💼 12.3.4 Hardware and software technologies in use are reviewed at least once every 12 months.
- ID:
/frameworks/pci-dss-v4.0/12/03/04
Description
Including at least the following:
- Analysis that the technologies continue to receive security fixes from
vendors promptly.
- Analysis that the technologies continue to support (and do not preclude)
the entity's PCI DSS compliance.
- Documentation of any industry announcements or trends related to a technology,
such as when a vendor has announced “end of life” plans for a technology.
- Documentation of a plan, approved by senior management, to remediate outdated
technologies, including those for which vendors have announced “end of life” plans.
Similar
- Sections
/frameworks/pci-dss-v4.0.1/12/03/04
- Internal
Similar Sections (Take Policies From)
Similar Sections (Give Policies To)
Sub Sections
Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
---|