CARD DATA SECURITY STANDARDS REVIEW
SHEET FULL SOLUTIONS
◉ SSH. Answer: Secure service, protocol, or daemon
◉ Sensitive Authentication Data. Answer: Includes CVV, Full Track
Data, PIN
◉ PAN Masking. Answer: Masks digits between first six and last four
◉ PAN Protection. Answer: Must be unreadable during transmission
over networks
◉ Hashing for PAN. Answer: Encrypts PAN using strong
cryptography
◉ Split Knowledge. Answer: Required for keys stored on production
systems
◉ Least Privilege. Answer: Granting minimal user access in CDE
, ◉ SHA-2. Answer: National Security Agency's cryptographic hash
functions
◉ Visitor Access. Answer: Visitors must be escorted in sensitive
areas
◉ Key Protection. Answer: Restrictions on key access and storage
◉ Cryptographic Architecture Description. Answer: Details of
algorithms, keys, and HSMs used
◉ DESV Requirements. Answer: PCI DSS Compliance program
implementation
◉ Track 1 Data. Answer: Contains all fields of Track 1 and 2
◉ Track 2 Data. Answer: Provides faster processing for dial-up
transmissions
◉ DESV. Answer: Designated Entities Supplemental Validation
◉ Pre-Assessment Activities. Answer: Assessor's preparation for
assessment