Nasdaq's Form 10-K Item 1C cybersecurity disclosure describes its risk management, governance, and oversight processes (SOC 2 certifications, ISO 27001, CISO reporting to Audit & Risk Committee, tabletop exercises). The filing explicitly states that no cybersecurity threats or prior incidents have materially affected or are reasonably likely to materially affect the business. No specific breach incident is disclosed.