{"url_path":"/sec/sund/10-k/2026/item-1c","section_key":"item-1c","section_title":"Item 1C Cybersecurity**","topic":"sec","document":{"doc_type":"10-K","doc_date":"2026-06-29","source_url":"https://www.sec.gov/Archives/edgar/data/1171838/0001493152-26-031046-index.html","accession_number":"0001493152-26-031046","cik":"0001171838","ticker":"SUND","issuer_name":"Sundance Strategies, Inc.","edgar_url":"https://www.sec.gov/Archives/edgar/data/1171838/0001493152-26-031046-index.html","primary_entity_key":"0001171838","primary_entity_name":"Sundance Strategies, Inc."},"word_count":213,"has_tables":true,"body_markdown":"**Item\n1C. Cybersecurity**\n\n \n\n**Risk\nManagement and Strategy**\n\n \n\nManagement\nis to perform a corporate risk assessment annually, which includes specific consideration and assessment of cybersecurity risk, proportional\nto the size of the Company. Service providers must meet certain security requirements such as security incident or data breach notification\nand response protocols, data encryption requirements, and data disposal commitments.\n\n \n\n23\n\n \n\n \n\nIn\nmanaging cybersecurity risk, we employ a defense-in-depth strategy and regularly monitor our cyber environment for potential new threats.\nOur strategy includes employee training and awareness on cybersecurity risks and related best practices, required password complexity,\nthe use of multi-factor authentication, information security protocols, anti-virus and anti-ransomware software.\n\n \n\n**Governance**\n\n \n\nOur\nBoard of Directors is to provide oversight of our cybersecurity program through an annual risk review. On an annual basis, cybersecurity\nrisk and mitigation strategies are reviewed as part of management’s reporting to the Board of Directors, which includes reporting\nsignificant business risks, including cybersecurity mitigation strategies employed to manage these risks, and a review of any emerging\nrisks. Annually, management is to provide an overview of our cybersecurity program to the Board of Directors, including a review of key\nstrategies, emerging risks, and a summary of key performance indicators. As of the date of this filing, we have not experienced any material\ncybersecurity incidents."}