Chapter 18

Requirement 11

Security Testing for the PCI Environment

One of the primary methods to measure the effectiveness of security controls in an environment is to perform security testing against the infrastructure components within that environment. An organization undergoing or maintaining PCI compliance must perform specific security testing against the various infrastructure components in the PCI environment. We begin the chapter with some techniques to be used to meet the PCI requirement of detecting rogue wireless access points.

We will discuss the security testing requirements for the PCI-DSS. I will describe some good practices to perform vulnerability assessments against the organization’s PCI environment. We will also understand ...

Get PCI Compliance now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.