[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"detail-sidebar-cat-1-en-105":3,"doc-seo-164404-105":53,"doc-detail-164404-en":126},{"code":4,"msg":5,"data":6},0,"success",[7,14,19,24,29,34,39,44,49],{"id":8,"doc_module":9,"doc_module_name":10,"category_name":11,"show_sort_weight":12,"slug":13},11,1,"Template","Presentations",90,"presentations",{"id":15,"doc_module":9,"doc_module_name":10,"category_name":16,"show_sort_weight":17,"slug":18},12,"Resumes",80,"resumes",{"id":20,"doc_module":9,"doc_module_name":10,"category_name":21,"show_sort_weight":22,"slug":23},14,"Invoices",70,"invoices",{"id":25,"doc_module":9,"doc_module_name":10,"category_name":26,"show_sort_weight":27,"slug":28},15,"Posters",60,"posters",{"id":30,"doc_module":9,"doc_module_name":10,"category_name":31,"show_sort_weight":32,"slug":33},16,"Social Media",50,"social-media",{"id":35,"doc_module":9,"doc_module_name":10,"category_name":36,"show_sort_weight":37,"slug":38},17,"Forms",40,"forms",{"id":40,"doc_module":9,"doc_module_name":10,"category_name":41,"show_sort_weight":42,"slug":43},18,"Letters",30,"letters",{"id":45,"doc_module":9,"doc_module_name":10,"category_name":46,"show_sort_weight":47,"slug":48},21,"Paper Templates",5,"papers-templates",{"id":50,"doc_module":9,"doc_module_name":10,"category_name":51,"show_sort_weight":4,"slug":52},158,"General","general-158",{"code":4,"msg":54,"data":55},"ok",{"site_id":56,"language":57,"slug":58,"title":59,"keywords":60,"description":61,"schema_data":62,"social_meta":119,"head_meta":121,"extra_data":123,"updated_unix":125},105,"en","pci-pin-security-requirements-template-for-report-on-compliance","PCI PIN Security Requirements - Template for Report on Compliance","","Payment Card Industry (PCI) PIN Security Requirements reporting template for Qualified PIN Assessors to complete a Report on Compliance (ROC) for assessments aligned to PCI PIN Security Requirements and Test Procedures v3.1. Defines mandatory use for all v3.1 submissions and explains how the ROC summarizes evidence from onsite assessment work papers. Provides reporting instructions, required section structure, and guidance on tables, personalization, and acceptable additions while prohibiting removal of any template details.",{"@graph":63,"@context":118},[64,80,101],{"@type":65,"itemListElement":66},"BreadcrumbList",[67,71,74,77],{"item":68,"name":69,"@type":70,"position":9},"https://docshare.wps.com","Home","ListItem",{"item":72,"name":10,"@type":70,"position":73},"https://docshare.wps.com/template/",2,{"item":75,"name":36,"@type":70,"position":76},"https://docshare.wps.com/template/forms/",3,{"item":78,"name":59,"@type":70,"position":79},"https://docshare.wps.com/template/pci-pin-security-requirements-template-for-report-on-compliance/164404/",4,{"url":78,"name":59,"@type":81,"image":82,"author":87,"headline":59,"publisher":90,"fileFormat":93,"inLanguage":57,"description":61,"dateModified":94,"datePublished":95,"encodingFormat":93,"isAccessibleForFree":96,"interactionStatistic":97},"DigitalDocument",{"url":83,"@type":84,"width":85,"height":86},"https://docshare.wps.com/thumbnails/pci-pin-security-requirements-template-for-report-on-compliance/164404.png","ImageObject",442,249,{"name":88,"@type":89},"Maya Linwood","Person",{"url":68,"name":91,"@type":92},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-09-22","2026-08-31",true,{"@type":98,"interactionType":99,"userInteractionCount":79},"InteractionCounter",{"@type":100},"ViewAction",{"@type":102,"mainEntity":103},"FAQPage",[104,110,114],{"name":105,"@type":106,"acceptedAnswer":107},"Who must use the ROC reporting template for PCI PIN v3.1 submissions?","Question",{"text":108,"@type":109},"Qualified PIN Assessors (QPAs) must use the ROC Reporting Template when completing a Report on Compliance for assessments against PCI PIN Security Requirements v3.1.","Answer",{"name":111,"@type":106,"acceptedAnswer":112},"What is the purpose of the ROC in PCI PIN assessments?",{"text":113,"@type":109},"The ROC documents the entity’s compliance status for each PCI