An online retail business directly processes customer credit card transactions and stores cardholder account information. Which of the following regulatory compliance standards specifically mandates security controls for safeguarding this payment card data?
- Payment Card Industry Data Security Standard (PCI-DSS)Answer
- BHealth Insurance Portability and Accountability Act (HIPAA)
- CSarbanes-Oxley Act (SOX)
- DFederal Information Security Modernization Act (FISMA)
Answer
Payment Card Industry Data Security Standard (PCI-DSS)
The Payment Card Industry Data Security Standard (PCI-DSS) is an information security standard designed to ensure that all companies that process, store, or transmit credit card information maintain a secure environment.
Step-by-Step Solution
Key Concept
Regulatory Compliance and Legal Requirements Management