The performance and reliability of our technology are critical to our ability to compete effectively. Any internal technological error, failure or large-scale external interruption in the information systems, networks, hardware, software and technological infrastructure we depend on, such as U.S. air traffic control systems, power, telecommunications or the internet (collectively, "IT Systems"), may disrupt our internal network, impact our ability to conduct our business and result in increased costs. Our IT Systems (including those provided by third parties) and information about our employees and other individuals and proprietary information belonging to our business such as trade secrets ("Confidential Information") are vulnerable to a variety of sources of interruption due to events beyond our control, including natural disasters, terrorist attacks, telecommunications or IT System failures, computer viruses, hackers and other security issues.
In addition, we face numerous and evolving cybersecurity risks that threaten the security, confidentiality, integrity and availability of our IT Systems and Confidential Information, including from diverse threat actors such as state-sponsored organizations, opportunistic hackers and hacktivists, as well as through diverse attack vectors, such as social engineering/phishing, security breaches, malfeasance by insiders, human or technological error, computer viruses, malicious or destructive code, misconfigurations, "bugs" or other vulnerabilities in commercial software that is integrated into our (or our service providers') IT Systems, products or services, malware (including ransomware) and other attacks, including through fraud or other means of deception. The methods used to obtain unauthorized access, disable or degrade service or attack or sabotage systems are constantly evolving, and threat actors are becoming increasingly sophisticated in using techniques and tools – including artificial intelligence – that circumvent security controls, evade detection and remove forensic evidence. As a result we may be unable to anticipate or to detect, investigate, remediate or recover from attacks or incidents for long periods of time. Further, we may not be able to prevent all data breaches, misuses of data (including Confidential Information) or other cybersecurity incidents.
There can also be no assurance that our cybersecurity risk management program and processes, including our policies, controls or procedures, will be fully implemented, complied with or effective in protecting our IT Systems and Confidential Information. Because we rely on third party vendors and service providers for functions critical to our business, including information technology infrastructure and services, successful cyberattacks that disrupt or result in unauthorized access to third party IT Systems can materially impact our operations and financial results. Remote and hybrid working arrangements at our company (and at many third-party service providers) also increase cybersecurity risks due to the challenges associated with managing remote computing assets and security vulnerabilities that are present in many non-corporate and home networks.
We and certain of our third-party service providers have in the past experienced cybersecurity incidents and we expect such incidents to continue in varying degrees. As further described in "Item 1C. Cybersecurity" we had a cybersecurity incident in 2021, but based on our assessment, we do not believe the incident has or will materially affect us, including our operations, business strategy, results of operations or financial condition. While to date no incidents have had a material impact on our operations or financial results, we cannot guarantee that material incidents will not occur in the future. Any cybersecurity incident or other adverse impact to the availability, integrity or confidentiality of our IT Systems or Confidential Information could compromise our ability to operate flights or technology systems, result in the loss of Confidential Information, legal claims or proceedings (such as class actions), regulatory investigations and enforcement actions, liability or regulatory penalties, disruption to our operations, damage to our reputation, loss of existing or future customers and/or significant incident response, system restoration or remediation and future compliance costs. Any or all of the foregoing could adversely affect our business, results of operations and financial condition.