UPS Item 1C disclosure describes its cybersecurity risk-management governance: Board Risk Committee oversight, CISO reporting through the CDTO to the CEO, an Information Security & Privacy Governance Council, third-party vendor risk assessments, periodic independent assessments, employee training, and an Incident Response Plan with escalation and materiality-review procedures. No specific cybersecurity incident is disclosed.