PCI DSS requires which of the following as part of the penetration-testing process?
The penetration tester must have cybersecurity certifications.
The network must be segmented.
Only externally facing systems should be tested.
The assessment must be performed during non-working hours.
Submit