What does CDE stand for in PCI DSS?
- A.Cardholder Data Environment-the people, processes, and technology that store, process, or transmit cardholder data or sensitive authentication data
- B.Cybersecurity Defense Enclave, which the SSC's prioritized approach places in its final milestone, making it the last obligation an entity must meet
- C.Compliance Documentation Entity, which the card brands' compliance programs accept as a standing waiver from annual validation, renewable by letter whenever the entity's transaction volume stays within five percent of the prior year
- D.Centralized Data Exchange
Why A is correct
CDE stands for Cardholder Data Environment, encompassing all system components, people, and processes involved in storing, processing, or transmitting cardholder data and sensitive authentication data.
Know someone studying for PCI DSS? Send them this one.