PIN requirement and provides enough detail to verify compliance, summarizing evidence produced during onsite assessment activities.",{"name":115,"@type":106,"acceptedAnswer":116},"What guidance does the template give about modifying tables and adding content?",{"text":117,"@type":109},"Tables may be modified to adjust row counts or column widths, and additional appendices may be added if relevant information is not addressed. However, no details must be removed from the tables or any place in the document.","https://schema.org",{"og:url":78,"og:type":120,"og:title":59,"og:site_name":91,"og:description":61},"article",{"robots":122,"canonical":78},"index,follow",{"doc_id":124,"site_id":56},164404,1789982331,{"code":4,"msg":5,"data":127},{"doc_id":124,"user_id":128,"nickname":88,"user_avatar":129,"doc_module":9,"category_id":35,"category_name":36,"doc_title":59,"doc_description":61,"doc_content":130,"file_id":131,"file_url":132,"file_type":133,"file_size":134,"view_count":79,"is_deleted":4,"is_public":9,"is_downloadable":9,"audit_status":9,"page_count":135,"language":136,"language_code":57,"site_id":56,"html_lang":57,"table_of_contents":137,"faqs":138,"seo_title":139,"seo_description":61,"update_tm":140,"read_time":141},962084928432,"https://ap-avatar.wpscdn.com/davatar_155a257f0dc6eb9ab79c44ca47cae57d","Payment Card Industry (PCI) \u000bPIN Security Requirements\nTemplate for Report on Compliance\nFor use with PCI PIN Security Requirements v3.1\nRevision 1.0c\u000bMarch 2021\nDocument Changes\nContents\n\u0013 TOC \\o \"1-1\" \\h \\z \\t \"Heading 2,2,Heading 2a,2\" \u0014\u0013 HYPERLINK \\l \"_Toc55497442\" \u0014Document Changes\t\u0013 PAGEREF _Toc55497442 \\h \u0014i\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497443\" \u0014Introduction to the ROC Template\t\u0013 PAGEREF _Toc55497443 \\h \u00141\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497444\" \u0014ROC Sections\t\u0013 PAGEREF _Toc55497444 \\h \u00142\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497445\" \u0014ROC Summary of Assessor Findings\t\u0013 PAGEREF _Toc55497445 \\h \u00142\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497446\" \u0014Sample Findings and Observations Template\t\u0013 PAGEREF _Toc55497446 \\h \u00144\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497447\" \u0014ROC Reporting Details\t\u0013 PAGEREF _Toc55497447 \\h \u00145\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497448\" \u0014Dependence on another service provider’s compliance:\t\u0013 PAGEREF _Toc55497448 \\h \u00146\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497449\" \u0014Do’s and Don’ts: Reporting Expectations\t\u0013 PAGEREF _Toc55497449 \\h \u00146\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497450\" \u0014ROC Template for PCI PIN v3.1\t\u0013 PAGEREF _Toc55497450 \\h \u00147\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497451\" \u00141. \tContact Information and Report Date\t\u0013 PAGEREF _Toc55497451 \\h \u00147\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497452\" \u00142.\tHigh-level network diagram(s)\t\u0013 PAGEREF _Toc55497452 \\h \u001410\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497453\" \u00143. \tDescription of Scope of Work and Approach Taken\t\u0013 PAGEREF _Toc55497453 \\h \u001411\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497454\" \u00144.\tDetails about Reviewed Environment\t\u0013 PAGEREF _Toc55497454 \\h \u001413\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497455\" \u00145. \tFindings and Observations\t\u0013 PAGEREF _Toc55497455 \\h \u001422\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497456\" \u0014Normative Annex A – Symmetric Key Distribution using Asymmetric Techniques\t\u0013 PAGEREF _Toc55497456 \\h \u0014114\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497457\" \u0014A1 – Remote Key Distribution Using Asymmetric Techniques Operations\t\u0013 PAGEREF _Toc55497457 \\h \u0014116\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497458\" \u0014A2 – Certification and Registration