Prime Medicine, Inc. 10-K Cybersecurity GRC - 2025-02-28

Page last updated on March 3, 2025

Prime Medicine, Inc. reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2025-02-28 08:13:01 EST.

Filings

10-K filed on 2025-02-28

Prime Medicine, Inc. filed a 10-K at 2025-02-28 08:13:01 EST
Accession Number: 0001628280-25-008884

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

Item 1C. Cybersecurity Risk Management and Strategy Our cybersecurity risk management program is a significant part of our overall risk management program. Teams of internal and third-party cybersecurity professionals oversee cybersecurity risk management , which incorporates elements of the National Institute for Standards and Technology Cybersecurity Framework. We also maintain a comprehensive process for identifying, assessing, and managing material risks from cybersecurity threats. We also have a process in place to oversee and vet our third party resources, including, for critical vendors and as appropriate, through reviews of Service Organization Control Type 2 reports. We maintain an ongoing end-user cybersecurity awareness program that is designed to raise awareness of cybersecurity threats to reduce our vulnerability as well as to encourage consideration of cybersecurity risks across functions, including quarterly training and simulated phishing campaigns. Although we have not experienced a material cybersecurity incident, like other organizations in our industry, we face a number of cybersecurity risks in connection with our business and recognize the growing threat within the general marketplace and our industry. For more information about the cybersecurity risks we face, see the section entitled “Risk Factors - Risks Related to Information Technology and Data Privacy”. 110 Oversight and Governance Members of our senior management, including our Chief Executive Officer, Chief Financial Officer, and leaders from our legal and information technology functions , maintain responsibility for assessing and managing cybersecurity threats. This team has deep expertise in building and leading information systems and cybersecurity teams across a variety of institutions. Our Head of Information Technology has approximately 20 years of information security experience. Cybersecurity risk governance has been delegated by our Board of Directors to the Audit Committee of the Board of Directors, or the Audit Committee. As provided in the Audit Committee Charter, the Audit Committee is responsible for reviewing, assessing, and considering, in consultation with management and the Board, as appropriate, the overall risk management policies and procedures of the Company, including our major risk exposures such as cybersecurity. The Audit Committee and Board of Directors receive routine updates from senior management, including leaders from our information technology and legal functions regarding matters of cybersecurity. These updates include existing and new cybersecurity risks, status on how management is addressing and mitigating those risks, cybersecurity and data privacy incidents, if any, and status on key information security initiatives.


Company Information

NamePrime Medicine, Inc.
CIK0001894562
SIC DescriptionBiological Products, (No Diagnostic Substances)
TickerPRME - Nasdaq
Website
CategoryNon-accelerated filer
Smaller reporting company
Emerging growth company
Fiscal Year EndDecember 30