Index of /pci-faqs/individual-pdfs/
Name
Last Modified
Size
Parent Directory
FAQ_1003_Where_is_the_PCI_Security_Standards_Council_Located.pdf
2026-06-23 01:16
27k
FAQ_1004_Does_the_PCI_Security_Standards_Council_enforce_compliance.pdf
2026-06-23 01:16
26k
FAQ_1009_In_case_of_a_suspected_breach_should_the_PCI_Security_Standards_Coun...
2026-06-23 01:16
27k
FAQ_1011_Once_my_business_has_been_determined_to_be_compliant_by_a_QSA_would_...
2026-06-23 01:16
27k
FAQ_1014_Do_QSAs_and_ASVs_need_to_send_reports_of_compliance_ROCs_or_scanning...
2026-06-23 01:16
27k
FAQ_1015_What_are_the_consequences_to_my_business_if_I_do_not_comply_with_the...
2026-06-23 01:16
28k
FAQ_1017_How_can_my_organization_find_assistance_in_completing_the_Self-Asses...
2026-06-23 01:16
28k
FAQ_1019_If_my_business_was_deemed_compliant_but_my_system_was_still_breached...
2026-06-23 01:16
27k
FAQ_1022_Do_small_merchants_with_limited_transaction_volumes_need_comply_with...
2026-06-23 01:16
28k
FAQ_1023_What_are_the_requirements_that_have_to_be_satisfied_to_be_in_complia...
2026-06-23 01:16
28k
FAQ_1024_Is_PCI_DSS_a_global_standard.pdf
2026-06-23 01:16
26k
FAQ_1034_What_are_system-level_objects.pdf
2026-06-23 01:16
27k
FAQ_1036_How_can_I_provide_feedback_negative_or_positive_about_my_QSAASV.pdf
2026-06-23 01:16
29k
FAQ_1037_Do_hosting_providers_have_responsibility_for_liabilitiesfines.pdf
2026-06-23 01:16
25k
FAQ_1038_Does_PCI_DSS_apply_to_hot_cards_expired_cancelled_or_invalid_payment...
2026-06-23 01:16
29k
FAQ_1039_Does_PCI_DSS_apply_to_debit_cards_debit_payments_and_debit_systems.pdf
2026-06-23 01:16
28k
FAQ_1042_Should_cardholder_data_be_encrypted_while_in_memory.pdf
2026-06-23 01:16
27k
FAQ_1043_Is_frame_relay_considered_a_private_network_and_are_there_any_encryp...
2026-06-23 01:16
27k
FAQ_1044_Do_ISPs_that_provide_only_internet_connection_need_to_comply_with_th...
2026-06-23 01:16
27k
FAQ_1045_Is_MPLS_considered_a_private_or_public_network_when_transmitting_car...
2026-06-23 01:16
29k
FAQ_1046_Will_the_PCI_Security_Standards_Council_approve_my_organizations_imp...
2026-06-23 01:16
29k
FAQ_1050_I_make_ATMs_what_do_I_need_to_do_for_PTS.pdf
2026-06-23 01:16
28k
FAQ_1054_Does_the_PCI_Security_Standards_Council_provide_information_on_secur...
2026-06-23 01:16
28k
FAQ_1055_Should_I_complete_the_Prioritized_Approach_milestones_in_sequential_...
2026-06-23 01:16
27k
FAQ_1060_How_would_an_identified_Denial_of_Service_DoS_vulnerability_affect_a...
2026-06-23 01:16
30k
FAQ_1062_What_is_meant_by_a_payment_application_in_Part_2d_of_the_Attestation...
2026-06-23 01:16
28k
FAQ_1063_Does_SAQ_C-VT_replace_SAQ_C.pdf
2026-06-23 01:16
27k
FAQ_1064_What_is_a_VT_or_Virtual_Terminal.pdf
2026-06-23 01:16
27k
FAQ_1065_How_are_third-party_service_providers_TPSPs_expected_to_demonstrate_...
2026-06-23 01:16
33k
FAQ_1066_What_is_an_inactive_user_account_as_used_in_PCI_DSS_Requirement_8.pdf
2026-06-23 01:16
28k
FAQ_1068_Are_digital_leased_lines_considered_public_or_private.pdf
2026-06-23 01:16
27k
FAQ_1069_Does_PCI_DSS_apply_to_paper_with_cardholder_data_for_example_receipt...
2026-06-23 01:16
28k
FAQ_1070_Are_digital_images_containing_cardholder_data_andor_sensitive_authen...
2026-06-23 01:16
28k
FAQ_1071_Can_the_full_payment_card_number_be_displayed_within_a_browser_windo...
2026-06-23 01:16
29k
FAQ_1073_Do_PCI_DSS_Requirements_apply_to_Bluetooth_technology.pdf
2026-06-23 01:16
29k
FAQ_1074_Is_intrusion_detection_required_if_centralized_log_correlation_is_in...
2026-06-23 01:16
27k
FAQ_1075_Is_it_permissible_to_use_self-decrypting_files_for_encryption_to_sen...
