[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-seo-242339-105":3,"detail-sidebar-cat-1-en-105":80,"doc-detail-242339-en":126},{"code":4,"msg":5,"data":6},0,"ok",{"site_id":7,"language":8,"slug":9,"title":10,"keywords":11,"description":12,"schema_data":13,"social_meta":73,"head_meta":75,"extra_data":77,"updated_unix":79},105,"en","pci-data-security-standard-pci-dss-v1-large-organizations","PCI Data Security Standard (PCI DSS) - v1 - Large Organizations","","PCI DSS for Large Organizations provides guidance for applying the PCI Data Security Standard within organizations that have complex structures, multiple stakeholders, and varied payment relationships. It covers roles and ownership, planning PCI DSS assessments, managing mergers and acquisitions, coordinating multiple acquirers and payment channels, and handling multiple audits and compliance cycles. The document also details education and awareness practices, and operational controls such as asset management, system hardening, access control, vulnerability assessment, and patch management.",{"@graph":14,"@context":72},[15,34,55],{"@type":16,"itemListElement":17},"BreadcrumbList",[18,23,27,31],{"item":19,"name":20,"@type":21,"position":22},"https://docshare.wps.com","Home","ListItem",1,{"item":24,"name":25,"@type":21,"position":26},"https://docshare.wps.com/template/","Template",2,{"item":28,"name":29,"@type":21,"position":30},"https://docshare.wps.com/template/general/","General",3,{"item":32,"name":10,"@type":21,"position":33},"https://docshare.wps.com/template/pci-data-security-standard-pci-dss-v1-large-organizations/242339/",4,{"url":32,"name":10,"@type":35,"image":36,"author":41,"headline":10,"publisher":44,"fileFormat":47,"inLanguage":8,"description":12,"dateModified":48,"datePublished":49,"encodingFormat":47,"isAccessibleForFree":50,"interactionStatistic":51},"DigitalDocument",{"url":37,"@type":38,"width":39,"height":40},"https://docshare.wps.com/thumbnails/pci-data-security-standard-pci-dss-v1-large-organizations/242339.png","ImageObject",442,249,{"name":42,"@type":43},"wps_ap_test_251126_0180","Person",{"url":19,"name":45,"@type":46},"DocShare","Organization","application/pdf","2026-09-20","2026-09-12",true,{"@type":52,"interactionType":53,"userInteractionCount":26},"InteractionCounter",{"@type":54},"ViewAction",{"@type":56,"mainEntity":57},"FAQPage",[58,64,68],{"name":59,"@type":60,"acceptedAnswer":61},"Who is the guidance intended for when applying PCI DSS in large organizations?","Question",{"text":62,"@type":63},"The document targets organizations that apply PCI DSS in environments with complex ownership, responsibilities, and payment relationships. It also addresses internal groups involved in assessments, training, and operational security management.","Answer",{"name":65,"@type":60,"acceptedAnswer":66},"How does the document address mergers and acquisitions under PCI DSS?",{"text":67,"@type":63},"It explains how to handle pre-purchase due diligence and how to integrate existing compliance into the acquiring organization. The focus is on maintaining PCI DSS alignment during change.",{"name":69,"@type":60,"acceptedAnswer":70},"What systems and processes are covered to maintain PCI DSS compliance over time?",{"text":71,"@type":63},"It outlines ongoing controls including asset management, system hardening, access control, vulnerability assessments, and patch management to sustain compliance between assessments.","https://schema.org",{"og:url":32,"og:type":74,"og:title":10,"og:site_name":45,"og:description":12},"article",{"robots":76,"canonical":32},"index,follow",{"doc_id":78,"site_id":7},242339,1789189397,{"code":4,"msg":81,"data":82},"success",[83,88,93,98,103,108,113,118,123],{"id":84,"doc_module":22,"doc_module_name":25,"category_name":85,"show_sort_weight":86,"slug":87},11,"Presentations",90,"presentations",{"id":89,"doc_module":22,"doc_module_name":25,"category_name":90,"show_sort_weight":91,"slug":92},12,"Resumes",80,"resumes",{"id":94,"doc_module":22,"doc_module_name":25,"category_name":95,"show_sort_weight":96,"slug":97},14,"Invoices",70,"invoices",{"id":99,"doc_module":22,"doc_module_name":25,"category_name":100,"show_sort_weight":101,"slug":102},15,"Posters",60,"posters",{"id":104,"doc_module":22,"doc_module_name":25,"category_name":105,"show_sort_weight":106,"slug":107},16,"Social Media",50,"social-media",{"id":109,"doc_module":22,"doc_module_name":25,"category_name":110,"show_sort_weight":111,"slug":112},17,"Forms",40,"forms",{"id":114,"doc_module":22,"doc_module_name":25,"category_name":115,"show_sort_weight":116,"slug":117},18,"Letters",30,"letters",{"id":119,"doc_module":22,"doc_module_name":25,"category_name":120,"show_sort_weight":121,"slug":122},21,"Paper Templates",5,"papers-templates",{"id":124,"doc_module":22,"doc_module_name":25,"category_name":29,"show_sort_weight":4,"slug":125},158,"general-158",{"code":4,"msg":81,"data":127},{"doc_id":78,"user_id":128,"nickname":42,"user_avatar":129,"doc_module":22,"category_id":124,"category_name":29,"doc_title":10,"doc_description":12,"doc_content":130,"file_id":131,"file_url":132,"file_type":133,"file_size":134,"view_count":26,"is_deleted":4,"is_public":22,"is_downloadable":22,"audit_status":22,"page_count":135,"language":136,"language_code":8,"site_id":7,"html_lang":8,"table_of_contents":137,"faqs":138,"seo_title":139,"seo_description":12,"update_tm":79,"read_time":140},8796095027276,"https://avatar.qwps.com/avatar/d3BzX2FwX3Rlc3RfMjUxMTI2XzAxODA=","Standard: PCI Data Security Standard (PCI DSS)  \nDate: February 2020  \nAuthor: PCI DSS for Large Organizations Special Interest Group PCI Security Standards Council  \nInformation Supplement:  \nPCI DSS for Large Organizations  \nDocument Changes  \n\n| Date | Version | Description |\n| --- | --- | --- |\n| February 2020 | 1.0 | Initial release. |\n\nTable of Contents  \n1 Executive Summary........................................................................................................................................... 