HSBC USA Inc. filed Item 1C of its 10-K disclosing its cybersecurity risk management program. The filing states that no cybersecurity incidents have materially affected the company to date. It details a 'Three Lines of Defense' governance structure, technical controls (IDS/IPS, DDoS prevention), and third-party risk management processes. No specific breach or incident is reported.