2026-06-23 01:16
28k
FAQ_1076_Is_it_permissible_to_use_FTP_if_proper_security_measures_are_impleme...
2026-06-23 01:16
28k
FAQ_1078_In_what_circumstances_is_multi-factor_authentication_required.pdf
2026-06-23 01:16
26k
FAQ_1079_What_is_the_definition_of_merchant.pdf
2026-06-23 01:16
26k
FAQ_1080_Does_PCI_DSS_Requirement_822_allow_users_to_share_authentication_cre...
2026-06-23 01:16
30k
FAQ_1081_Does_PCI_DSS_require_both_database_and_application_logging.pdf
2026-06-23 01:16
27k
FAQ_1082_If_a_merchant_has_multiple_processing_environments_should_the_mercha...
2026-06-23 01:16
29k
FAQ_1083_What_is_the_mission_of_the_PCI_Security_Standards_Council.pdf
2026-06-23 01:16
26k
FAQ_1085_Can_unencrypted_PANs_be_sent_over_e-mail_instant_messaging_SMS_or_ch...
2026-06-23 01:16
30k
FAQ_1086_How_does_encrypted_cardholder_data_impact_PCI_DSS_scope.pdf
2026-06-23 01:16
29k
FAQ_1087_For_vulnerability_scans_what_is_meant_by_quarterly_or_at_least_once_...
2026-06-23 01:16
31k
FAQ_1089_How_can_hashing_be_used_to_protect_Primary_Account_Numbers_PAN_and_i...
2026-06-23 01:16
31k
FAQ_1091_What_are_acceptable_formats_for_truncation_of_primary_account_number...
2026-06-23 01:16
31k
FAQ_1092_Does_PCI_DSS_apply_to_merchants_who_outsource_all_payment_processing...
2026-06-23 01:16
30k
FAQ_1093_Do_PCI_DSS_requirements_for_protecting_stored_cardholder_data_apply_...
2026-06-23 01:16
28k
FAQ_1094_Will_the_PCI_Security_Standards_Council_be_involved_in_performing_fo...
2026-06-23 01:16
27k
FAQ_1096_When_a_QSA_or_ASV_is_newly_approved_who_is_the_contact_at_the_PCI_Se...
2026-06-23 01:16
28k
FAQ_1115_How_does_PCI_DSS_apply_to_individual_PCs_or_workstations.pdf
2026-06-23 01:16
29k
FAQ_1117_Are_truncated_Primary_Account_Numbers_PAN_required_to_be_protected_i...
2026-06-23 01:16
33k
FAQ_1122_What_is_the_scope_of_the_PCI_Security_Standards_Councils_activities.pdf
2026-06-23 01:16
27k
FAQ_1123_In_what_way_does_the_PCI_Security_Standards_Council_make_payment_car...
2026-06-23 01:16
27k
FAQ_1124_PCI_DSS_provides_a_common_data_security_standard_across_all_payment_...
2026-06-23 01:16
27k
FAQ_1125_Are_there_any_plans_for_PCI_SSC_to_be_a_single_point_of_contact_for_...
2026-06-23 01:16
28k
FAQ_1126_How_do_I_determine_whether_my_business_would_be_required_to_conduct_...
2026-06-23 01:16
27k
FAQ_1127_Is_there_opportunity_to_provide_feedback_on_the_PCI_Councils_standar...
2026-06-23 01:16
27k
FAQ_1130_Are_operating_systems_that_are_no_longer_supported_by_the_vendor_non...
2026-06-23 01:16
31k
FAQ_1131_Does_the_council_have_a_mapping_between_PCI_DSS_and_ISO_27002_former...
2026-06-23 01:16
29k
FAQ_1132_What_is_an_Attestation_of_Compliance.pdf
2026-06-23 01:16
26k
FAQ_1133_Why_are_there_multiple_PCI_DSS_Self-assessment_Questionnaires_SAQs.pdf
2026-06-23 01:16
30k
FAQ_1134_What_are_the_steps_needed_to_perform_a_self_assessment_to_validate_c...
2026-06-23 01:16
30k
FAQ_1135_Can_VLANS_be_used_for_network_segmentation.pdf
2026-06-23 01:16
30k
FAQ_1137_How_can_I_validate_if_a_number_is_a_legitimate_credit_card_number.pdf
2026-06-23 01:16
28k
FAQ_1138_Does_PCI_SSC_provide_a_list_of_PCI_DSS-compliant_third-party_service...
2026-06-23 01:16
30k
FAQ_1139_Does_PCI_DSS_allow_faxing_of_payment_card_numbers.pdf
2026-06-23 01:16
31k
FAQ_1140_Which_Self-assessment_Questionnaire_SAQ_should_I_complete.pdf
2026-06-23 01:16
28k
FAQ_1142_How_do_I_contact_the_payment_card_brands.pdf
2026-06-23 01:16
30k
FAQ_1146_What_is_the_difference_between_masking_and_truncation.pdf
2026-06-23 01:16
31k
FAQ_1147_What_is_the_purpose_of_PCI_DSS_Requirement_828_which_requires_users_...
