Agencies should cut down SOE vulnerabilities by deleting accounts that are not used, renaming or removing default accounts, and changing default passwords before or during installation.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.