12.8.4—A program is implemented to monitor TPSPs’ PCI DSS compliance status at least once every 12 months.
>Requirement Description
A program is implemented to monitor TPSPs’ PCI DSS compliance status at least once every 12 months. Applicability Notes Where an entity has an agreement with a TPSP for meeting PCI DSS requirements on behalf of the entity (for example, via a firewall service), the entity must work with the TPSP to make sure the applicable PCI DSS requirements are met. If the TPSP does not meet those applicable PCI DSS requirements, then those requirements are also “not in place” for the entity.
>Cross-Framework Mappings
Ask AI
Configure your API key to use AI features.