{"url_path":"/sec/vrdr/10-k/2026/item-1c","section_key":"item-1c","section_title":"Item 1C Cybersecurity**","topic":"sec","document":{"doc_type":"10-K/A","doc_date":"2026-06-03","source_url":"https://www.sec.gov/Archives/edgar/data/1506929/0001493152-26-027105-index.html","accession_number":"0001493152-26-027105","cik":"0001506929","ticker":"VRDR","issuer_name":"VERDE RESOURCES, INC.","edgar_url":"https://www.sec.gov/Archives/edgar/data/1506929/0001493152-26-027105-index.html","primary_entity_key":"0001506929","primary_entity_name":"VERDE RESOURCES, INC."},"word_count":288,"has_tables":true,"body_markdown":"**ITEM\n1C. Cybersecurity**\n\n \n\n*Cybersecurity\nRisk Management*\n\n \n\nWe\nare in the process of implementing a structured cybersecurity risk management framework designed to assess, identify, and manage material\nrisks from cybersecurity threats. These processes are being integrated into our overall enterprise risk management system to ensure that\ncybersecurity considerations are embedded within broader risk assessment and mitigation efforts. As part of this framework, we plan to\nengage qualified third-party consultants and auditors to assist in identifying risks, validating controls, and supporting continuous\nimprovement. We also intend to establish oversight procedures to evaluate and monitor risks associated with our use of third-party service\nproviders.\n\n \n\n*Cybersecurity\nRisks*\n\n \n\nTo\ndate, we have not experienced a cybersecurity incident that has materially affected our business strategy, results of operations, or\nfinancial condition. While we recognize that evolving cybersecurity threats could pose risks, we currently believe such risks are not\nreasonably likely to materially affect our performance.\n\n \n\n*Cybersecurity\nGovernance*\n\n \n\nOur\nBoard of Directors retains overall responsibility for oversight of cybersecurity risks. Once formed, we intend to formally delegated\nthis oversight function to the audit committee, which will receive regular reports from management regarding cybersecurity risk assessments,\nmonitoring activities, and incident response planning. We intend to update the audit committee as frequently as warranted by material\ndevelopments, but in no event less often than annually.\n\n \n\nDay-to-day\nresponsibility for managing cybersecurity risks rests with senior management, including the Chief Operating Officer, with support from\nexternal cybersecurity advisors. Management is responsible for overseeing the Company’s prevention, detection, and response measures,\nas well as the development of incident response and recovery plans. Management receives updates from third-party service providers, consultants,\nand internal staff, and reports these matters to the Board of Directors or the Audit Committee on a scheduled basis."}