As of September 30, 2020, our cash and cash equivalents were $137.3 million. While we are not aware of any downgrades, material losses, or other significant deterioration in the fair value of our cash equivalents since December 31, 2019, no assurance can be given that further deterioration of the global credit and financial markets would not negatively impact our current portfolio of cash equivalents or our ability to meet our financing objectives. Furthermore, our stock price may decline due in part to the volatility of the stock market and the general economic downturn.
We or the third parties upon whom we depend may be adversely affected by natural or other disasters, and our business continuity and disaster recovery plans may not adequately protect us from a serious disaster.
Any unplanned event, such as earthquake, flood, fire, explosion, extreme weather, medical epidemic, pandemic, power shortage, telecommunication failure or other natural or manmade accidents or incidents, including the COVID-19 pandemic, could severely disrupt our operations, and have a material adverse effect on our business, results of operations, financial condition and prospects. If a natural disaster, power outage or other event occurred that prevented us from using all or a significant portion of our headquarters, that damaged critical infrastructure, such as the manufacturing facilities of our third-party contract manufacturers, or that otherwise disrupted operations, it may be difficult or, in certain cases, impossible for us to continue our business for a substantial period of time. We plan to put disaster recovery and business continuity plans in place; however, these may prove inadequate in the event of a serious disaster or similar event. We may incur substantial expenses as a result of the limited nature of our disaster recovery and business continuity plans, which, could have a material adverse effect on our business.
Our internal computer systems, or those of our third-party CROs or other contractors or consultants, may fail or suffer security breaches, which could result in a material disruption of CMP-001 and future product candidates’ development programs.
Despite our implementation of security measures, our internal computer systems, and those of our CROs, CMOs, IT suppliers and other contractors and consultants are vulnerable to damage from computer viruses, cyber-attacks and other unauthorized access, natural disasters, terrorism, war, and telecommunication and electrical failures. If such an event were to occur and cause interruptions in our operations, it could result in a material disruption of our development programs for CMP-001 and future product candidates. For example, the loss of clinical trial data from completed, ongoing or planned clinical trials could result in delays in our regulatory approval efforts and significantly increase our costs to recover or reproduce the data. To the extent that any disruption or security breach were to result in a loss of or damage to our data or applications, or inappropriate disclosure of personal, confidential or proprietary information, we could incur liability and the further development of any of CMP-001 and future product candidates could be delayed.
We may be unable to adequately protect our information systems from cyberattacks, which could result in the disclosure of confidential or proprietary information, including personal data, damage our reputation, and subject us to significant financial and legal exposure.
We rely on information technology systems that we or our third-party providers operate to process, transmit and store electronic information in our day-to-day operations. In connection with our product discovery efforts, we may collect and use a variety of personal data, such as names, mailing addresses, email addresses, phone numbers and clinical trial information. A successful cyberattack could result in the theft or destruction of intellectual property, data, or other misappropriation of assets, or otherwise compromise our confidential or proprietary information and disrupt our operations. Cyberattacks are increasing in their frequency, sophistication and intensity, and have become increasingly difficult to detect. Cyberattacks could include wrongful conduct by hostile foreign governments, industrial espionage, wire fraud and other forms of cyber fraud, the deployment of harmful malware, denial-of-service, social engineering fraud or other means to threaten data security, confidentiality, integrity and availability. A successful cyberattack could cause serious negative consequences for us, including, without limitation, the disruption of operations, the misappropriation of confidential business information, including financial information, trade secrets, financial loss and the disclosure of corporate strategic plans. Although we devote resources to protect our information systems, we realize that cyberattacks are a threat, and there can be no assurance that our efforts will prevent information security breaches that would result in business, legal, financial or reputational harm to us, or would have a material adverse effect on our results of operations and financial condition. Any failure to prevent or mitigate security breaches or improper access to, use of, or disclosure of our clinical data or patients’ personal data could result in significant liability under state (e.g., state breach notification laws), federal (e.g., HIPAA, as amended by the HITECH Act), and international law (e.g., the GDPR) and may cause a material adverse impact to our reputation, affect our ability to conduct new studies and potentially disrupt our business.
73