PCI SSF
Asset Management

PCI SSF SSS-1.1: Critical Asset Identification

The software vendor must identify and document all critical assets within the payment software, including sensitive data, cryptographic keys, authentication mechanisms, and the components that protect them.

Maintained by Gerard BlokdykControl text last updated

Other controls in Asset Management

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.