The program should include a multidisciplinary team, set up and trained periodically, to assess and respond to violent incidents and to reports of concerning behavior under the policy (the standard calls it the Threat Management Team; organizations may call it a threat assessment, incident management or case management team). Setting it up in advance settles who decides, who talks to whom, and the broad incident process before anything happens, so people know how to respond to reports. It usually includes HR, security and legal, with others from clause 5 as needed. Members should be chosen for experience, training, judgment, authority and temperament suited to collaborative incident management, and the team's designation should come with a list of qualified outside resources it can call on where in-house expertise is lacking.
This control maps to 1 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 1 it maps to, and the evidence behind each claim, over MCP and REST.