Active assailant response plans should reflect how big, broad and complex the organization is, whether it employs security staff, how the site is resourced and run, and what site risk and gap assessments found. Plans should be written down, looked at yearly and brought up to date, comply with local, state, federal and international law and regulation, and be distributed only to authorized people.
This control maps to 1 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 1 it maps to, and the evidence behind each claim, over MCP and REST.