ℹ️
Reference Content: This is a copy of content from the PCI Security Standards Council FAQ database, preserved for tracking changes over time.
View Original →
FAQ #1321 Published

Do parent/subsidiary companies validate as a single entity or as separate entities?

Each payment brand determines their own compliance validation requirements, which may include specific requirements for companies comprised of multiple or separate entities. Organizations should contact their acquirer (merchant bank) and/or the payment brands directly, as applicable, to determine how to validate their compliance. Contact information for the payment brands is in FAQ #1142 How do I contact the payment card brands?.

Disclaimer: This FAQ has been processed for display on this website and may contain errors. Please check the original FAQ on the PCI SSC website for the authoritative version.