Critical IT systems and equipment for each gaming and entertainment application are kept in a secured area (a registered hosting center qualifies) with redundant power (not required for components inside a slot cabinet), adequate physical security mechanisms such as key locks, biometrics, combination locks or electronic key cards, and, where electronic security systems are used, administration of them by personnel independent of the gaming and entertainment departments. Where a cloud provider is used its procedures must give the same level of control.
This control maps to 1 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 1 it maps to, and the evidence behind each claim, over MCP and REST.