Requirement 3 Flashcards

1
Q

What is requirement 3?

A

Protect stored account data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Storage of account data is kept to

A

A minimum —– the more you store the more you have to protect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What kind of data is not stored after authorization?

A

Sensitive Authentication Data (SAD)

(including card validation codes/values, (CVCs/CVVs), full track data — from the magnetic stripe or equivalent on a chip PINs, etc)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is PAN?

A

Primary Account Number

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What should be done to PAN when it is stored?

A

It (PAN) needs to be secured

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What cannot be displayed in full nor copied?

A

PAN and cardholder data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are used to protect stored account data?

A

Cryptographic keys – these need to be secured

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

In regard to cryptographic keys for stored account data, what needs to be defined and implemented?

A

Key management processes and procedures for the entire key lifecycle

How well did you know this?
1
Not at all
2
3
4
5
Perfectly