2026-06-23 01:16
30k
FAQ_1152_Can_entities_be_PCI_DSS_compliant_if_they_have_performed_vulnerabili...
2026-06-23 01:16
33k
FAQ_1153_How_does_PCI_DSS_apply_to_VoIP.pdf
2026-06-23 01:16
31k
FAQ_1154_For_PCI_DSS_can_sensitive_account_data_be_stored_before_authorizatio...
2026-06-23 01:16
29k
FAQ_1155_Which_service_provider_category_should_I_use_for_Part_2_of_the_PCI_D...
2026-06-23 01:16
30k
FAQ_1157_What_should_a_merchant_do_if_cardholder_data_is_accidentally_receive...
2026-06-23 01:16
30k
FAQ_1158_What_effect_does_the_use_of_a_PCI-listed_P2PE_solution_have_on_a_mer...
2026-06-23 01:16
28k
FAQ_1162_Can_merchants_use_encryption_solutions_not_listed_on_the_PCI_Council...
2026-06-23 01:16
29k
FAQ_1163_Is_a_P2PE_Assessor_required_for_a_merchants_PCI_DSS_assessment_if_th...
2026-06-23 01:16
29k
FAQ_1164_Is_the_PCI_P2PE_Standard_applicable_for_merchants_that_have_develope...
2026-06-23 01:16
29k
FAQ_1165_Are_P2PE_solution_providers_required_to_have_their_solutions_validat...
2026-06-23 01:16
28k
FAQ_1168_What_assurances_does_the_Council_provide_regarding_the_quality_of_or...
2026-06-23 01:16
29k
FAQ_1169_What_are_the_Councils_requirements_for_QSA_and_ASV_Companies_to_main...
2026-06-23 01:16
30k
FAQ_1170_How_does_the_Prioritized_Approach_work.pdf
2026-06-23 01:16
28k
FAQ_1171_Is_the_Prioritized_Approach_mandatory.pdf
2026-06-23 01:16
27k
FAQ_1172_Does_the_Prioritized_Approach_replace_the_PCI_DSS.pdf
2026-06-23 01:16
28k
FAQ_1176_How_does_an_organization_maintain_compliance_when_a_standard_changes...
2026-06-23 01:16
27k
FAQ_1210_Are_audiovoice_recordings_permitted_to_contain_sensitive_authenticat...
2026-06-23 01:16
30k
FAQ_1211_To_whom_should_media_inquiries_or_requests_for_interviews_about_the_...
2026-06-23 01:16
27k
FAQ_1212_What_is_the_involvement_of_the_PCI_SSC_on_the_compliance_validation_...
2026-06-23 01:16
27k
FAQ_1214_Which_PCI_standards_apply_to_card_manufacturers_embossers_card_perso...
2026-06-23 01:16
28k
FAQ_1215_What_is_a_PCI_DSS_Self-Assessment_Questionnaire.pdf
2026-06-23 01:16
30k
FAQ_1216_Does_the_PCI_DSS_apply_to_acquirers.pdf
2026-06-23 01:16
27k
FAQ_1217_Does_the_PCI_DSS_apply_to_issuers.pdf
2026-06-23 01:16
26k
FAQ_1220_Are_compliance_certificates_recognized_for_PCI_DSS_validation.pdf
2026-06-23 01:16
29k
FAQ_1221_To_which_types_of_service_providers_does_PCI_DSS_Appendix_A1_for_Mul...
2026-06-23 01:16
33k
FAQ_1222_Does_cardholder_name_expiration_date_etc_need_to_be_rendered_unreada...
2026-06-23 01:16
30k
FAQ_1227_Who_are_the_founders_of_the_PCI_Security_Standards_Council.pdf
2026-06-23 01:16
27k
FAQ_1229_What_is_SAQ_C-VT.pdf
2026-06-23 01:16
29k
FAQ_1233_How_does_encrypted_cardholder_data_impact_PCI_DSS_scope_for_third-pa...
2026-06-23 01:16
29k
FAQ_1234_I_have_had_an_external_vulnerability_scan_completed_by_an_ASV_-_does...
2026-06-23 01:16
30k
FAQ_1235_If_a_merchant_or_service_provider_has_internal_corporate_credit_card...
2026-06-23 01:16
28k
FAQ_1246_Can_a_QSA_that_is_not_also_a_P2PE_Assessor_validate_an_encryption_so...
2026-06-23 01:16
28k
FAQ_1247_Who_can_use_SAQ_P2PE.pdf
2026-06-23 01:16
29k
FAQ_1248_In_P2PE_how_do_hybrid_decryption_environments_differ_from_hardware_d...
2026-06-23 01:16
30k
FAQ_1251_What_is_the_process_to_use_previously-deployed_POI_devices_in_a_PCI_...
