PCI Fundamentals Exam Questions
With 100% Verified Answers
The payment card brands are responsible for: -
correct answer ✅penalty or fee assignment for non-compliance
Authorization of a transaction usually takes place: -
correct answer ✅within one day
If a suspected card account number passes the Mod 10 test it
means: -
correct answer ✅it is definitely a valid PAN
Which of the following is true regarding network segmentation? -
correct answer ✅Network segmentation is not a PCI DSS
requirement
Which of the following is true related to the tracks of data on the
magnetic stripe of a payment card? -
correct answer ✅Track 1 contains all the fields of both track 1 and
track 2
How Often should the firewall and router rule sets be reviewed? -
correct answer ✅Every six months
,PCI Fundamentals Exam Questions
With 100% Verified Answers
Which Of the following statements is true concerning transaction
volumes for merchants? -
correct answer ✅Transaction volume is determined by each
acquirer
Storing full track data after authorization is permitted under the
following circumstances: -
correct answer ✅NEVER
In order to reduce PCI DSS scope, adequate network segmentation
should: -
correct answer ✅isolate systems that store, process, or transmit
cardholder data from those that do not
Systems that commonly store track data: -
correct answer ✅POSsystems
Which Of the following is true, regarding an entity sharing
cardholder data with a service provider? -
correct answer ✅The entity must have an established process for
engaging service providers, including proper due diligence prior to
engagement.
, PCI Fundamentals Exam Questions
With 100% Verified Answers
When must critical new security patches be installed? -
correct answer ✅Within one month of release
Which Of the following statements is true? -
correct answer ✅PA-DSS compliant payment applications are in
scope for a merchant's PCI DSS assessment
In accordance with PCI DSS Requirement 1, firewalls are required: -
correct answer ✅between the cardholder environment and Other
internal networks
Which party is responsible for merchant compliance validation and
merchant communications? -
correct answer ✅Acquirer
The Mod 10 formula doubles the value of alternate digits of the
primary account number beginning with which digit? -
correct answer ✅Second from the left
Strong access control lists include the following: -
correct answer ✅Do not allow "risky" protocols such as FTP or
Telnet.
With 100% Verified Answers
The payment card brands are responsible for: -
correct answer ✅penalty or fee assignment for non-compliance
Authorization of a transaction usually takes place: -
correct answer ✅within one day
If a suspected card account number passes the Mod 10 test it
means: -
correct answer ✅it is definitely a valid PAN
Which of the following is true regarding network segmentation? -
correct answer ✅Network segmentation is not a PCI DSS
requirement
Which of the following is true related to the tracks of data on the
magnetic stripe of a payment card? -
correct answer ✅Track 1 contains all the fields of both track 1 and
track 2
How Often should the firewall and router rule sets be reviewed? -
correct answer ✅Every six months
,PCI Fundamentals Exam Questions
With 100% Verified Answers
Which Of the following statements is true concerning transaction
volumes for merchants? -
correct answer ✅Transaction volume is determined by each
acquirer
Storing full track data after authorization is permitted under the
following circumstances: -
correct answer ✅NEVER
In order to reduce PCI DSS scope, adequate network segmentation
should: -
correct answer ✅isolate systems that store, process, or transmit
cardholder data from those that do not
Systems that commonly store track data: -
correct answer ✅POSsystems
Which Of the following is true, regarding an entity sharing
cardholder data with a service provider? -
correct answer ✅The entity must have an established process for
engaging service providers, including proper due diligence prior to
engagement.
, PCI Fundamentals Exam Questions
With 100% Verified Answers
When must critical new security patches be installed? -
correct answer ✅Within one month of release
Which Of the following statements is true? -
correct answer ✅PA-DSS compliant payment applications are in
scope for a merchant's PCI DSS assessment
In accordance with PCI DSS Requirement 1, firewalls are required: -
correct answer ✅between the cardholder environment and Other
internal networks
Which party is responsible for merchant compliance validation and
merchant communications? -
correct answer ✅Acquirer
The Mod 10 formula doubles the value of alternate digits of the
primary account number beginning with which digit? -
correct answer ✅Second from the left
Strong access control lists include the following: -
correct answer ✅Do not allow "risky" protocols such as FTP or
Telnet.