Question 26

Information Security Policies must be reviewed/updated _____________ to meet requirement 12.1.1
  • Question 27

    According to requirement 8.1.6 an user ID should be locked out after a maximum how many repeated access attempts?
  • Question 28

    Existing PCI DSS requirements may be combined with new controls to become a compensating control.
  • Question 29

    When masking the PAN what is the maximum number of digits allowed to be displayed
  • Question 30

    Internal and external penetration tests should be performed_______________ to meet requirement
    1 1.3.1 and 11.3.2