Cybersecurity and Data Privacy
![Closeup of laptops on a desk as employees discuss cyber security at PPG](https://assets-eu-01.kc-usercontent.com:443/cce44467-0106-013b-6c0b-26132a361492/73e8c38b-7028-4582-8b83-5759ddba6932/cybersecurity-and-data-privacy-1312x440.jpg)
PPG's cybersecurity program protects and preserves the confidentiality, integrity and continued availability of our networks, systems and information. We follow the U.S. National Institute for Standards and Technology (NIST) and other applicable industry frameworks. We implement physical, organizational and technological safeguards to protect information about our customers, employees and suppliers.
Our data privacy policies are designed to prevent unauthorized access to, and disclosure of, personal information using a range of operational and technological safeguards. Our employees receive comprehensive training on data privacy concepts to prevent misuse of personal information.
Cybersecurity and data privacy governance improvements
We regularly assess and measure against industry practices to identify opportunities to improve people, processes and technology used to identify, prevent, detect, respond and recover from cybersecurity incidents. A key focus in 2023 was strengthening corporate governance over data privacy along with continued investment in cybersecurity at PPG. We established an executive council to oversee the management of our information technology (IT) and cybersecurity programs. Ensuring that our leadership has a clear understanding of cybersecurity risks and strategies also helps us appropriately allocate resources to address these issues.
The data privacy and compliance organization have a close collaboration and frequent touchpoints. The effort comprises members from our IT and compliance teams, and their goal is to foster collaboration between these two key functions. The functions meet regularly and review IT-related compliance risks and ensure we remain current with regulatory requirements as they evolve. In the data privacy area, we formed a Global Data Privacy Council with members representing key stakeholders from departments handling personal information or supporting relevant systems and processes. The council oversees all data privacy compliance activities at a global level.
Progress in addressing cybersecurity and data privacy issues is crucial for maintaining trust with PPG's stakeholders. We will continue to monitor digital threats and adapt our approach to safeguarding confidential information.
For more information about how we approach cybersecurity and data privacy, see below.
Learn more, access our Global Data Privacy Statement and contact us at our privacy website.