Governance
Board of Directors
TOPIC |
PRACTICE |
INDEPENDENCE |
|
DIVERSITY |
|
EXECUTIVE SESSIONS |
|
MAJORITY VOTING |
|
DIRECTOR EVALUATIONS |
|
STOCK OWNERSHIP |
|
SINGLE VOTING CLASS |
|
HEDGING & PLEDGING OF STOCK |
|
BUSINESS ETHICS GUIDELINES |
|
CLAWBACK POLICY |
|
INSIDER TRADING POLICY |
|
BOARD OVERSIGHT |
|
Ethics, Policies, and Practices
Kirby is committed to the highest ethical standards across the company and its supply chain.

Business Ethics
Kirby is committed to doing business the right way or “The Kirby Way” which promotes standards of integrity, honesty, trust respect, fair play and teamwork for all employees
All Kirby directors, executives, and employees are required to sign and uphold the Business Ethics Guidelines
Guideline topics include but are not limited to Equal Opportunity, Discrimination and Sexual Harassment, Respecting Human Rights, Anti-Corruption, Financial
Accountability, Political Activities, and Social Media.
Kirby does not tolerate any retaliation against employees for reporting a violation of law, rule, regulation, or the Guidelines
More than 5500 training courses were completed on Business Ethics and Foreign Corrupt Practices Act in 2024

Vendor Code of Condut
Kirby implemented stronger guidelines for our suppliers which were designed to help ensure responsible product sourcing and the safety and well-being of workers across the global supply chain
Guidelines establish the minimum standards that must be met by any supplier that sells goods to or does business with Kirby regarding:
– Treatment of workers
– Workplace safety
– Impact on the environment
– Ethical business practices
Respecting Human Rights
Kirby is committed to ensuring a work environment free from:
– Human Trafficking
– Forced Labor
– Child Labor
– Discrimination and Harassment
Employees are expected to consistently demonstrate respect and uphold the dignity of others
Employees are to encourage partners, suppliers, and other third parties to adopt similar standards with respect to human rights

Target: Company-wide training complete in 2024
100% completion of human rights training
Kirby’s position on Human Rights is outlined in its Business Ethics Guidelines, Vendor Code of Conduct, and Human Trafficking Policy. In addition to other training Kirby provides to its employees, Kirby has implemented targeted human rights training for its employees.
The Company achieved its goal to train all employees in 2024. Violations or concerns may be communicated via the Company Hotline and may result in termination of employment or the relationship with the supplier.
Cybersecurity and Data Privacy

Governance
Kirby’s cybersecurity programs align with the National Institute on Standards and Technology Cybersecurity Framework 2.0
Kirby senior management briefs the Board quarterly on information security matters
– Steering Committee: Meets at a minimum quarterly to discuss overall approach, manage priorities and ensure progress
– Audit Committee: Receives a cybersecurity update quarterly
Proactive Defense
Managed Detection and Response: Monitor the network for threat intelligence feeds from security experts to raise awareness and respond to mitigate risk on 24/7 basis
Multifactor Authentication
Monthly vulnerability management program for critical and high security patching
Anti-phishing solution for emails
Sophisticated backup and recovery solutions
Geofencing
Preparedness: A robust and practiced Incident Response Plan and Business Continuity plan
Employee Education & Training – Cybersecurity Awareness Campaign
Training: Security awareness program on a range of topics utilizing weekly tips and training
‒ All employees are required to complete annual cybersecurity training
‒ Additional targeted training with high-risk users and executives
Testing: Perform monthly phishing scam tests with associated real-time training
– Employees who fail a phishing test are required to take remedial training
Education: Cybersecurity Director speaks at operations meetings to raise awareness and educate on current topics