ACTUAL QUESTIONS AND CORRECT
ANSWERS
In a typical payment transaction, the merchants bank is known as the __________? -
CORRECT ANSWER Acquirer
T/F: Service Providers may also be reffered to as a Third Party Service provider (TPSP) -
CORRECT ANSWER True
T/F: Service Providers may handle senstive cardholder data as part of the services they
provide. - CORRECT ANSWER True
T/F: Service Providers are typically NOT involved in the storage, transsmisson, or processing
of payment data. - CORRECT ANSWER False
What is the name of the method of collecting cardholder data be attaching small hardware
devices to point of sale terminals - CORRECT ANSWER Physical Skimming
A card verifiaction code is an example of what type of account data - CORRECT
ANSWER Sensitive Authentication Data
The PCI DSS is intended for all entities that _________ payment account data - CORRECT
ANSWER store, porcess, or transmit
In addition to the PCI DSS, which of the following are standards developed and maintained
by the PCI SSC? - CORRECT ANSWER PIN Transaction Security, Point-to-point
encryption, Secure software standard
It is the responsibility of the PCI SSC to determine if an organization is PCI-compliant -
CORRECT ANSWER False