Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

What is the difference between performing PCI certified quarterly external network scan and compliance with the DSS?

0
10 Posted

What is the difference between performing PCI certified quarterly external network scan and compliance with the DSS?

0
10

The DSS is a standard that outlines a number of requirements that all merchants and service providers must comply with. A quarterly network PCI scan is one of the actions that must be taken to fulfill Requirement 11 of the DSS. This PCI scan must be conducted by a PCI certified Authorized Scanning Vendor (ASV) and will result in a PCI scan report indicating whether an organization’s internet-facing resources are properly secured. If the ASV locates serious vulnerabilities on internet-facing systems, then the scanning report will state that the organization is not compliant. The organization will then have to take corrective actions and have their network re-scanned until they are found to be compliant by the ASV.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123