The integrity and reliability of our information systems and networks are crucial to our business operations and a breach, compromise, damage or other disruption to these systems or networks could impair our operations, have an adverse impact on our financial results and negatively affect our reputation and customer demand. In addition, certain networks are dependent on third-party technologies, systems and service providers for which there is no certainty of uninterrupted availability. Among other things, actual or threatened natural disasters, information systems failures, computer viruses, denial-of-service attacks and other cybersecurity incidents may cause disruptions to our information systems, telecommunications and other networks. Our business continuity, disaster recovery, data restoration plans and data and information system security may not prevent disruptions that could result in adverse effects on our operations and financial results. We carry limited business interruption insurance for certain shoreside operations, subject to limitations, exclusions and deductibles.
As part of our ordinary business operations, we and certain of our third-party service providers collect, process, transmit and store a large volume of personally identifiable information. The security of the systems and networks where we and our service providers store this data is a critical element of our business. We experience cybersecurity threats and incidents of varying degrees on our systems and networks and, as a result, unauthorized parties have obtained in the past, and may in the future obtain, access to our computer systems and networks, including cloud-based platforms. The technology infrastructure and systems of our suppliers, vendors, service providers and partners have in the past experienced and may in the future experience such attacks. Cybersecurity threats can include computer viruses, malware, worms, hackers and other malicious software programs or other attacks, including physical and electronic break-ins, router disruption, sabotage or espionage, disruptions from unauthorized access and tampering (including through social engineering such as phishing attacks), impersonation of authorized users and coordinated denial-of-service attacks. There can be no assurance that a breach or incident will not have a material impact on our operations and financial results in the future. In addition, we may not be in a position to promptly address security breaches, unauthorized access or other cybersecurity incidents or to implement adequate preventative measures if we are unable to immediately detect such incidents. Our failure to successfully prevent, mitigate or timely respond to such incidents could impair our ability to conduct business and damage our reputation.
We are also subject to laws in multiple jurisdictions relating to the privacy and protection of personal data. Noncompliance with these laws or the compromise of information systems used by us or our service providers resulting in the loss, disclosure, misappropriation of or access to the personally identifiable information of our guests, prospective guests, employees or vendors could result in governmental investigation, civil liability or regulatory penalties under laws protecting the privacy of personal information, any or all of which could disrupt our operations and materially adversely affect our business. Additionally, any material failure by us or our service providers to maintain compliance with the Payment Card Industry security requirements or to rectify a data security issue may result in fines and restrictions on our ability to accept credit cards as a form of payment. The regulatory framework for data privacy and protection is uncertain for the foreseeable future, and it is possible that legal and regulatory obligations may continue to increase and may be interpreted and applied in a manner that is inconsistent or possibly conflicting from one jurisdiction to another.
In the event of a data security breach of our systems and/or third-party systems or a cybersecurity incident, we may incur costs associated with the following: response, notification, forensics, regulatory investigations, public relations, consultants, credit identity monitoring, credit freezes, fraud alert, credit identity restoration, credit card cancellation, credit card reissuance or replacement, data restoration, regulatory fines and penalties, vendor fines and penalties, legal fees, damages and settlements. In addition, a data security breach or cybersecurity incident may cause business interruption, information system disruption, disruptions as a result of regulatory investigation or litigation, digital asset loss related to corrupted or destroyed data, loss of company assets, damage to our reputation, damages to intangible property and other intangible damages, such as loss of consumer confidence, all of which could impair our operations and have an adverse impact on our financial results.