Skip to main content

๐Ÿ’ผ 9.5.1 POI devices that capture payment card data via direct physical interaction with the payment card form factor are protected from tampering and unauthorized substitution.

Descriptionโ€‹

Including the following:

  • Maintaining a list of POI devices.
  • Periodically inspecting POI devices to look for tampering or unauthorized substitution.
  • Training personnel to be aware of suspicious behavior and to report tampering or unauthorized substitution of devices.

Similarโ€‹

  • Sections
    • /frameworks/pci-dss-v4.0/09/05/01

Similar Sections (Take Policies From)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ PCI DSS v4.0 โ†’ ๐Ÿ’ผ 9.5.1 POI devices that capture payment card data via direct physical interaction with the payment card form factor are protected from tampering and unauthorized substitution.3

Similar Sections (Give Policies To)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ PCI DSS v4.0 โ†’ ๐Ÿ’ผ 9.5.1 POI devices that capture payment card data via direct physical interaction with the payment card form factor are protected from tampering and unauthorized substitution.3

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ 9.5.1.1 An up-to-date list of POI devices is maintained.
๐Ÿ’ผ 9.5.1.2 POI device surfaces are periodically inspected to detect tampering and unauthorized substitution.1
ย ย ย ย ๐Ÿ’ผ 9.5.1.2.1 The frequency of periodic POI device inspections and the type of inspections performed is defined in the entity's targeted risk analysis.
๐Ÿ’ผ 9.5.1.3 Training is provided for personnel in POI environments to be aware of attempted tampering or replacement of POI devices.