What is an annual Self-Assessment Questionnaire (SAQ)?
The PCI Data Security Standard Self-Assessment Questionnaire (SAQ) is a validation tool intended to assist merchants in self-evaluating their compliance with the PCI DSS It is for merchants who are not required to undergo an on-site data security assessment The SAQ includes a series of yes-or-no questions for compliance. If an answer is no, the merchant must state the future remediation date and associated actions There are 4 different SAQs you can use (A,B,C or D) depending on the type of merchant: SAQ A – 11 questions + Attestation of Compliance (AOC) SAQ B – 21 questions + Attestation of Compliance (AOC) SAQ C – 38 questions + Attestation of Compliance (AOC) SAQ D – 226 questions + Attestation of Compliance (AOC) • Your SAQ must be validated by a QSA (signed certificate of validation) at the UBC Merchant’s cost; QSA to use: TBA • To find out which SAQ(s) apply to you, go to: https://www.pcisecuritystandards.org/saq/instructions_dss.shtml#instructions How can I find out more about Se