Establish Electronic Security Perimeters (ESPs) per CIP-005-7 including identification of all external connections + Electronic Access Points (EAPs) + denial of communications by default + restrictions on inbound and outbound permitted communications + dial-up authentication + interactive remote access controls (encryption + multi-factor authentication + intermediate device with malicious code prevention) + vendor remote access management. Protect Real-Time Assessment and Real-Time Monitoring data between Control Centers per CIP-012-1 including identification of security protection + demarcation points + responsibilities.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.