Skip to main content

💼 9.3.2 Procedures are implemented for authorizing and managing visitor access to the CDE.

Description​

Including:

  • Visitors are authorized before entering.
  • Visitors are escorted at all times.
  • Visitors are clearly identified and given a badge or other identification that expires.
  • Visitor badges or other identification visibly distinguishes visitors from personnel.

Similar​

  • Sections
    • /frameworks/pci-dss-v3.2.1/09/04
    • /frameworks/pci-dss-v3.2.1/09/04/01
    • /frameworks/pci-dss-v3.2.1/09/04/02
    • /frameworks/pci-dss-v4.0.1/09/03/02
  • Internal
    • ID: dec-c-117064e2

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 PCI DSS v3.2.1 → 💼 9.4 Implement procedures to identify and authorize visitors.4
💼 PCI DSS v3.2.1 → 💼 9.4.1 Visitors are authorized before entering, and escorted at all times within, areas where cardholder data is processed or maintained.
💼 PCI DSS v3.2.1 → 💼 9.4.2 Visitors are identified and given a badge or other identification that expires and that visibly distinguishes the visitors from onsite personnel.
💼 PCI DSS v4.0.1 → 💼 9.3.2 Procedures are implemented for authorizing and managing visitor access to the CDE.

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 PCI DSS v3.2.1 → 💼 9.4 Implement procedures to identify and authorize visitors.4
💼 PCI DSS v3.2.1 → 💼 9.4.1 Visitors are authorized before entering, and escorted at all times within, areas where cardholder data is processed or maintained.
💼 PCI DSS v3.2.1 → 💼 9.4.2 Visitors are identified and given a badge or other identification that expires and that visibly distinguishes the visitors from onsite personnel.
💼 PCI DSS v4.0.1 → 💼 9.3.2 Procedures are implemented for authorizing and managing visitor access to the CDE.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags