PCI Knowledge Check v2 Exam
Questions With 100% Verified
Answers
Methods for stealing payment card data -
correct answer ✅Includes physical skimming, malware and weak
passwords.
The PCI DSS applies to: -
correct answer ✅Any entity that stores, processes, or transmitts
payment card account data.
The P2PE standard covers: -
correct answer ✅Encryption, decryption, key management
requirements for point to point encryption solutions.
The standard for validating off-the-self payment applications used
in authorization and settlement -
correct answer ✅PA-DSS (Payment Application Data Security
Standard) PA-DSS is the standard used by PA-QSAs to validate
payment applications.
Merchants using PA-DSS validated payment applications are
automatically PCI DSS compliant -
correct answer ✅False - Using PA-DSS validated applications is not
the only requirement for a merchant to become PCI DSS Compliant.
,PCI Knowledge Check v2 Exam
Questions With 100% Verified
Answers
Which of the below functions is associated with acquirers? -
correct answer ✅Acquirers are involved in authentication, clearing
and settlement for their merchant.
Which of the following entities will ultimately approve a purchase?
-
correct answer ✅The issuer
In which step does the payment brand network provide complete
recognition to the merchant's bank. -
correct answer ✅During clearing, the processor provides complete
reconciliation to the merchant's bank.
A company that (blank) is considered to be a service to be a service
provider. -
correct answer ✅controls impact the security of cardholder data.
Which of the following are parts of the examples of service
providers? -
correct answer ✅Data Center Hosting Provides, Payment
, PCI Knowledge Check v2 Exam
Questions With 100% Verified
Answers
Gateways. and Independent Sales Organizations (ISOs) or External
Sales Agents (ESAs).
Which of the following are parts of the Payment Brand role? -
correct answer ✅Developing and enforcing compliance programs,
accepting validation documentation from approved QSA, PA-QSA,
and ASV companies and their employees, and endorsing QSA, PA-
QSA, and ASV company qualification criteria.
Merchant obligation may include submitting their compliance
status to multiple entities. -
correct answer ✅True - Merchants may have to submit to multiple
entities.
Level 1 and Level 2 merchants must include (blank) as part of their
PCI DSS compliance validation reporting process? -
correct answer ✅Quarterly external vulnerability scans to be
performed by an (ASV) Approved Scanning Vendor. Level 2
merchants may use SAQ validate compliance.
Questions With 100% Verified
Answers
Methods for stealing payment card data -
correct answer ✅Includes physical skimming, malware and weak
passwords.
The PCI DSS applies to: -
correct answer ✅Any entity that stores, processes, or transmitts
payment card account data.
The P2PE standard covers: -
correct answer ✅Encryption, decryption, key management
requirements for point to point encryption solutions.
The standard for validating off-the-self payment applications used
in authorization and settlement -
correct answer ✅PA-DSS (Payment Application Data Security
Standard) PA-DSS is the standard used by PA-QSAs to validate
payment applications.
Merchants using PA-DSS validated payment applications are
automatically PCI DSS compliant -
correct answer ✅False - Using PA-DSS validated applications is not
the only requirement for a merchant to become PCI DSS Compliant.
,PCI Knowledge Check v2 Exam
Questions With 100% Verified
Answers
Which of the below functions is associated with acquirers? -
correct answer ✅Acquirers are involved in authentication, clearing
and settlement for their merchant.
Which of the following entities will ultimately approve a purchase?
-
correct answer ✅The issuer
In which step does the payment brand network provide complete
recognition to the merchant's bank. -
correct answer ✅During clearing, the processor provides complete
reconciliation to the merchant's bank.
A company that (blank) is considered to be a service to be a service
provider. -
correct answer ✅controls impact the security of cardholder data.
Which of the following are parts of the examples of service
providers? -
correct answer ✅Data Center Hosting Provides, Payment
, PCI Knowledge Check v2 Exam
Questions With 100% Verified
Answers
Gateways. and Independent Sales Organizations (ISOs) or External
Sales Agents (ESAs).
Which of the following are parts of the Payment Brand role? -
correct answer ✅Developing and enforcing compliance programs,
accepting validation documentation from approved QSA, PA-QSA,
and ASV companies and their employees, and endorsing QSA, PA-
QSA, and ASV company qualification criteria.
Merchant obligation may include submitting their compliance
status to multiple entities. -
correct answer ✅True - Merchants may have to submit to multiple
entities.
Level 1 and Level 2 merchants must include (blank) as part of their
PCI DSS compliance validation reporting process? -
correct answer ✅Quarterly external vulnerability scans to be
performed by an (ASV) Approved Scanning Vendor. Level 2
merchants may use SAQ validate compliance.