For what purpose should system security parameters be configured?
To prevent misuse of the system
If a user account is locked out due to failed login attempts, the user
should be locked out until an admin unlocks or a period of:
30 mins
Is network segmentation a PCI DSS requirement?
NO
,Merchants with a payment application connected to the internet with
no electronic cardholder data
SAQ C
Encryption account data is in scope for an entity that possesses the
________________?
decryption keys
Authorization of a transaction usually takes places at which point in
time?
Within one day of purchase
,The __________________ facilitates the payment transaction
between the merchant's acquirer and the issuer.
Payment Brand Network
The _________________ also known as the merchant's bank, sends
payment transaction data through the payment network to the issuer.
[Acquirer] The acquirer,
The ________________is the organization accepting payment from
the cardholder during a purchase.
, [Merchant] The merchant
The merchant sends payment transaction data to their
__________________.
Acquirer
Req 9 requires entities to maintain a list of card reading devices uses
at the POS. The list should identify the make, model,
____________________ and ________________.
location and unique identifier for each device