Cyber security incidents are reported to the chief information security officer, or one of their delegates, as soon as possible after they occur or are discovered.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.