Question 26
Information Security Policies must be reviewed/updated _____________ to meet requirement 12.1.1
Question 27
According to requirement 8.1.6 an user ID should be locked out after a maximum how many repeated access attempts?
Question 28
Existing PCI DSS requirements may be combined with new controls to become a compensating control.
Question 29
When masking the PAN what is the maximum number of digits allowed to be displayed
Question 30
Internal and external penetration tests should be performed_______________ to meet requirement
1 1.3.1 and 11.3.2
1 1.3.1 and 11.3.2