Recent Updates RSS
The latest changes across all tracked PCI resources.
Does an entity's PCI DSS assessment result expire when the standard against which the entity was assessed is retired?
Can a Qualified Security Assessor (QSA) ask an auditor from the same company (for example, one conducting a SOC 2 or SOC 3 audit) to collect evidence for a PCI DSS assessment?
Can a Qualified Security Assessor (QSA) rely on the results from non PCI DSS assessment (for example, a SOC 2 or SOC 3 audit) for a PCI DSS assessment?
What is the role of compliance-accepting entities and assessors in determining the applicability of PCI DSS requirements for merchant and service provider PCI DSS assessments?
What should an entity do if its PCI DSS v3.2.1 assessment will not be complete prior to that standard?s retirement date of 31 March 2024?
Which version of PCI DSS should an entity use?
Coffee with the Council Podcast: Help Elect the Council’s Next Board of Advisors
New Video Series: Questions with the Council
PCI Security Standards Council Bulletin: Updated Version of Mobile Payments on COTS (MPoC) to Address Errata
Can a service provider redact information in the PCI DSS Attestation of Compliance before providing it to customers?
Coffee with the Council Podcast: What’s New at the Council in 2023 Featuring Lance Johnson
Vote Now for the 2023 Special Interest Group Project
PCI Security Standards Council Bulletin: PTS POI Modular Security Requirements v6.2 Published
Access Hours of Payment Security Industry Insights
The PCI SSC Global Content Library is now available! The PCI SSC Global Content Library is home to hours of video content from our Global Community Events, covering topics on …