Skip to content
ContractualPCI SSCInternationalv4.0

PCI DSS

PCI DSS v4.0

The payment-card industry's security standard for protecting cardholder data, structured into 12 core requirements across six control objectives.

Official source ↗

Who it applies to

Card paymentsGlobalHandles cardholder data

Any organization worldwide that stores, processes or transmits payment card data, and any entity that can affect the security of cardholder data. Enforced by the card brands through acquiring banks, not by law.

Build and maintain a secure network

Protect account data

Implement strong access control

Regularly monitor and test networks

Maintain an information security policy