Skip to main content

πŸ’Ό 12.8.2 Maintain a written agreement that includes an acknowledgement that the service providers are responsible for the security of cardholder data the service providers possess or otherwise store, process or transmit on behalf of the customer, or to the extent that they could impact the security of the customer's cardholder data environment.

Description​

The exact wording of an acknowledgement will depend on the agreement between the two parties, the details of the service being provided, and the responsibilities assigned to each party. The acknowledgement does not have to include the exact wording provided in this requirement.

Similar​

  • Sections
    • /frameworks/pci-dss-v4.0/12/08/02
  • Internal
    • ID: dec-c-cbf8c993

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 12.8.2 Written agreements with TPSPs are maintained.

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 12.8.2 Written agreements with TPSPs are maintained.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags