The PCI DSS (Payment Card Industry Data Security Standard) is a multifaceted security standard that includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures.
All companies performing any kind of credit cards transactions are subject to this standard. The idea is to reduce commercial businesses efforts, which sometimes has to comply with several different standards, as well as those required by credit card companies, which have since then been able to share control and training efforts.
Risk Manager can easily verify compliance with PCI-DSS specialty for large organizations consolidating information from several locations and supporting multiple assessments simultaneity. Risk Manager Knowledge Base provides detailed explanation about how to test each PCI requirement.