Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

Assessor_New_V4 Exam Questions Tutorials

Page: 2 / 4
Question 8

Could an entity use both the Customized Approach and the Defined Approach to meet the same requirement?

Options:

A.

No because a single approach must be selected

B.

No. because only compensating controls can be used with the Defined Approach

C.

Yes if the entity uses no compensating controls

D.

Yes if the entity is eligible to use both approaches

Question 9

A retail merchant has a server room containing systems that store encrypted PAN data. The merchant has implemented a badge access-control system that identities who entered and exited the room on what date and at what time There are no video cameras located in the server room Based on this information, which statement is true regarding PCI DSS physical security requirements?

Options:

A.

The badge access-control system must be protected from tampering or disabling

B.

The merchant must install video cameras in addition to the existing access-control system

C.

Data from the access-control system must be securely deleted on a monthly basis

D.

The merchant must install motion-sensing alarms in addition to the existing access-control system

Question 10

Which of the following describes the intent of installing one primary function per server?

Options:

A.

To allow functions with different security levels to be implemented on the same server

B.

To prevent server functions with a lower security level from introducing security weaknesses to higher -security functions on the same server

C.

To allow higher-security functions to protect lower-security functions installed on the same server

D.

To reduce the security level of functions with higher-security needs to meet the needs of lower-security functions

Question 11

Which of the following statements is true regarding track equivalent data on the chip of a payment card?

Options:

A.

It is allowed to be stored by merchants after authorization if encrypted

B.

It is sensitive authentication data

C.

It is out of scope for PCI DSS

D.

It is not applicable for PCI DSS Requirement 3.2

Page: 2 / 4
Exam Code: Assessor_New_V4
Exam Name: Assessor_New_V4 Exam
Last Update: Nov 24, 2024
Questions: 60
Assessor_New_V4 pdf

Assessor_New_V4 PDF

$25.5  $84.99
Assessor_New_V4 Engine

Assessor_New_V4 Testing Engine

$28.5  $94.99
Assessor_New_V4 PDF + Engine

Assessor_New_V4 PDF + Testing Engine

$40.5  $134.99