{"id":4215,"date":"2022-04-20T19:59:14","date_gmt":"2022-04-20T19:59:14","guid":{"rendered":"https:\/\/iqcol.com\/?p=4215"},"modified":"2024-02-28T13:37:40","modified_gmt":"2024-02-28T18:37:40","slug":"whats-new-in-pci-dss-v-4-0","status":"publish","type":"post","link":"https:\/\/iqcol.com\/en\/whats-new-in-pci-dss-v-4-0\/","title":{"rendered":"What&#8217;s new in PCI DSS V 4.0?"},"content":{"rendered":"<p><strong>What is the PCI Data Security Standard?<\/strong><\/p>\n<p>The PCI Data Security Standard (PCI DSS) is a global standard that provides a foundation of technical and operational requirements designed to protect payment data.\u00a0 PCI DSS v 4.0 is the next evolution of the standard.<\/p>\n<p><strong>What are the Objectives of PCI DSS v 4.0?<\/strong><\/p>\n<p>1.Continue to meet the security needs of the payment industry.<\/p>\n<p>2.Promote security as a continuous process<\/p>\n<p>3.Add flexibility for different methodologies<\/p>\n<p>4.Improve validation methods<\/p>\n<p><strong>What is the schedule for PCI DSS V 4.0 implementation?<\/strong><\/p>\n<p><img fetchpriority=\"high\" decoding=\"async\" class=\"wp-image-4216\" src=\"https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION-300x225.png\" alt=\"PCI DSS V 4.0 TRANSITION\" width=\"813\" height=\"610\" title=\"\" srcset=\"https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION-300x225.png 300w, https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION-768x576.png 768w, https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION-440x330.png 440w, https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION-240x180.png 240w, https:\/\/iqcol.com\/wp-content\/uploads\/2022\/04\/PCI-DSS-V-4.0-TRANSITION.png 1024w\" sizes=\"(max-width: 813px) 100vw, 813px\" \/><\/p>\n<p><strong>What&#8217;s new in PCI DSS v4.0?<\/strong><\/p>\n<p>Many changes have been incorporated into the latest version of the Standard. Below are examples of some of these changes:<\/p>\n<p><strong>1.Continue to meet the security needs of the payments industry.<\/strong><\/p>\n<p><strong>Why is this important? <\/strong><em>Security practices must evolve as threats change.<\/em><\/p>\n<p>Examples:<\/p>\n<p>&#8211; Expanding multi-factor authentication requirements.<\/p>\n<p>&#8211; Updated password requirements.<\/p>\n<p>&#8211; New requirements for e-commerce and phishing to address current threats.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>2.Promote security as an ongoing process.<\/strong><\/p>\n<p><strong>Why is it important? <\/strong><em>Criminals never sleep. Continuous security is crucial to protect payment data.<\/em><\/p>\n<p><strong>Examples:<\/strong><\/p>\n<p>&#8211; Clear assignment of roles and responsibilities for each requirement.<\/p>\n<p>&#8211; Guidance has been added to help better understand how to implement and maintain security.<\/p>\n<p>&#8211; New reporting option to highlight areas for improvement and provide more transparency to report reviewers.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>3.Increased flexibility for organizations using different methods to achieve security objectives.<\/strong><\/p>\n<p><strong>Why is this important? <\/strong><em>Greater flexibility allows more options to achieve a requirement&#8217;s objective and supports payment technology innovation.<\/em><\/p>\n<p>Examples:<\/p>\n<p>&#8211; Allowing group, shared and generic accounts.<\/p>\n<p>&#8211; Specific risk analyses allow organizations to set frequencies for performing certain activities.<\/p>\n<p>&#8211; The customized approach, a new method for implementing and validating PCI DSS requirements, provides another option for organizations using innovative methods to achieve security objectives.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>4.Improve validation methods and procedures.<\/strong><\/p>\n<p><strong>Why is this important? <\/strong><em>Clear validation and reporting options support transparency and granularity.<\/em><\/p>\n<p>Example:<\/p>\n<p>&#8211; Increased alignment between the information reported in a Compliance Report or Self-Assessment Questionnaire and the information summarized in a Certificate of Compliance.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: center;\"><em>For a complete overview, you can refer to the summary of changes from PCI DSS v3.2.1 to v4.0, which can be found in the PCI SSC document library.<\/em><\/p>\n<p><strong>\u00a0<\/strong><\/p>\n<p><strong>\u00a0<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>","protected":false},"excerpt":{"rendered":"<p>What is the PCI Data Security Standard? The PCI Data Security Standard (PCI DSS) is a global standard that provides a foundation of technical and operational requirements designed to protect payment data.\u00a0 PCI DSS v 4.0 is the next evolution of the standard. What are the Objectives of PCI DSS v 4.0? 1.Continue to meet [&hellip;]<\/p>","protected":false},"author":2,"featured_media":4214,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"image","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-4215","post","type-post","status-publish","format-image","has-post-thumbnail","hentry","category-noticias","post_format-post-format-image"],"blocksy_meta":[],"_links":{"self":[{"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/posts\/4215","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/comments?post=4215"}],"version-history":[{"count":0,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/posts\/4215\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/media\/4214"}],"wp:attachment":[{"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/media?parent=4215"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/categories?post=4215"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/iqcol.com\/en\/wp-json\/wp\/v2\/tags?post=4215"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}