ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 9 - 212-82 discussion

Report
Export

Ayden works from home on his company's laptop. During working hours, he received an antivirus software update notification on his laptop. Ayden clicked on the update button; however, the system restricted the update and displayed a message stating that the update could only be performed by authorized personnel. Which of the following PCI-DSS requirements is demonstrated In this scenario?

A.
PCI-DSS requirement no 53
Answers
A.
PCI-DSS requirement no 53
B.
PCI-DSS requirement no 1.3.1
Answers
B.
PCI-DSS requirement no 1.3.1
C.
PCI-DSS requirement no 5.1
Answers
C.
PCI-DSS requirement no 5.1
D.
PCI-DSS requirement no 1.3.2
Answers
D.
PCI-DSS requirement no 1.3.2
Suggested answer: A

Explanation:

PCI-DSS requirement no 5.3 is the PCI-DSS requirement that is demonstrated in this scenario. PCI-DSS (Payment Card Industry Data Security Standard) is a set of standards that applies to entities that store, process, or transmit payment card information, such as merchants, service providers, or payment processors. PCI-DSS requires them to protect cardholder data from unauthorized access, use, or disclosure. PCI-DSS consists of 12 requirements that are grouped into six categories: build and maintain a secure network and systems, protect cardholder data, maintain a vulnerability management program, implement strong access control measures, regularly monitor and test networks, and maintain an information security policy. PCI-DSS requirement no 5.3 is part of the category "maintain a vulnerability management program" and states that antivirus mechanisms must be actively running and cannot be disabled or altered by users, unless specifically authorized by management on a case-by-case basis for a limited time period. In the scenario, Ayden works from home on his company's laptop. During working hours, he received an antivirus software update notification on his laptop. Ayden clicked on the update button; however, the system restricted the update and displayed a message stating that the update could only be performed by authorized personnel. This means that his company's laptop has an antivirus mechanism that is actively running and cannot be disabled or altered by users, which demonstrates PCI-DSS requirement no 5.3.

asked 18/09/2024
Prashant Bari
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first