A sample of security-relevant events relating to data transfer policies are taken at least every three months and assessed against security policies for CDSs to identify any operational failures.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.