Payment Card Industry Data Security Standard
PCI Security Standards Council, founded by Visa, Mastercard, American Express, Discover, and JCB
To reduce credit card fraud by giving every business that touches payment card data a common set of technical and operational security requirements, rather than leaving each card brand to set its own rules.
Any entity that stores, processes, or transmits cardholder data, retailers, e-commerce platforms, payment processors, and SaaS products that handle card payments on their customers' behalf.
Current version is v4.0.1. Since March 31, 2025, the requirements that were originally published as future-dated best practices in v4.0 (March 2022) are now fully mandatory in every assessment.
PCI Security Standards CouncilKloudSec, built by the team behind Toc Consulting
What you just read is a manual, one-time check. KloudSec runs this and 400+ more automated checks across 90+ AWS services, continuously, agentless, live in about 5 minutes.