Which of the following describes "stateful responses' to communication initiated by a trusted network?
Which statement is true regarding the presence of both hashed and truncated versions of the same PAN in an environment?
A "Partial Assessment is a new assessment result What is a ‘Partial Assessment’?
What is the intent of classifying media that contains cardholder data?
Security policies and operational procedures should be?
In the ROC Repotting Template, which of the following is the best approach for a response where the requirement was in Place’’?
Which scenario meets PCI DSS requirements for restricting access to databases containing cardholder data?
If segmentation is being used to reduce the scope of a PCI DSS assessment the assessor will?
Which of the following is true regarding internal vulnerability scans?
A network firewall has been configured with the latest vendor security patches What additional configuration is needed to harden the firewall?
Which of the following types of events is required to be logged?
Which statement about the Attestation of Compliance (AOC) is correct?
The intent of assigning a risk ranking to vulnerabilities is to?
Which of the following is required to be included in an incident response plan?
Which of the following statements is true regarding track equivalent data on the chip of a payment card?
An organization has implemented a change-detection mechanism on their systems. How often must critical file comparisons be performed?
A retail merchant has a server room containing systems that store encrypted PAN data. The merchant has implemented a badge access-control system that identities who entered and exited the room on what date and at what time There are no video cameras located in the server room Based on this information, which statement is true regarding PCI DSS physical security requirements?
Which statement is true regarding the use of intrusion detection techniques, such as intrusion detection systems and/or intrusion protection systems (IDS'IPS)?