Conduct vulnerability assessment and penetration testing (VAPT) on ICT and SS systems prior to go-live and at defined intervals thereafter, using approved testers and addressing identified findings within prescribed timeframes.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.