2026-06-23 01:16
34k
FAQ_1252_Do_all_PCI_DSS_requirements_apply_to_every_system_component.pdf
2026-06-23 01:16
29k
FAQ_1253_Does_hashing_of_passwords_meet_the_intent_of_PCI_DSS_Requirement_832...
2026-06-23 01:16
29k
FAQ_1257_Can_I_report_on_my_Prioritized_Approach_progress_instead_of_producin...
2026-06-23 01:16
27k
FAQ_1258_Does_PCI_SSC_endorse_specific_products_to_meet_PCI_DSS_requirements.pdf
2026-06-23 01:16
28k
FAQ_1265_Can_I_combine_sections_from_different_versions_of_the_PCI_DSS.pdf
2026-06-23 01:16
29k
FAQ_1266_If_an_entity_is_in_the_middle_of_a_PCI_DSS_assessment_when_a_new_ver...
2026-06-23 01:16
31k
FAQ_1277_Are_merchants_required_to_meet_PCI_DSS_Requirement_129.pdf
2026-06-23 01:16
28k
FAQ_1280_Can_card_verification_codes_be_stored_for_card-on-file_or_recurring_...
2026-06-23 01:16
32k
FAQ_1281_Are_point-of-interaction_devices_required_to_be_physically_secured_f...
2026-06-23 01:16
31k
FAQ_1282_Can_an_entity_be_PCI_DSS_compliant_if_they_use_a_third-party_service...
2026-06-23 01:16
29k
FAQ_1283_How_do_PCI_standards_apply_to_organizations_that_develop_software_th...
2026-06-23 01:16
34k
FAQ_1284_Are_acquirers_considered_service_providers_for_the_purpose_of_PCI_DS...
2026-06-23 01:16
30k
FAQ_1285_Does_PCI_DSS_apply_to_one-time_or_single-use_PANs.pdf
2026-06-23 01:16
28k
FAQ_1286_Does_PCI_DSS_apply_to_virtual_electronic-only_PANs.pdf
2026-06-23 01:16
28k
FAQ_1290_If_an_entity_uses_a_third-party_service_provider_TPSP_that_has_been_...
2026-06-23 01:16
30k
FAQ_1291_Why_is_SAQ_A-EP_used_for_Direct_Post_while_SAQ_A_is_used_for_iFrame_...
2026-06-23 01:16
30k
FAQ_1292_Why_is_there_a_different_approach_for_Direct_Post_implementations_th...
2026-06-23 01:16
34k
FAQ_1293_If_a_merchants_e-commerce_implementation_meets_the_criteria_that_all...
2026-06-23 01:16
29k
FAQ_1300_How_does_PCI_DSS_apply_to_payment_terminals.pdf
2026-06-23 01:16
32k
FAQ_1301_How_should_payment_terminals_be_considered_during_a_PCI_DSS_assessme...
2026-06-23 01:16
37k
FAQ_1302_How_does_use_of_an_expired_PTS_device_affect_my_PCI_DSS_compliance.pdf
2026-06-23 01:16
30k
FAQ_1304_To_which_devices_does_PCI_DSS_Requirement_1042_apply.pdf
2026-06-23 01:16
30k
FAQ_1305_How_do_individuals_obtain_examination_accommodation_or_adjustments_f...
2026-06-23 01:16
29k
FAQ_1306_Are_PCI_Forensic_Investigators_PFIs_permitted_to_enter_into_retainer...
2026-06-23 01:16
28k
FAQ_1308_How_can_an_entity_ensure_that_hashed_and_truncated_versions_cannot_b...
2026-06-23 01:16
28k
FAQ_1310_Are_entities_allowed_to_request_that_cardholder_data_be_provided_ove...
2026-06-23 01:16
30k
FAQ_1311_Are_PFI_Companies_which_are_in_remediation_permitted_to_perform_inve...
2026-06-23 01:16
29k
FAQ_1312_How_is_an_entitys_PCI_DSS_compliance_impacted_by_using_third-party_s...
2026-06-23 01:16
32k
FAQ_1313_Can_SAQ_B-IP_be_used_if_cardholder_data_is_transmitted_over_wireless...
2026-06-23 01:16
29k
FAQ_1314_Is_storage_of_encrypted_cardholder_data_considered_cardholder_data_p...
2026-06-23 01:16
29k
FAQ_1315_Is_storage_of_truncated_PAN_considered_storage_of_cardholder_data_pe...
2026-06-23 01:16
28k
FAQ_1316_Are_merchants_required_to_perform_the_Expected_Testing_in_the_SAQs.pdf
2026-06-23 01:16
29k
FAQ_1317_What_is_meant_by_significant_change_in_PCI_DSS.pdf
2026-06-23 01:16
30k
FAQ_1318_What_is_the_maximum_period_of_time_that_cardholder_data_can_be_store...
2026-06-23 01:16
29k
FAQ_1319_Are_merchants_allowed_to_request_card-verification_codesvalues_from_...
2026-06-23 01:16
29k
FAQ_1320_Who_do_I_report_insecure_merchant_behavior_to.pdf
2026-06-23 01:16
27k
FAQ_1321_Do_parentsubsidiary_companies_validate_as_a_single_entity_or_as_sepa...
