Under active development Content is continuously updated and improved

7.2.5All application and system accounts and related access privileges are assigned and managed as follows: Based on the least privileges necessary for the operability of the system or application.

>Requirement Description

All application and system accounts and related access privileges are assigned and managed as follows: Based on the least privileges necessary for the operability of the system or application. Access is limited to the systems, applications, or processes that specifically require their use. Applicability Notes This requirement is a best practice until 31 March 2025, after which it will be required and must be fully considered during a PCI DSS assessment.

>Cross-Framework Mappings

Ask AI

Configure your API key to use AI features.