Defining and Understanding Compensating Controls

Defining and Understanding Compensating Controls

The SIG Resource Center is moving to The SIG Community. If you are a SIG Member, or enrolled in SIG University, and don’t have access yet, you can do so here. Already have access? Log in and visit the new SIG Resource Center.

Original Source: Reciprocity WRITTEN BY KAREN WALSH

“PCI DSS compliance comes with over 100 pages of requirements. However, the Appendices offer ways to think about how you can limit your risks. Limiting risk includes being able to limit your scope as well. Compensating controls help you be compliant with PCI DSS requirements when you do not have the architecture to meet a requirement.

That sounds confusing because it is. Getting started with PCI DSS compliance seems overwhelming because although it is prescriptive, meeting the specifications of the requirements is not as straightforward as it seems….”

Contributors:
Categories: ,
SRC Type: , ,

Please log in to download the document.

Please log in to view the video.