Annual pen tests stop covering corporate systems

For systems containing customer content, an external vendor may conduct security penetration tests on the corporate and cloud environments annually to detect network and application security vulnerabilities.
Bad Changes that may affect your rights or add new obligations. Corporate systems are no longer explicitly covered by the annual external penetration-test commitment.
9 MORE REDLINES IN THIS UPDATE