2026-06-23 01:16
28k
FAQ_1322_What_are_the_expiry_dates_for_PTS_POI_device_approvals.pdf
2026-06-23 01:16
30k
FAQ_1323_Are_disaster-recovery_DR_sites_in_scope_for_PCI_DSS.pdf
2026-06-23 01:16
29k
FAQ_1324_What_changes_are_PFI_companies_allowed_to_make_to_the_PFI_Reporting_...
2026-06-23 01:16
31k
FAQ_1325_Does_PCI_SSC_provide_a_PCI_DSS_Compliant_logo.pdf
2026-06-23 01:16
28k
FAQ_1326_How_does_PCI_DSS_apply_to_EMVCo_Payment_Tokens.pdf
2026-06-23 01:16
32k
FAQ_1327_Do_PANs_need_to_be_masked_on_cardholder_statements_sent_by_issuers_t...
2026-06-23 01:16
29k
FAQ_1328_Where_can_I_find_the_current_version_of_PCI_DSS.pdf
2026-06-23 01:16
31k
FAQ_1331_Can_SAQ_eligibility_criteria_be_used_as_a_guide_for_determining_appl...
2026-06-23 01:16
33k
FAQ_1332_Is_a_merchant_website_still_in_scope_for_PCI_DSS_if_it_meets_all_the...
2026-06-23 01:16
29k
FAQ_1333_Can_PCI_DSS_compliance_be_determined_by_testing_only_pre-production_...
2026-06-23 01:16
28k
FAQ_1334_Where_can_I_find_unlocked_versions_of_the_AOCs_and_SAQs.pdf
2026-06-23 01:16
28k
FAQ_1335_Does_PCI_DSS_apply_to_bank_account_data.pdf
2026-06-23 01:16
30k
FAQ_1338_What_is_the_difference_between_POI_firmware_and_additional_software_...
2026-06-23 01:16
29k
FAQ_1339_Are_POI_devices_with_only_PTS-approved_firmware_ie_no_additional_sof...
2026-06-23 01:16
31k
FAQ_1354_Can_sensitive_information_be_redacted_from_the_PCI_DSS_Attestation_o...
2026-06-23 01:16
32k
FAQ_1356_What_does_Duly_Authorized_Officer_mean.pdf
2026-06-23 01:16
29k
FAQ_1358_Which_version_of_the_P2PE_Standard_should_be_used_for_a_P2PE_assessm...
2026-06-23 01:16
27k
FAQ_1367_Can_PCI-listed_P2PE_v20_applications_be_used_in_PCI_P2PE_v3_solution...
2026-06-23 01:16
27k
FAQ_1368_Can_PCI-listed_P2PE_v3_applications_be_used_in_PCI_P2PE_v2_listed_so...
2026-06-23 01:16
27k
FAQ_1369_Does_PCI_P2PE_allow_for_partial_assessments_of_third_parties_with_se...
2026-06-23 01:16
30k
FAQ_1374_Is_Payment_Account_Reference_PAR_as_defined_by_EMVCo_considered_PCI_...
2026-06-23 01:16
31k
FAQ_1375_Can_an_Attestation_of_Compliance_AOC_be_provided_to_an_assessed_enti...
2026-06-23 01:16
29k
FAQ_1382_Can_a_partial_PCI_DSS_assessment_be_documented_in_a_Report_on_Compli...
2026-06-23 01:16
32k
FAQ_1383_To_whom_do_the_PCI_Token_Service_Provider_Security_Requirements_appl...
2026-06-23 01:16
30k
FAQ_1384_What_is_the_difference_between_acquiring_tokens_issuer_tokens_and_Pa...
2026-06-23 01:16
30k
FAQ_1385_Which_types_of_tokens_are_addressed_by_the_PCI_SSC_tokenization_docu...
2026-06-23 01:16
31k
FAQ_1427_Are_OEMs_andor_hardwaresoftware_resellers_considered_third-party_ser...
2026-06-23 01:16
32k
FAQ_1434_How_do_PCI_PTS-approved_POI_device_expiry_dates_affect_a_PCI-listed_...
2026-06-23 01:16
29k
FAQ_1435_What_is_the_Councils_guidance_on_the_use_of_SHA-1.pdf
2026-06-23 01:16
27k
FAQ_1436_Where_do_I_direct_questions_about_complying_with_PCI_standards.pdf
2026-06-23 01:16
29k
FAQ_1437_Can_PCI_DSS_be_used_to_protect_non-payment_card_data.pdf
2026-06-23 01:16
27k
FAQ_1438_How_is_the_payment_page_determined_for_SAQ_A_merchants_using_iframe.pdf
2026-06-23 01:16
30k
FAQ_1439_How_do_PCI_DSS_Requirements_2_6_and_8_apply_to_SAQ_A_merchants.pdf
2026-06-23 01:16
32k
FAQ_1440_How_does_PCI_DSS_Appendix_A2_apply_after_the_SSLearly_TLS_migration_...
