10-K/A: Akoustis Technologies Files Amended 10-K to Include Cybersecurity Disclosures
Annual Report Amendment
Akoustis Technologies has filed an amendment to its annual report to include cybersecurity risk disclosures and updated certifications from its CEO and CFO.
Summary
- Akoustis Technologies filed an amendment to its annual report on Form 10-K to include Item 1C, which details the company's cybersecurity practices.
- The amendment also includes updated certifications from the Chief Executive Officer and Chief Financial Officer.
- The company relies on internal and external IT systems for sensitive data and has a comprehensive cybersecurity program.
- Akoustis adheres to NIST SP 800-171 and CMMC 2.0 frameworks for managing cybersecurity risks.
- The company conducts regular risk assessments and implements safeguards, including firewalls and intrusion detection systems.
- The Board of Directors oversees risk management, including cybersecurity, through the IT Governance Committee.
- The Vice President of Information Technology, with over 25 years of experience, manages cybersecurity policies and processes.
- The company has experienced cybersecurity incidents in the past but none have been deemed material to the business.
- The amendment does not reflect events occurring after the original filing date of October 8, 2024.
Sentiment
Score: 7
Explanation: The document is a routine amendment to include cybersecurity disclosures, which is a positive step. The company appears to be taking cybersecurity seriously, but the past incidents and reliance on IT systems introduce some risk.
Positives
- Akoustis has a comprehensive cybersecurity program in place.
- The company adheres to industry-standard frameworks like NIST SP 800-171 and CMMC 2.0.
- The company has a dedicated IT Governance Committee overseeing cybersecurity risks.
- The Vice President of Information Technology has extensive experience and certifications.
- The company has not experienced any material cybersecurity incidents.
Negatives
- The company has experienced cybersecurity incidents in the past, indicating a potential ongoing risk.
- The company relies on both internal and external IT systems, which could increase the attack surface.
Risks
- Security breaches could compromise proprietary information and expose the company to liability.
- The company may experience future cybersecurity incidents.
- External events may require the company to continually evaluate and address cybersecurity conditions.
- The company's reliance on IT systems makes it vulnerable to cyber threats.
Future Outlook
The company will continue to evaluate and address cybersecurity conditions as needed in its Business Continuity and Incident Response programs.
Management Comments
- The Chief Executive Officer, Kamran Cheema, certified that the report does not contain any untrue statements or omissions of material fact.
- The Chief Financial Officer, Kenneth E. Boller, certified that the report does not contain any untrue statements or omissions of material fact.
Industry Context
The inclusion of detailed cybersecurity disclosures reflects an increasing focus on cybersecurity risks across all industries, particularly in technology and manufacturing sectors. Companies are under pressure to demonstrate robust security measures to protect sensitive data and maintain customer trust.
Comparison to Industry Standards
- Akoustis's adherence to NIST SP 800-171 and CMMC 2.0 frameworks aligns with industry best practices for cybersecurity.
- Many technology companies, such as Intel and Qualcomm, also emphasize cybersecurity in their annual reports, often detailing similar risk management strategies.
- Companies in the semiconductor industry, like Skyworks Solutions and Qorvo, are also increasingly focused on cybersecurity due to the sensitive nature of their intellectual property and customer data.
- The level of detail provided by Akoustis in its cybersecurity disclosures is comparable to other publicly traded technology companies.
Stakeholder Impact
- Shareholders will be informed about the company's cybersecurity practices.
- Employees will receive training on cybersecurity policies.
- Customers will benefit from the company's efforts to protect their data.
- Suppliers will be part of the company's risk management process.
- Creditors will be assured of the company's efforts to protect its assets.
Next Steps
- The company will continue to monitor and test its safeguards.
- The company will continue to train employees on cybersecurity policies.
- The company will continue to evaluate and address cybersecurity conditions as needed.
Key Dates
| Date | Description |
|---|---|
| December 15, 2016 | Date of Plan of Conversion and filing of Articles of Conversion. |
| March 23, 2017 | Date of Definitive Asset Purchase Agreement and Real Property Purchase Agreement. |
| November 4, 2019 | Date of Certificate of Amendment to the Certificate of Incorporation. |
| June 9, 2022 | Date of Indenture agreement. |
| August 26, 2022 | Effective date of Director Compensation Program. |
| November 10, 2022 | Date of Certificate of Amendment to the Certificate of Incorporation. |
| January 1, 2023 | Date of Lease Agreement and Stock Purchase Agreement. |
| September 26, 2023 | Date of Second Amendment to Employment Agreement with Jeffrey Shealy. |
| June 30, 2024 | End of the fiscal year. |
| October 2, 2024 | Date of outstanding shares count. |
| October 8, 2024 | Date of original 10-K filing. |
| October 11, 2024 | Date of amended 10-K/A filing and certifications. |
Keywords
cybersecurity, information technology, risk management, NIST, CMMC, data protection, IT governance, security, threats, vulnerabilities
Disclaimer:The information provided here is for general informational purposes only and does not constitute financial advice, recommendation, or endorsement of any kind. It may contain errors or omissions. You should not rely on this information to make financial decisions. Always seek the advice of a qualified financial professional before making any investment or financial decisions. Use of this information is at your own risk.