NIST SP 800-161
NIST SP 800-161: Information Security Policies

NIST SP 800-161 161-TIER1: Multitiered Risk: Tier 1 (Organization)

Establish organization-wide ICT SCRM governance, strategy, risk appetite, and policy at the organization tier.

Other controls in NIST SP 800-161: Information Security Policies

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.