2026-06-23 01:16
32k
FAQ_1442_Can_merchants_using_non-console_administrative_access_be_eligible_fo...
2026-06-23 01:16
31k
FAQ_1443_What_is_the_intent_of_the_SAQ_eligibility_criteria.pdf
2026-06-23 01:16
31k
FAQ_1444_Can_a_PFI_Company_perform_subsequent_PFI_investigations_for_the_same...
2026-06-23 01:16
29k
FAQ_1445_How_should_QSA_assistance_with_completion_of_Self-Assessment_Questio...
2026-06-23 01:16
29k
FAQ_1448_What_is_meant_by_At-Risk_Timeframe_and_at_risk_referenced_in_the_Fin...
2026-06-23 01:16
31k
FAQ_1449_Is_two-step_authentication_acceptable_for_PCI_DSS_Requirement_84.pdf
2026-06-23 01:16
28k
FAQ_1450_Where_can_I_find_more_information_about_the_Assessment_Guidance_for_...
2026-06-23 01:16
30k
FAQ_1451_Can_PFIs_provide_reports_to_their_clients_before_sending_the_report_...
2026-06-23 01:16
29k
FAQ_1452_How_does_Triple_DEA_TDEA_impact_ASV_Scan_results.pdf
2026-06-23 01:16
31k
FAQ_1453_Can_a_PFI_Company_provide_QSA_services_to_an_entity_after_performing...
2026-06-23 01:16
29k
FAQ_1454_What_is_the_intent_of_administrative_access_in_PCI_DSS.pdf
2026-06-23 01:16
31k
FAQ_1455_Does_a_QSA_need_to_be_onsite_at_the_clients_premises_for_all_aspects...
2026-06-23 01:16
32k
FAQ_1456_Can_PCI_SSC_revoke_a_QSA_Companys_eligibility_to_participate_in_the_...
2026-06-23 01:16
30k
FAQ_1457_Are_Mobile_Payments_on_COTS_MPoC_solutions_Software-based_PIN_Entry_...
2026-06-23 01:16
31k
FAQ_1458_What_date_should_be_used_for_Date_of_Report_in_the_ROC.pdf
2026-06-23 01:16
28k
FAQ_1460_Where_should_reports_be_sent_when_the_PFI_investigation_has_conclude...
2026-06-23 01:16
28k
FAQ_1461_What_are_the_security_considerations_for_TLS_13.pdf
2026-06-23 01:16
30k
FAQ_1462_What_does_Window_of_Payment_Card_Data_Storage_mean_in_the_Final_PFI_...
2026-06-23 01:16
31k
FAQ_1464_Does_the_use_of_expired_PTS_POI_devices_meet_eligibility_criteria_fo...
2026-06-23 01:16
30k
FAQ_1467_Can_organizations_use_alternative_password_management_methods_to_mee...
2026-06-23 01:16
31k
FAQ_1468_Can_I_have_the_same_assessor_company_or_individual_assessor_perform_...
2026-06-23 01:16
29k
FAQ_1469_How_do_PCI_PTS-approved_HSM_expiry_dates_affect_a_PCI-listed_P2PE_So...
2026-06-23 01:16
29k
FAQ_1470_Are_PFIs_required_to_fill_out_all_the_fields_in_the_Final_PFI_Report...
2026-06-23 01:16
27k
FAQ_1471_What_does_Servicing_Markets_on_the_QSA_listing_mean.pdf
2026-06-23 01:16
29k
FAQ_1472_How_can_I_determine_whether_a_QSA_is_authorized_to_perform_PCI_DSS_a...
2026-06-23 01:16
31k
FAQ_1473_What_is_the_role_of_compliance-accepting_entities_and_assessors_in_d...
2026-06-23 01:16
32k
FAQ_1474_Can_PCI-listed_P2PE_v2_components_be_used_as_part_of_a_P2PE_v3_solut...
2026-06-23 01:16
28k
FAQ_1475_Can_PCI-listed_P2PE_v3_components_be_used_as_part_of_a_P2PE_v2_solut...
2026-06-23 01:16
29k
FAQ_1476_Which_P2PE_Program_Guide_version_do_I_use.pdf
2026-06-23 01:16
27k
FAQ_1477_Are_software_vendors_wishing_to_undergo_validation_to_the_PCI_Secure...
2026-06-23 01:16
28k
FAQ_1478_Can_PCI-listed_P2PE_v3_components_be_used_as_part_of_a_P2PE_v2_solut...
2026-06-23 01:16
29k
FAQ_1479_Can_PCI-listed_P2PE_v2_components_be_used_as_part_of_a_P2PE_v3_solut...
2026-06-23 01:16
28k
FAQ_1480_Which_P2PE_Program_Guide_version_do_I_use.pdf
2026-06-23 01:16
27k
FAQ_1481_What_type_of_assessor_signatures_are_allowable_for_PCI_SSC_attestati...