4  \n2 Introduction ........................................................................................................................................................ 5  \n2.1 Audience ....................................................................................................................................................... 5  \n2.2 Navigating this Document ............................................................................................................................. 5  \n2.3 Terminology................................................................................................................................................... 6  \n3 Characteristics of Large Organizations .......................................................................................................... 7  \n4 Roles, Responsibilities, and Ownership ......................................................................................................... 8  \n4.1 Determining Roles, Responsibilities, and Ownership ................................................................................... 8  \n4.2 Documenting Ownership, Roles, and Responsibilities ............................................................................... 10  \n4.3 Responsibilities in Planning PCI DSS Assessments .................................................................................. 11  \n5 Mergers and Acquisitions ............................................................................................................................... 13  \n5.1 Pre-purchase and Due Diligence ................................................................................................................ 13  \n5.2 Existing Compliance and Integration .......................................................................................................... 13  \n6 Multiple Acquirers and Payment Channels................................................................................................... 15  \n6.1 Acquirer Relationships ................................................................................................................................ 15  \n6.2 Compliance Agreements and Expectations ................................................................................................ 15  \n6.3 Reporting Multiple Payment Channels ........................................................................................................ 15  \n6.4 Example of Multiple Acquirers and Payment Channels .............................................................................. 16  \n7 Multiple Audits and Assessments ................................................................................................................. 17  \n7.1 Compliance Cycles and Assessments ........................................................................................................ 17  \n8 Education and Awareness .............................................................................................................................. 19  \n8.1 Defining Roles ............................................................................................................................................. 19  \n8.2 Determine PCI DSS Knowledge Areas ....................................................................................................... 20  \n Customer-service Agents ............................................................................","cbCaikeldLhVEv9e","https://ap.wps.com/l/cbCaikeldLhVEv9e","pdf",884143,37,"English","# Executive Summary\n# Introduction\n## Audience\n## Navigating this Document\n## Terminology\n# Characteristics of Large Organizations\n# Roles, Responsibilities, and Ownership\n## Determining Roles, Responsibilities, and Ownership\n## Documenting Ownership, Roles, and Responsibilities\n## Responsibilities in Planning PCI DSS Assessments\n# Mergers and Acquisitions\n## Pre-purchase and Due Diligence\n## Existing Compliance and Integration\n# Multiple Acquirers and Payment Channels\n## Acquirer Relationships\n## Compliance Agreements and Expectations\n## Reporting Multiple Payment Channels\n## Example of Multiple Acquirers and Payment Channels\n# Multiple Audits and Assessments\n## Compliance Cycles and Assessments\n# Education and Awareness\n## Defining Roles\n## Determine PCI DSS Knowledge Areas\n## Developing Training Materials\n## Delivering Training\n## Measuring Success\n# Systems Management to Maintain PCI DSS Compliance\n## Asset Management\n## System Hardening\n## Access Control\n## Vulnerability Assessment\n## Patch Management\n# Local Laws, Regulations, and Standards","[{\"question\":\"Who is the guidance intended for when applying PCI DSS in large organizations?\",\"answer\":\"The document targets organizations that apply PCI DSS in environments with complex ownership, responsibilities, and payment relationships. It also addresses internal groups involved in assessments, training, and operational security management.\"},{\"question\":\"How does the document address mergers and acquisitions under PCI DSS?\",\"answer\":\"It explains how to handle pre-purchase due diligence and how to integrate existing compliance into the acquiring organization. The focus is on maintaining PCI DSS alignment during change.\"},{\"question\":\"What systems and processes are covered to maintain PCI DSS compliance over time?\",\"answer\":\"It outlines ongoing controls including asset management, system hardening, access control, vulnerability assessments, and patch management to sustain compliance between assessments.\"}]","PCI Data Security Standard (PCI DSS) - v1 - Large Organizations | PDF",13]