CME Group Item 1C cybersecurity disclosure describing its Global Information Security (GIS) Program, NIST-aligned framework, Cyber Defense Center, Incident Response Plan, board oversight via the risk committee, and third-party risk management. The filing states the company is not aware of cybersecurity risks or prior incidents that have materially affected or are reasonably likely to materially affect the company. No specific cybersecurity incident is disclosed.