Which statement about the Attestation of Compliance (AOC) is correct?
Attestation of Compliance (AOC):
The AOC is a document that confirms an entity's compliance with PCI DSS requirements. It is signed by the entity (merchant or service provider) and the Qualified Security Assessor (QSA) if a QSA is involved.
Different AOC Templates:
PCI DSS provides distinct templates for service providers and merchants, tailored to their respective roles and responsibilities within the cardholder data environment (CDE).
Invalid Options:
B: PCI SSC does not sign AOCs; they are signed by the merchant/service provider and the QSA.
C: AOCs differ between ROCs and SAQs, so the same template is not universally used.
D: Both the merchant/service provider and the QSA/ISA (Internal Security Assessor) must sign the AOC when applicable.
Alica
4 months agoBelen
4 months agoRamonita
4 months agoCarin
4 months agoMarla
4 months agoJavier
5 months agoQuiana
5 months agoKent
5 months agoKatheryn
5 months agoCassi
5 months agoCammy
5 months agoLajuana
5 months agoDannie
5 months agoCaren
1 year agoBeatriz
1 year agoCaren
1 year agoSheron
1 year agoAdolph
1 year agoRosann
1 year agoHester
1 year agoLuis
1 year agoHershel
12 months agoLeonard
1 year agoNieves
1 year agoEladia
1 year agoGianna
1 year agoLeota
1 year agoMeaghan
1 year ago