Terminology Index
Glossary
1801 terms
Showing 1121-1152 of 1801 terms
PCI DSS Cloud Architecture
Designing a cloud architecture that meets PCI DSS requirements for handling cardholder data, with the segmentation, encryption, access control, logging, and scope reduction needed to protect the cardholder data environment.
From a cloud-architecture view, PCI DSS compliance is easier when the environment is designed for it: isolating the cardholder data environment (CDE) through segmentation to reduce scope, encrypting cardholder data in transit and at rest, enforcing strict access control and logging, and meeting the standard's specific controls. PCI DSS cloud architecture bakes these into the design and clarifies shared responsibility with the provider, so card data is protected and the costly scope of compliance is minimized.
Introduced in: Cloud Security Architecture
Examples
- Segmenting the cardholder data environment to reduce PCI scope.
- Encrypting cardholder data in transit and at rest by design.
- Architecting strict access control and logging for the CDE.
No related terms linked yet.
