GCT Semiconductor Holding, Inc. 10-K Cybersecurity GRC - 2025-03-25

Page last updated on March 25, 2025

GCT Semiconductor Holding, Inc. reported their cybersecurity risk management and governance process in a yearly 10-K filed on 2025-03-25 16:30:44 EDT.

Filings

10-K filed on 2025-03-25

GCT Semiconductor Holding, Inc. filed a 10-K at 2025-03-25 16:30:44 EDT
Accession Number: 0000950170-25-044438

Note: filing items unformatted. Drop us a note with the above URL to help us prioritize formatting it!

Item 1C. Cybersecurity.

Item 1C. Cybersecurity. Our cybersecurity risk management process is an integral part of our overall enterprise risk management framework. This process, overseen by our Information Technology (“IT”) Director , aims to assess, identify, and manage material risks from cybersecurity threats. Our approach is designed to protect the confidentiality, integrity , and availability of our critical information systems and data, including intellectual property and confidential information. We conduct periodic risk assessments to identify potential internal and external cybersecurity threats. These assessments evaluate the likelihood of the occurrence and potential impact of such threats, as well as the adequacy of our existing policies, procedures, systems, and controls. The Board oversees our cybersecurity risk management process, and the Audit Committee has the authority and power to provide specific oversight of cybersecurity matters. Our IT Director who has extensive experience in information systems and cybersecurity, leads our cybersecurity strategy, policy, standards, architecture, and processes. The IT Director reports to the Chief Financial Officer (“CFO”). The CFO provides regular updates to the Board, Audit Committee, and executive management on the status of our cybersecurity posture and any material threats. Our cybersecurity program employs industry-standard methodologies to manage cybersecurity risks, including secure network infrastructure design, continuous security updates, and automated alerts for suspicious activities. We also conduct regular training for employees at all levels on cybersecurity awareness and the protection of confidential information. In the event of a cybersecurity incident, our incident response process is designed to detect, respond to, and mitigate the impact. Significant incidents are escalated to a team of business leaders, including our Chief Executive Officer, and Chief Financial Officer, who work with our incident response team to assess and address the situation. The Audit Committee oversees management’s response to significant incidents and ensures compliance with disclosure requirements. To maintain high security standards, we leverage third-party tools and services that adhere to industry best practices, including multi-layer authentication. Despite our efforts, we acknowledge that cybersecurity threats are constantly evolving, and we remain vigilant in our efforts to protect our information systems and data. As of December 31, 2024, we have not identified any cybersecurity threats that have materially affected our business strategy, results of operations, or financial condition. However, we recognize that future incidents could have a material adverse effect on our business, financial condition, results of operations, cash flows, or reputation. For further discussion of cybersecurity risks, please refer to the " Risk Factors " section under the heading " General Risks Related to the Company. "


Company Information

NameGCT Semiconductor Holding, Inc.
CIK0001851961
SIC DescriptionSemiconductors & Related Devices
TickerGCTS - NYSEGCTS-WT - NYSE
Website
Category
Emerging growth company
Fiscal Year EndDecember 30