Skip to content
Compliance Framework

PCI-DSS

Payment Card Industry Data Security Standard

The information security standard for organizations that handle branded credit cards. PCI-DSS v4.0 introduces 64 new requirements with a focus on continuous security.

Overview

PCI-DSS v4.0 contains 12 principal requirements organized into 6 goals. The standard applies to any entity that stores, processes, or transmits cardholder data and emphasizes a customized approach to security.

Key Requirements

01

Build & Maintain Secure Networks

Install and maintain network security controls, apply secure configurations to all system components.

02

Protect Account Data

Protect stored account data with encryption, mask PAN when displayed, protect cardholder data in transit.

03

Vulnerability Management

Protect systems against malware, develop and maintain secure systems and software.

04

Access Control & Monitoring

Restrict access by business need, identify users, restrict physical access, log and monitor all access.

How iQ Pulse
automates PCI-DSS

Cardholder data environment scoping

Automatically identify systems in your CDE and validate that segmentation controls are properly documented.

Requirement tracking

Track all 12 PCI-DSS requirements with real-time compliance scoring and evidence freshness monitoring.

SAQ generation

Generate Self-Assessment Questionnaires automatically from your documented controls and evidence.

Other Frameworks

Get PCI-DSS compliant
faster.

Upload your policies, connect your systems, and let iQ Pulse map your controls to PCI-DSS requirements automatically. Audit-ready in weeks, not months.