Multi-factor authentication (where available) is used to authenticate users to third-party online services that process, store or communicate their organisation's non-sensitive data.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.