-18

Page last updated on September 18, 2024

Marygold Companies, Inc. reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2024-09-18 17:12:50 EDT.

Filings

10-K filed on 2024-09-18

Marygold Companies, Inc. filed a 10-K at 2024-09-18 17:12:50 EDT
Accession Number: 0001493152-24-037019

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

ITEM 1C. CYBERSECURITY The Company recognizes that cybersecurity threats may pose significant business risks and has developed processes for identifying, assessing, and managing these threats. The Company has implemented a plan for cybersecurity and cyber-related management across its varied business units. This plan allows each business unit to tailor solutions to identify, manage, and mitigate risks based on their own assessment of their unique cybersecurity risks in conjunction with each business unit’s overall risk management process. While this plan helps enable consistent and appropriate compliance in reporting material cyber events and risks across the Company. Each business unit’s Chief Information Security Officer (“CISO”) on at least an annual basis is to provide a report to the Company’s senior management, regarding the state of their cybersecurity program and its material cyber risks. These reports are then shared with the Company’s cybersecurity oversight committee to inform and augment the Company’s risk management processes. Additionally, each business unit is required to maintain an incident reporting process to report significant cybersecurity events to the Company. The Company and its business units discuss and partner with third parties to assess, mitigate, audit, educate, implement, operate, protect, and remediate various cybersecurity related elements. The Company and its business units rely on third-party service providers for its products and services to run their information systems. This dependence exposes us, along with others who use these service providers, of a cyber breach on their service providers. It’s possible that a cyber-attack at a third-party service provider may have a material financial, operational or reputational impact to the Company. The Company and its business units will continuously monitor these risks associated with its service providers. Currently, the Corporate Governance & Nominating Committee (“CGNC”) has oversight of the Company’s cybersecurity risk management program. The CGNC will receive reports regarding a cybersecurity breach and impact incidents through the Company’s cybersecurity incident reporting process. Moreover, the CGNC is updated on cybersecurity trends and common deficiencies. In addition to the CGNC’s oversight, senior management of the Company’s business units are responsible for the day-to-day operations of protecting their businesses’ information systems. Each business unit is required to report material cybersecurity events to the Company. The Company’s senior management reviews incident reports to determine whether a cyber incident report should be filed with the SEC. For the fiscal year ending June 30, 2024, the Company had no cyber events requiring disclosure on Form 8-K, Item 1.05 as required under the Securities Exchange Act, Regulation S-K, Item 106.


Company Information

NameMarygold Companies, Inc.
CIK0001005101
SIC DescriptionFinance Services
TickerMGLD - NYSE
Website
CategoryNon-accelerated filer
Smaller reporting company
Fiscal Year EndJune 29