Common use of Information Security Reviews Clause in Contracts

Information Security Reviews. The Company has: (i) regularly conducted vulnerability testing, risk assessments, and external audits of, and tracks security incidents related to, the Company’s systems and products (collectively, “Information Security Reviews”); (ii) timely corrected any material exceptions or vulnerabilities identified in such Information Security Reviews; (iii) made available true and accurate copies of all Information Security Reviews; and (iv) timely installed software security patches and other fixes to identified technical information security vulnerabilities. The Company provides its employees with regular training on privacy and data security matters.

Appears in 2 contracts

Sources: Membership Interest Purchase Agreement (CarGurus, Inc.), Membership Interest Purchase Agreement (CarGurus, Inc.)