Per South Korea ISMS-P (KISA): ISMS. Requirements include (a) Information Security and Privacy Management System + (b) Chief Information Security Officer Designation + (c) Information Asset Inventory and Classification + (d) Risk Assessment and Treatment + (e) KISA certification.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.