Aller au contenu principal

PCI DSS (Payment Card Industry Data Security Standard)

ICON - PCI SSC.png


Region

US - Global

Focus

Bank Card Industry

Detailed description

PCI Security Standards are developed and maintained by the PCI Security Standards Council to protect payment data throughout the payment lifecycle. The different PCI Standards support different stakeholders and functions within the payments industry. The PCI DSS defines security requirements to protect environments where payment account data is stored, processed, or transmitted. PCI DSS provides a baseline of technical and operational requirements designed to protect payment account data.

Key Details

  • Administered by the Payment Card Industry Security Standards Council (PCI SSC).
  • Mandated by major credit card brands (e.g., Visa, MasterCard, American Express).
  • Covers 12 key security requirements, including network security, access control, and encryption.
  • Compliance validation includes Self-Assessment Questionnaires (SAQ), Internal Security Assessor (ISA) audits, and Qualified Security Assessor (QSA) assessments.

More Information

PCI Security Standard Council