Authority Operations\t\u0013 PAGEREF _Toc55497458 \\h \u0014124\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497459\" \u0014Normative Annex B – Key-Injection Facilities\t\u0013 PAGEREF _Toc55497459 \\h \u0014165\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497460\" \u0014Appendix 1: Compensating Controls\t\u0013 PAGEREF _Toc55497460 \\h \u0014262\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc55497461\" \u0014Appendix 2: Compensating Controls Worksheet\t\u0013 PAGEREF _Toc55497461 \\h \u0014263\u0015\u0015\n\u0015\nIntroduction to the ROC Template\nThis document, the Payment Card Industry PIN Security Requirements (PCI PIN Standard) Template for Report on Compliance for use with PCI PIN Security Requirements and Test Procedures v3.1, Revision 1.0c (“ROC Reporting Template”), is the mandatory template for Qualified PIN Assessors (QPAs) completing a Report on Compliance (ROC) for assessments against the PCI PIN Security Requirements and Test Procedures, v3.1. The ROC Reporting Template provides reporting instructions and the template for QPAs to use. This can help provide reasonable assurance that a consistent level of reporting is present among assessors.\nUse of this Reporting Template is mandatory for all v3.1 submissions.\nTables have been included in this template to facilitate the reporting process for certain lists and other information as appropriate. The tables in this template may be modified to increase/decrease the number of rows, or to change column width. Additional appendices may be added if the assessor feels there is relevant information to be included that is not addressed in the current format. However, the assessor must not remove any details from the tables provided in this document. Personalization, such as the addition of company logos, is acceptable.\nDo not delete any content from any place in this document, including this section and the versioning above. These instructions are important for the assessor as the report is written and for the recipient in understanding the context the responses and conclusions are made. Addition of text or sections is applicable within reason, as noted above\nThe Report on Compliance (ROC) is produced during onsite PCI PIN assessments ","cbCaiiCFFLBhmZ3J","https://ap.wps.com/l/cbCaiiCFFLBhmZ3J","docx",677495,265,"English","# Document Changes\n# Introduction to the ROC Template\n# ROC Sections\n## ROC Summary of Assessor Findings\n## Sample Findings and Observations Template\n## ROC Reporting Details\n## Dependence on another service provider’s compliance\n## Do’s and Don’ts: Reporting Expectations\n# ROC Template for PCI PIN v3.1\n## 1. Contact Information and Report Date\n## 2. High-level network diagram(s)\n## 3. Description of Scope of Work and Approach Taken\n## 4. Details about Reviewed Environment\n## 5. Findings and Observations\n# Normative Annex A – Symmetric Key Distribution using Asymmetric Techniques\n# Normative Annex B – Key-Injection Facilities\n# Appendix 1: Compensating Controls\n# Appendix 2: Compensating Controls Worksheet","[{\"question\":\"Who must use the ROC reporting template for PCI PIN v3.1 submissions?\",\"answer\":\"Qualified PIN Assessors (QPAs) must use the ROC Reporting Template when completing a Report on Compliance for assessments against PCI PIN Security Requirements v3.1.\"},{\"question\":\"What is the purpose of the ROC in PCI PIN assessments?\",\"answer\":\"The ROC documents the entity’s compliance status for each PCI PIN requirement and provides enough detail to verify compliance, summarizing evidence produced during onsite assessment activities.\"},{\"question\":\"What guidance does the template give about modifying tables and adding content?\",\"answer\":\"Tables may be modified to adjust row counts or column widths, and additional appendices may be added if relevant information is not addressed. However, no details must be removed from the tables or any place in the document.\"}]","PCI PIN Security Requirements - Template for Report on Compliance | DOCX",1788152849,93]