Chapter 7

Scoping for PCI Compliance

Scope is a very important aspect of a PCI-compliance project. PCI compliance is a technically rigorous standard that requires a great deal of focus and implementation. If an organization undertakes PCI compliance with a poor understanding of scope, then the compliance effort would potentially be misguided and incomplete.

In this chapter, we will focus our energies toward learning the first and most important aspect of PCI compliance: scoping. We will understand the fundamental need for scoping a PCI environment. We will also delve into the cardholder-data environment, referring to the environment on which PCI-DSS (Payment Card Industry Data Security Standard) controls are implemented and applicable. We will ...

Get PCI Compliance now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.