Data Protection, Governance and Loss Prevention. RLEs must have Data Loss Prevention controls for primary business data, assess compliance with applicable data protection/privacy laws, and document data governance controls (paras 49-51).
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.