PCI SSF
Data Protection

PCI SSF SSS-2.1: Sensitive Data Inventory and Protection

Sensitive data including cardholder data, sensitive authentication data, and cryptographic material must be inventoried, minimized, protected at rest and in transit, and securely deleted when no longer required.

Maintained by Gerard BlokdykControl text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.