UCT (a manufacturing entity) discloses its cybersecurity risk management program in its 10-K Item 1C. The filing describes preventive controls (MFA, IAM, encryption, penetration testing) and governance (Board oversight, CISO reporting). It explicitly states that cybersecurity risks have not yet materially affected the company and makes no reference to a specific incident, breach, or material impact.