100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

PCI-DSS ISA EXAM UPDATED QUESTIONS AND CORRECT ANSWERS.

Rating
-
Sold
-
Pages
6
Grade
A+
Uploaded on
12-10-2025
Written in
2025/2026

PCI-DSS ISA EXAM UPDATED QUESTIONS AND CORRECT ANSWERS.

Institution
PCI-DSS ISA
Course
PCI-DSS ISA









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
PCI-DSS ISA
Course
PCI-DSS ISA

Document information

Uploaded on
October 12, 2025
Number of pages
6
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

PCI ISA EXAM UPDATED QUESTIONS
AND CORRECT ANSWERS.




SAQ-A - ANS e-commerce or telephone order merchants; processing fully outsourced to
validated 3rd party. No processing, transmitting, storing done by merchant


SAQ-B - ANS merchants with imprint machines and/or merchant with only standalone dial-
out terminals


SAQ-B-IP - ANS Same as SAQ-B but the terminals not dial-out, the terminals have an IP
connection


SAQ-C - ANS Merchants with payment apps connected to the Internet but have no CHD
storage. Not available if doing ecommerce


SAQ-C-VT - ANS Merchants who only use virtual terminals from a validated 3rd party. Do
transactions one at a time. Not available if doing ecommerce


SAQ-A-EP - ANS Same as SAQ-A but web site could affect the security of outsourced 3rd
party solution.


SAQ-D - ANS Used by merchants not eligible for any other SAQ. Service providers must
always use SAQ-D




1 @COPYRIGHT 2025/2026 ALLRIGHTS RESERVED

, Where are firewalls required - ANS Between Internet and CHD, between DMZ and internal
network, between wireless networks and CHD


How often must firewall rules be reviewed - ANS 6 months and after significant environment
change


Non-Console admin access must be ______ - ANS encrypted


CHD data can only be stored for how long? - ANS based on merchant documented policy
based on biz, regulatory, legal requirements


CHD that has exceeded its defined retention period must be deleted based on a ________
process - ANS quarterly


When is it OK to store sensitive authentication date (SAD)? - ANS temporarily prior to
authorization. Issuers can store SAD based on business need


Sensitive Authentication Data - ANS Full Track, Track 1, Track 2, CVV, PIN. Any equivalent
from chip


When masking a card number what can be shown - ANS first 6 and last 4


Acceptable methods for making PAN unreadable - ANS Hash, Truncation, Tokenized, strong
key cryptography


Secret/Private keys must be protected by what method(s) - ANS 1) key-encrypting key,
stored separately. 2) Hardware Security Module (HSM) 3) two full length key components (aka
split knowledge)


Spit Knowledge - ANS two or more people separately have key components; knowing only
their half


2 @COPYRIGHT 2025/2026 ALLRIGHTS RESERVED

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
sirjoel Liberty University
View profile
Follow You need to be logged in order to follow users or courses
Sold
100
Member since
1 year
Number of followers
13
Documents
11485
Last sold
2 hours ago
Sirjoel

Here you will find all documents and package deals offered by sirjoel

3.4

16 reviews

5
3
4
4
3
7
2
1
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions