Supply chain risk management. Implements CyFun ID.SC: cyber supply chain risk management processes are identified, established and agreed; suppliers and third-party partners are assessed against contractual obligations; and supplier compliance is routinely monitored, audited and tested.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.