Original Source: Reciprocity WRITTEN BY KAREN WALSH
“PCI DSS compliance comes with over 100 pages of requirements. However, the Appendices offer ways to think about how you can limit your risks. Limiting risk includes being able to limit your scope as well. Compensating controls help you be compliant with PCI DSS requirements when you do not have the architecture to meet a requirement.
That sounds confusing because it is. Getting started with PCI DSS compliance seems overwhelming because although it is prescriptive, meeting the specifications of the requirements is not as straightforward as it seems….”
Contributors: Open SourceCategories: Industry Articles, SIG U Resource
SRC Type: Risk Management, Sourcing Management, Third Party Management