Recent FAQ Changes RSS

Latest changes to PCI SSC frequently asked questions.

FAQ 1221 Updated

Do shared hosting providers need to comply with PCI DSS?

PCI DSS requirement 2.6 and Appendix A: "Additional PCI DSS Requirements for Shared Hosting Providers" is applicable to all shared hosting providers whose customers store, process, or transmit cardholder data. …

FAQ 1034 Updated

What are system-level objects, as used in PCI DSS Requirement 10?

A system-level object is anything on a computer system required for its operation, including, but not limited to, database tables, stored procedures, application executables and configuration files, system configuration files, …

FAQ 1035 Updated

What is the definition of "remote access"?

The term “remote access” refers to access to a computer network from a location outside of that network.

Examples of remote access include access from the Internet, an “untrusted” …