2026-06-23 01:16
30k
FAQ_1482_Are_P2PE_Products_P2PE_Solutions_P2PE_Components_P2PE_Applications_o...
2026-06-23 01:16
31k
FAQ_1483_If_a_P2PE_Solution_is_on_PCIs_list_of_Point-to-Point_Encryption_Solu...
2026-06-23 01:16
30k
FAQ_1484_If_a_P2PE_Solution_is_shown_as_red_or_orange_on_PCIs_list_of_Validat...
2026-06-23 01:16
31k
FAQ_1485_What_is_the_meaning_of_initial_PCI_DSS_assessment.pdf
2026-06-23 01:16
31k
FAQ_1486_Can_the_Compliant_but_with_Legal_exception_option_in_the_AOC_be_used...
2026-06-23 01:16
31k
FAQ_1487_Can_a_3DS_entity_outsource_the_hosting_and_management_of_its_HSMs_to...
2026-06-23 01:16
29k
FAQ_1488_What_types_of_3DS_components_are_in_scope_for_Requirement_P2-7_in_th...
2026-06-23 01:16
29k
FAQ_1489_Is_an_EMVCo_Letter_of_Approval_required_prior_to_conducting_a_PCI_3D...
2026-06-23 01:16
30k
FAQ_1490_Can_a_PCI_3DS_Assessment_result_in_a_finding_of_Compliant_if_some_re...
2026-06-23 01:16
29k
FAQ_1491_Does_PCI_DSS_define_which_versions_of_TLS_must_be_used.pdf
2026-06-23 01:16
32k
FAQ_1492_How_can_an_entity_meet_PCI_DSS_requirements_for_PAN_masking_and_trun...
2026-06-23 01:16
33k
FAQ_1493_What_is_the_PCI_3DS_3D_Secure_Core_Security_Standard.pdf
2026-06-23 01:16
30k
FAQ_1494_For_personnel_working_from_home_is_the_work-from-home_environment_co...
2026-06-23 01:16
32k
FAQ_1495_Is_an_assessor_required_to_visit_work-from-home_environments_to_dete...
2026-06-23 01:16
30k
FAQ_1496_Are_entities_expected_to_do_onsite_audits_of_personnel_work-from-hom...
2026-06-23 01:16
29k
FAQ_1533_For_PCI_DSS_why_is_storage_of_sensitive_authentication_data_SAD_afte...
2026-06-23 01:16
32k
FAQ_1536_What_is_a_compliance-accepting_entity.pdf
2026-06-23 01:16
27k
FAQ_1537_Are_remote_assessments_permitted_for_PCI_DSS.pdf
2026-06-23 01:16
28k
FAQ_1538_What_is_the_process_to_initiate_a_software_evaluation_to_the_PCI_Sec...
2026-06-23 01:16
29k
FAQ_1539_Who_is_qualified_to_perform_assessments_to_the_PCI_Secure_Software_S...
2026-06-23 01:16
29k
FAQ_1540_What_software_is_eligible_for_validation_to_the_PCI_Secure_Software_...
2026-06-23 01:16
29k
FAQ_1541_When_must_validated_payment_software_be_revalidated.pdf
2026-06-23 01:16
28k
FAQ_1542_What_is_the_process_for_PCI_Secure_SLC_Qualification.pdf
2026-06-23 01:16
28k
FAQ_1543_Who_is_qualified_to_perform_assessments_to_the_PCI_Secure_SLC_Standa...
2026-06-23 01:16
28k
FAQ_1544_Does_PCI_SSC_provide_a_list_of_software_vendors_whose_software_devel...
2026-06-23 01:16
28k
FAQ_1545_Are_there_prerequisite_PCI_SSC_program_requirements_to_meet_before_q...
2026-06-23 01:16
27k
FAQ_1546_Can_multiple_changes_for_a_Secure_Software_listing_be_submitted_with...
2026-06-23 01:16
27k
FAQ_1547_Are_currently_listed_PA-DSS_payment_applications_required_to_be_reva...
2026-06-23 01:16
30k
FAQ_1548_Are_Secure_Software_Assessors_or_Secure_Software_Lifecycle_Assessors...
2026-06-23 01:16
28k
FAQ_1549_Is_software-as-a-service_SaaS_eligible_for_Secure_Software_Standard_...
2026-06-23 01:16
28k
FAQ_1554_What_is_a_PCI_SSC_Participating_Payment_Brand.pdf
2026-06-23 01:16
27k
FAQ_1561_What_impact_does_the_inclusion_of_UnionPay_in_PCI_DSS_documents_have...
2026-06-23 01:16
30k
FAQ_1562_Is_a_QSA_Employee_that_designs_develops_or_implements_specific_contr...
2026-06-23 01:16
29k
FAQ_1563_What_should_an_entity_do_if_its_PCI_DSS_assessment_will_not_be_compl...
2026-06-23 01:16
31k
FAQ_1564_How_does_an_entity_report_the_results_of_a_PCI_DSS_assessment_for_ne...
