Yes. However, while it may be possible for a PCI POI device to implement all the necessary functionality for use in a P2PE solution solely within its existing PTS-approved firmware, …
(Note the term ?solution provider? below can be used interchangeably with ?encryption management component provider,? depending on the entity managing the POI devices.)
PTS devices inherently require firmware to function. "Firmware" as defined in the PTS standard is "... any code within the device that provides security protections needed to comply with (PTS) …
Yes. Per the PCI DSS Qualification Requirements for Qualified Security Assessors, PCI SSC reserves the right to revoke AQSA Program qualification or reject any future AQSA Program application from a …