Recent FAQ Changes RSS

Latest changes to PCI SSC frequently asked questions.

FAQ 1173 Deleted

Who is qualified to perform PA-DSS assessments?

Payment Application Qualified Security Assessors (PA-QSAs) are qualified by the Council to validate payment applications for compliance to PA-DSS. A list of PA-QSAs is available on the Council website. A …

FAQ 1461 New

What are the security considerations for TLS 1.3?

Transport Layer Security (TLS) is a protocol that provides security over networks and is widely used for internet communications and online transactions. TLS version 1.3 introduces protocol changes that may …

FAQ 1153 Updated

How does PCI DSS apply to VoIP?

PCI DSS requirements apply wherever payment card account data is stored, processed, or transmitted. While PCI DSS does not explicitly reference the use of VoIP, VoIP traffic that contains payment …