Skip to main content

πŸ’Ό 6.5.1 Changes to all system components in the production environment are made according to established procedures.

Description​

That include:

  • Reason for, and description of, the change.
  • Documentation of security impact.
  • Documented change approval by authorized parties.
  • Testing to verify that the change does not adversely impact system security.
  • For bespoke and custom software changes, all updates are tested for compliance with Requirement 6.2.4 before being deployed into production.
  • Procedures to address failures and return to a secure state.

Similar​

  • Sections
    • /frameworks/pci-dss-v4.0/06/05/01

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 6.5.1 Changes to all system components in the production environment are made according to established procedures.

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 6.5.1 Changes to all system components in the production environment are made according to established procedures.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags