Per RA 10175: CICC liaison + internal IR. Requirements include (a) maintain Cybercrime Investigation and Coordinating Center (CICC) Liaison per RA 10175 including points of contact + reporting mechanisms + cooperation with national CERT + (b) operate Internal Cybercrime Incident Response capability including detection + triage + containment + recovery + lessons learned + (c) integrate with broader information security incident response + (d) maintain awareness of CICC + DICT + NBI Cybercrime Division + PNP Anti-Cybercrime Group cooperation channels + (e) maintain documented incident response procedures + (f) participate in industry + government information sharing.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.