Skip to main content

๐Ÿ’ผ 7.2 Establish an access control system(s) for systems components that restricts access based on a user's need to know, and is set to โ€œdeny allโ€ unless specifically allowed.

  • Contextual name: ๐Ÿ’ผ 7.2 Establish an access control system(s) for systems components that restricts access based on a user's need to know, and is set to โ€œdeny allโ€ unless specifically allowed.

  • ID: /frameworks/pci-dss-v3.2.1/07/02

  • Located in: ๐Ÿ’ผ 7 Restrict access to cardholder data by business need to know

Descriptionโ€‹

Empty...

Similarโ€‹

  • Internal
    • ID: dec-c-9e2d6752

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ 7.2.1 Coverage of all system components.5
๐Ÿ’ผ 7.2.2 Assignment of privileges to individuals based on job classification and function.
๐Ÿ’ผ 7.2.3 Default โ€œdeny-allโ€ setting.