Item 1B. UNRESOLVED STAFF COMMENTS

2K characters. Original on sec.gov · Markdown

Item 1B. UNRESOLVED STAFF COMMENTS

The Company has no unresolved staff comments.

Item 1C. CYBERSECURITY

The Company faces significant and persistent cybersecurity risks due to: the breadth of geographies, networks, and systems ADM must defend against cybersecurity attacks such as exploitation of vulnerabilities, ransomware, denial of service, supply chain attacks, or other similar threats; the attractiveness of the Company’s systems and processes to threat actors (including state-sponsored organizations) seeking to inflict harm on ADM or its customers; the substantial level of harm that could occur to the Company and its customers in case of a material cybersecurity incident; and ADM’s use of third-party products, services and components. During the year ended December 31, 2023, the Company has not identified risks from cybersecurity threats, including as a result of prior cybersecurity incidents, that have materially affected or are reasonably anticipated to materially affect the Company, including its business strategy, results of operations, or financial condition. Nevertheless, the Company recognizes cybersecurity threats are ongoing and evolving. For more information on the Company's cybersecurity risks, refer to Item 1A, “Risk Factors”. ADM is committed to supporting the governance and oversight of cybersecurity risks and to implementing mechanisms, controls, technologies, and processes designed to help the Company assess, identify, and manage these risks.

Cybersecurity risks are included in the risk universe that the Company’s ERM function evaluates, with input from information security subject matter experts at the Company, to assess top risks to the enterprise. The ERM process provides input into our strategic planning process, such as development of action plans to address and mitigate identified risks. Integrating cybersecurity risk into the overall ERM process in this manner assists the Company in identifying, assessing, and managing material cybersecurity risks.

Previous: Item 1A. RISK FACTORS (Continued) · Next: Item 1C. CYBERSECURITY (Continued)