Skip to main content

πŸ’Ό 12.10.7 Incident response procedures are in place, to be initiated upon the detection of stored PAN anywhere it is not expected.

Description​

Include:

  • Determining what to do if PAN is discovered outside the CDE, including its retrieval, secure deletion, and/or migration into the currently defined CDE, as applicable.
  • Identifying whether sensitive authentication data is stored with PAN.
  • Determining where the account data came from and how it ended up where it was not expected.
  • Remediating data leaks or process gaps that resulted in the account data being where it was not expected.

Similar​

  • Sections
    • /frameworks/pci-dss-v4.0/12/10/07

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 12.10.7 Incident response procedures are in place, to be initiated upon the detection of stored PAN anywhere it is not expected.

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 12.10.7 Incident response procedures are in place, to be initiated upon the detection of stored PAN anywhere it is not expected.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags