PCI ISA Exam Question 60 WITH Answers
100% PASS
Which of the following is true regarding network segmentation?—ANSWER--Network
Segmentation is not a PCI DSS requirement
When must critical security patches be installed—ANSWER--Within 1 month
Which statement is true for a merchant using a validated P2PE solution?—ANSWER--
The merchant is responsible for ensuring their own PCI compliance
Which of the following applications may go through a PA-DSS review?—ANSWER--
Commercial payment application without much customization
Strong access control lists include:—ANSWER--Don't allow risky protocols such as FTP
or Telnet.
Manufacturers of PIN Entry devices must adhere to which standard?—ANSWER--PCI
PTS
PCI PA DSS standard covers which of the following—ANSWER--Payment applications
that store, process or transmit cardholder data as part of authorization and or
settlement
Which is true about QIR installation—ANSWER--PA DSS application installed by a QIR
must still be reviewed during the PCI DSS assessment
100% PASS
Which of the following is true regarding network segmentation?—ANSWER--Network
Segmentation is not a PCI DSS requirement
When must critical security patches be installed—ANSWER--Within 1 month
Which statement is true for a merchant using a validated P2PE solution?—ANSWER--
The merchant is responsible for ensuring their own PCI compliance
Which of the following applications may go through a PA-DSS review?—ANSWER--
Commercial payment application without much customization
Strong access control lists include:—ANSWER--Don't allow risky protocols such as FTP
or Telnet.
Manufacturers of PIN Entry devices must adhere to which standard?—ANSWER--PCI
PTS
PCI PA DSS standard covers which of the following—ANSWER--Payment applications
that store, process or transmit cardholder data as part of authorization and or
settlement
Which is true about QIR installation—ANSWER--PA DSS application installed by a QIR
must still be reviewed during the PCI DSS assessment