The Privacy Protection (Data Security) Regulations 5777-2017 classify databases into three security tiers (basic, medium, high) plus a managed-by-individual exemption. Classification depends on the number of subjects, the number of authorised users, sensitivity of the data, and whether the database is used for direct mailing or by a public body. Tier classification determines the depth of mandatory controls.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.