PCI SSC Qualified Security Assessor V4 Exam QSA_New_V4 Question # 6 Topic 1 Discussion

PCI SSC Qualified Security Assessor V4 Exam QSA_New_V4 Question # 6 Topic 1 Discussion

QSA_New_V4 Exam Topic 1 Question 6 Discussion:
Question #: 6
Topic #: 1

Where an entity under assessment is using the customized approach, which of the following steps is the responsibility of the assessor?


A.

Monitor the control.


B.

Derive testing procedures and document them in Appendix E of the ROC.


C.

Document and maintain evidence about each customized control as defined in Appendix E of PCI DSS.


D.

Perform the targeted risk analysis as per PCI DSS requirement 12.3.2.


Get Premium QSA_New_V4 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.