Recent FAQ Changes RSS

Latest changes to PCI SSC frequently asked questions.

FAQ 1132 New

What is an Attestation of Compliance?

The Attestation of Compliance is the document used to indicate that the appropriate Report on Compliance or Self-assessment Questionnaire has been performed, and to attest to your organization's compliance status …

FAQ 1080 New

Are administrators allowed to share passwords?

PCI DSS requirement 8.5 (and the associated sub-requirements) applies to administrators. As such, administrators are not allowed to share passwords. The intent of requirements for unique user IDs and complex …

FAQ 1079 New

What is the definition of "merchant"?

For the purposes of the PCI DSS, a merchant is defined as any entity that accepts payment cards bearing the logos of any of the five members of PCI SSC …