People First: A Commitment to Well-being, Whether Remote or On-Site
At IOActive, the safety and well-being of our people is non-negotiable. Our workforce, comprised of highly skilled cybersecurity professionals, is our greatest asset, and we are fundamentally committed to protecting the health and supportive working environment for every employee, contractor, and visitor worldwide. This includes promoting holistic well-being through comprehensive employee benefits packages, which provide access to crucial mental health resources.
Our Framework for Safety and Health
Top Management Responsibility and Accountability: Our Senior Leadership Team is ultimately accountable for the health and safety of our global operations. We ensure this commitment is upheld by providing the necessary leadership, resources, and oversight to maintain safe practices.
Proportionality and Work Environment: Our business is predominantly remote, meaning our operational health and safety risk is inherently low. However, we take H&S seriously in all our limited physical office locations and are committed to providing guidance to remote personnel for maintaining a safe home-working environment. We also require personnel working at customer sites to adhere to our internal H&S procedures and cooperate with the customer’s site rules and safety protocols.
Our Procedures and Continuous Improvement: We are actively maturing our governance by building out and implementing robust internal systems and policies to ensure compliance and best practice.
Risk & Review: We commit to conducting necessary risk assessments for both our physical and remote workplaces and providing mandatory health and safety training (e.g., fire safety, DSE) to all relevant personnel.
Guidance & Reporting: Our internal policies and procedures direct employees on exactly how to identify, report, and mitigate potential hazards within their workspace. We reinforce this with clear mechanisms, such as our Whistleblowing Policy, to ensure confidential reporting of any serious safety concern without fear of retaliation.
Compliance: We comply with all applicable national and local H&S legislation and regulations in every jurisdiction where we operate.
Our Commitment to Continuous Safety
Health and safety is a critical area where we are dedicated to proactively strengthening our controls and processes. We believe a high-performing organization is built on a foundation of safety and ethical behavior. This commitment ensures the long-term well-being of our employees and maintains the confidence of our customers and partners.
Statement Approval
This Statement was approved by the CEO of IOActive, Inc. on behalf of itself and its subsidiaries on September 29, 2025.
Signed:

Name: Jennifer Steffens
Title: CEO