The board of directors or executive committee seeks regular briefings or reporting on the cyber security posture of their organisation, as well as the threat environment in which they operate, from internal and external subject matter experts.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.