Understanding "Connected-to" - Is The Internet In Scope For PCI DSS?
PCI DSS is all about scope. Getting scope right or wrong is perhaps the single most critical factor...
1 min read
Robert Spivak : Apr 15, 2015 12:00:00 AM
The PCI Security Standards Council today published the expected update to PCI releasing these documents including some specific migration guidance:
Updates to the DSS Supporting documents like the ROC Reporting Instructions and to the PA-DSS Standard are expected to follow soon.
Some of the notable changes and guidance:
PCI DSS is all about scope. Getting scope right or wrong is perhaps the single most critical factor...
Masking and truncation of cardholder data may seem the same on the surface (eg. 423456XXXXXX7890);...
Sensitive authentication data, aka SAD, in PCI compliance is data used by the issuers of cards to...