INSIGHT ENTERPRISES INC 10-K Cybersecurity GRC - 2025-02-14

Page last updated on February 14, 2025

INSIGHT ENTERPRISES INC reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2025-02-14 17:10:52 EST.

Filings

10-K filed on 2025-02-14

INSIGHT ENTERPRISES INC filed a 10-K at 2025-02-14 17:10:52 EST
Accession Number: 0001628280-25-005817

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

Item 1C. Cybersecurity Our information security program is managed by a dedicated Chief Information Security Officer (“CISO”) who is responsible, along with his team, for leading enterprise-wide cybersecurity strategy, policy, standards, architecture, and processes. Our CISO has served in that role since 2021 and has been in cybersecurity related roles for more than 25 years, including with two publicly traded companies. Our Board of Directors has delegated oversight of risks from cybersecurity threats through our information security program to our Audit Committee , which receives updates twice a year on the program and on an as needed basis from our CISO regarding risks from cybersecurity threats. Our CISO additionally provides periodic updates to our Board of Directors, our Chief Executive Officer and other senior management members, including through our overall Enterprise Risk Management Program. These updates include, among other risk management issues, updates on the Company’s cybersecurity risks and threats, the status of projects to strengthen our information security systems, assessments of the information security program, and the emerging threat landscape. Our information security program leverages components from industry frameworks and generally recognized best practices, including International Organization for Standardization 27001 and National Institute of Standards and Technology (“NIST”) standards, such as the NIST Cybersecurity Framework, which emphasizes identification, protection, detection, response and recovery. Our program is regularly evaluated by internal and external experts with the results of those reviews reported to senior management and the Board of Directors. We also collaborate with thought leaders in cybersecurity including with key vendors, clients, business partners, industry 23 INSIGHT ENTERPRISES, INC. participants, and intelligence and law enforcement communities as part of our continuing efforts to evaluate and improve the effectiveness of our information security policies and procedures. This collaboration allows us to rapidly adopt industry best practices developed through firsthand experience mitigating cyber incidents. Our program also includes processes to oversee and identify risks from cybersecurity threats associated with our use of third-party service providers. As of the date of this report, we are not aware of any risks from cybersecurity threats, including as a result of any previous cybersecurity incidents, that have materially affected or are reasonably likely to materially affect us, including our overall business strategy, results of operations, or financial condition over the long term. For additional information regarding cybersecurity-related risks we face, see “Risk Factors - Risks Related to Our Technology, Data and Intellectual Property - Cyberattacks, data incidents and breaches in the security (i) of our information systems and networks, (ii) of the products we sell and services we provide, and (iii) of the electronic and confidential information in our possession could materially adversely impact our financial condition, results of operations, reputation, and relationships with clients, partners, vendors, and teammates,” in Part I, Item 1A of this report. 24 INSIGHT ENTERPRISES, INC.


Company Information

NameINSIGHT ENTERPRISES INC
CIK0000932696
SIC DescriptionRetail-Catalog & Mail-Order Houses
TickerNSIT - Nasdaq
Website
CategoryLarge accelerated filer
Fiscal Year EndDecember 30