PCI - ISA Review Questions with Correct
Answers
Which of the following is true regarding network segmentation?
Network Segmentation is not a PCI DSS requirement
When must critical security patches be installed
Within 1 month
Which statement is true for a merchant using a validated P2PE solution?
The merchant is responsible for ensuring their own PCI compliance
Which of the following applications may go through a PA-DSS review?
Commercial payment application without much customization
Strong access control lists include:
Don't allow risky protocols such as FTP or Telnet.
Manufacturers of PIN Entry devices must adhere to which standard?
PCI PTS
PCI PA DSS standard covers which of the following
Payment applications that store, process or transmit cardholder data as part of authorization
and or settlement
Which is true about QIR installation
PA DSS application installed by a QIR must still be reviewed during the PCI DSS assessment
In accordance with the PCI DSS Req 1, where are firewalls required
Answers
Which of the following is true regarding network segmentation?
Network Segmentation is not a PCI DSS requirement
When must critical security patches be installed
Within 1 month
Which statement is true for a merchant using a validated P2PE solution?
The merchant is responsible for ensuring their own PCI compliance
Which of the following applications may go through a PA-DSS review?
Commercial payment application without much customization
Strong access control lists include:
Don't allow risky protocols such as FTP or Telnet.
Manufacturers of PIN Entry devices must adhere to which standard?
PCI PTS
PCI PA DSS standard covers which of the following
Payment applications that store, process or transmit cardholder data as part of authorization
and or settlement
Which is true about QIR installation
PA DSS application installed by a QIR must still be reviewed during the PCI DSS assessment
In accordance with the PCI DSS Req 1, where are firewalls required