Maintain a 24x7 cybersecurity detection and response capability for the CII, with sufficient staffing, tooling, and runbooks to detect, triage, and contain incidents within prescribed timelines.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.