Question 6

What should the assessor verify when testing that cardholder data Is protected whenever It Is sent over open public networks?
  • Question 7

    Which scenario meets PCI DSS requirements for critical systems to have correct and consistent time?
  • Question 8

    Which systems must have anti-malware solutions?
  • Question 9

    An organization wishes to implement multi-factor authentication for remote access, using the user's Individual password and a digital certificate. Which of the following scenarios would meet PCI DSS requirements for multi-factor authentication?
  • Question 10

    Which of the following file types must be monitored by a change-detection mechanism (for example, a file- integrity monitoring tool)?