Give the designated person or entity the authority and support needed to carry out the duties, and make sure they have enough knowledge and expertise in cyber risk management.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.