2026-06-23 01:16
32k
FAQ_1565_Does_an_entitys_PCI_DSS_assessment_result_expire_when_the_standard_a...
2026-06-23 01:16
31k
FAQ_1566_Can_a_Qualified_Security_Assessor_QSA_ask_an_auditor_from_the_same_c...
2026-06-23 01:16
32k
FAQ_1567_Can_a_Qualified_Security_Assessor_QSA_rely_on_the_results_from_non_P...
2026-06-23 01:16
31k
FAQ_1568_Is_the_PCI_DSS_Attestation_of_Compliance_intended_to_be_shared.pdf
2026-06-23 01:16
28k
FAQ_1569_Is_sampling_allowed_in_PCI_DSS_v4x.pdf
2026-06-23 01:16
29k
FAQ_1570_Does_TDEA_meet_the_requirements_of_strong_cryptography_as_defined_in...
2026-06-23 01:16
29k
FAQ_1571_Is_the_expectation_that_any_PFI_investigation_initiated_must_result_...
2026-06-23 01:16
32k
FAQ_1572_Can_a_compensating_control_be_used_for_requirements_with_a_periodic_...
2026-06-23 01:16
31k
FAQ_1573_Do_PCI_DSS_requirements_for_keyed_cryptographic_hashing_apply_to_pre...
2026-06-23 01:16
30k
FAQ_1574_If_an_organization_provides_software_or_functionality_that_runs_on_a...
2026-06-23 01:16
33k
FAQ_1575_Does_PCI_SSC_consider_guidance_from_other_standards_organizations_wh...
2026-06-23 01:16
28k
FAQ_1576_What_evidence_is_a_TPSP_expected_to_provide_to_customers_to_demonstr...
2026-06-23 01:16
32k
FAQ_1577_What_does_console_access_mean_for_PCI_DSS_Requirements_841_and_842.pdf
2026-06-23 01:16
30k
FAQ_1578_Can_service_providers_use_eligibility_criteria_from_a_merchant_Self-...
2026-06-23 01:16
32k
FAQ_1579_Does_PCI_DSS_apply_to_service_providers_that_can_impact_the_security...
2026-06-23 01:16
31k
FAQ_1580_What_is_the_scope_of_a_PCI_DSS_assessment_for_service_providers_that...
2026-06-23 01:16
34k
FAQ_1581_How_does_PCI_DSS_Requirement_643_apply_to_3DS_scripts_called_from_a_...
2026-06-23 01:16
32k
FAQ_1582_What_is_the_completion_date_for_PCI_DSS_assessments_documented_in_a_...
2026-06-23 01:16
30k
FAQ_1583_What_is_the_completion_date_for_PCI_DSS_assessments_documented_in_a_...
2026-06-23 01:16
32k
FAQ_1584_For_PCI_DSS_can_multi-factor_authentication_MFA_implementations_indi...
2026-06-23 01:16
29k
FAQ_1585_When_should_an_entity_implement_PCI_DSS_requirements_noted_as_best_p...
2026-06-23 01:16
33k
FAQ_1588_How_does_an_e-commerce_merchant_meet_the_SAQ_A_eligibility_criteria_...
2026-06-23 01:16
33k
FAQ_1589_Is_the_cardholder_in_scope_for_PCI_DSS.pdf
2026-06-23 01:16
25k
FAQ_1590_Do_PCI_DSS_Requirements_839_and_83101_apply_to_all_system_components...
2026-06-23 01:16
32k
FAQ_1591_Why_do_requirements_839_and_83101_focus_on_passwordspassphrases_used...
2026-06-23 01:16
32k
FAQ_1592_Are_providers_of_third-party_scripts_for_e-commerce_environments_con...
2026-06-23 01:16
30k
FAQ_1593_How_should_PCI_DSS_v4x_requirements_noted_as_superseded_by_another_r...
2026-06-23 01:16
33k
FAQ_1595_Are_passkeys_synced_across_devices_implemented_according_to_the_FIDO...
2026-06-23 01:16
31k
FAQ_1596_Is_phishing-resistant_authentication_alone_acceptable_as_multi-facto...
2026-06-23 01:16
30k
FAQ_1597_What_are_the_expectations_for_entities_when_assigning_risk_rankings_...
2026-06-23 01:16
32k
FAQ_1598_Are_Approved_Scanning_Vendors_and_Qualified_Security_Assessors_consi...
2026-06-23 01:16
32k
FAQ_1601_What_is_the_impact_if_an_entity_uses_a_third-party_service_provider_...
2026-06-23 01:16
33k
FAQ_1602_Should_entities_with_enterprise_or_internal_service_providers_used_t...
2026-06-23 01:16
29k
FAQ_1603_Are_authentication_values_from_a_3DS_transaction_considered_sensitiv...
2026-06-23 01:16
29k
FAQ_1604_Do_ASV_scans_in_SAQ_A_apply_to_merchants_with_webpages_that_redirect...
2026-06-23 01:16
32k
Proudly Served by LiteSpeed Web Server at www.pcidss.opsidian.com.au Port 443