PCI DSS
E184232
PCI DSS (Payment Card Industry Data Security Standard) is a global set of security requirements designed to protect cardholder data and reduce credit card fraud for organizations that handle payment card information.
All labels observed (13)
| Label | Occurrences |
|---|---|
| PCI DSS canonical | 9 |
| PCI Data Security Standard | 5 |
| Payment Card Industry Data Security Standard | 2 |
| PCI DSS (for certain configurations) | 1 |
| PCI DSS (via rules and conformance packs) | 1 |
| PCI DSS v1.0 | 1 |
| PCI DSS v1.1 | 1 |
| PCI DSS v1.2 | 1 |
| PCI DSS v2.0 | 1 |
| PCI DSS v3.1 | 1 |
| PCI DSS v3.2 | 1 |
| PCI DSS v3.2.1 | 1 |
| PCI DSS v4.0 | 1 |
Statements (62)
| Predicate | Object |
|---|---|
| instanceOf |
information security standard
ⓘ
payment card security standard ⓘ |
| abbreviationFor |
PCI DSS
self-linksurface differs
ⓘ
surface form:
Payment Card Industry Data Security Standard
|
| appliesTo |
acquiring banks
ⓘ
merchants ⓘ organizations that process cardholder data ⓘ organizations that store cardholder data ⓘ organizations that transmit cardholder data ⓘ payment processors ⓘ service providers handling payment card data ⓘ |
| cardBrandsInvolved |
American Express
ⓘ
Discover ⓘ JCB Co., Ltd. ⓘ
surface form:
JCB
Mastercard ⓘ Visa ⓘ |
| category |
compliance
ⓘ
cybersecurity ⓘ |
| complianceValidatedBy |
Internal Security Assessor
ⓘ
Qualified Security Assessor program ⓘ
surface form:
Qualified Security Assessor
Self-Assessment Questionnaire ⓘ |
| contains |
12 high-level requirements
ⓘ
operational security requirements ⓘ technical security requirements ⓘ |
| developedBy | PCI Security Standards Council ⓘ |
| fullName |
PCI DSS
self-linksurface differs
ⓘ
surface form:
Payment Card Industry Data Security Standard
|
| geographicScope | global ⓘ |
| governedBy | PCI Security Standards Council ⓘ |
| hasVersion |
PCI DSS
self-linksurface differs
ⓘ
surface form:
PCI DSS v1.0
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v1.1
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v1.2
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v2.0
PCI DSS v3.0 ⓘ PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v3.1
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v3.2
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v3.2.1
PCI DSS self-linksurface differs ⓘ
surface form:
PCI DSS v4.0
|
| industry | payment card industry ⓘ |
| introduced | 2004 ⓘ |
| isMandatoryFor |
American Express merchants under card brand rules
ⓘ
Discover merchants under card brand rules ⓘ JCB merchants under card brand rules ⓘ Mastercard merchants under card brand rules ⓘ Visa merchants under card brand rules ⓘ |
| purpose |
protect cardholder data
ⓘ
reduce credit card fraud ⓘ secure payment card transactions ⓘ |
| relatedStandard |
PA-DSS
ⓘ
PA-DSS ⓘ
surface form:
PCI SSF
|
| requires |
access control measures
ⓘ
encryption of cardholder data over open public networks ⓘ information security policy ⓘ network segmentation or compensating controls where applicable ⓘ protection of stored cardholder data ⓘ regular monitoring and testing of networks ⓘ secure system configuration ⓘ use of anti-virus software ⓘ use of firewalls ⓘ |
| riskAddressed |
credit card fraud
ⓘ
identity theft related to card data ⓘ payment card data breach ⓘ |
| scope |
cardholder data
ⓘ
sensitive authentication data ⓘ |
Referenced by (26)
Full triples — surface form annotated when it differs from this entity's canonical label.
this entity surface form:
PCI Data Security Standard
this entity surface form:
Payment Card Industry Data Security Standard
this entity surface form:
Payment Card Industry Data Security Standard
this entity surface form:
PCI DSS v1.0
this entity surface form:
PCI DSS v1.1
this entity surface form:
PCI DSS v1.2
this entity surface form:
PCI DSS v2.0
this entity surface form:
PCI DSS v3.1
this entity surface form:
PCI DSS v3.2
this entity surface form:
PCI DSS v3.2.1
this entity surface form:
PCI DSS v4.0
this entity surface form:
PCI Data Security Standard
this entity surface form:
PCI Data Security Standard
this entity surface form:
PCI Data Security Standard
this entity surface form:
PCI Data Security Standard
this entity surface form:
PCI DSS (for certain configurations)
this entity surface form:
PCI DSS (via rules and conformance packs)