The management course is also suitable for those who need to acquire more comprehensive and practical knowledge of all PCI DSS requirements.
You will spend most of it on positions
IT, Project
Operation, Development
and others involved in PCI DSS compliance
Graduates of the course will understand the principles of the PCI DSS system from the perspective of data protection within payment systems.
Thanks to the course, you will be able to help your organization create internal procedures, processes and implement measures leading to PCI DSS Compliance.
You will be able to prepare for SAQ or QSA. No prior knowledge and experience in the field of PCI DSS is necessary.
Graduates of the course will receive a PCI DSS Assessor Certificate.
As part of the certification process, they must demonstrate knowledge and understanding of the Payment Card Industry Data Security Standard (PCI DSS) and its practical application. The exam tests the ability to assess environments in which payment cardholder data is processed, stored, or transmitted, and to provide recommendations for achieving and maintaining compliance with PCI DSS requirements.
The exam topics are:
PCI DSS principles and requirements
Security objectives and requirements (12 main areas of PCI DSS)
Roles of entities in the payment ecosystem (merchant, acquirer, issuer, service provider)
Types of SAQs (Self-Assessment Questionnaires) and their use
Roles and responsibilities of PCI DSS assessors (QSA, ISA, ASV, QIR)
Compliance assessment process and evidence of compliance
Network segmentation, access control, monitoring, and testing
Risks of non-compliance and possible consequences of violations (fines, reputational impact)
Duration: 90 minutes
Number of questions: 40
Minimum pass mark: 60%
Language: English
Type of questions: multiple choice (1 correct answer)
Additional conditions: closed book – no materials may be used
The Payment Card Industry Data Security Standard (PCI DSS) is a security standard developed by the Payment Card Industry Security Standards Council to protect sensitive payment card information during transactions and storage.
PCI DSS sets out payment card protection requirements that merchants, banks, payment gateways and anyone else who processes, stores or transmits payment card data must comply with. These requirements include, for example, the implementation of security measures such as data encryption, regular monitoring of the network and systems, restriction of access to sensitive information, regular testing of security systems and others.