The organisation implements an insider threat program with a cross-discipline insider threat incident handling team. The GC discussion notes specific notice requirements when monitoring GC networks and devices under the TBS service and digital policy instruments. No enhancements. Deployed organisation-wide in the medium profile.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.