Requirement 0022 (Part One: Governance, section 3.3 Security Planning, Incidents and Training; applies to All entities; dated 31 October 2024; retained from Release 2025): Develop, establish and implement security monitoring arrangements to identify the effectiveness of the entity's security plan and establish a continuous cycle of improvement. Monitoring assesses capability, performance indicators and compliance; the plan details uplift in areas of insufficient implementation.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.