Which statement is true regarding the use of intrusion detection techniques, such as intrusion detection systems and/or intrusion protection systems (IDS’IPS)?

Which statement is true regarding the use of intrusion detection techniques, such as intrusion detection systems and/or intrusion protection systems (IDS’IPS)?
A . Intrusion detection techniques are required on all system components
B . Intrusion detection techniques are required to alert personnel of suspected compromises
C . Intrusion detection techniques are required to isolate systems in the cardholder data environment from all other systems
D . Intrusion detection techniques are required to identify all instances of cardholder data

Answer: B

Explanation:

According to the PCI DSS v3.2.1 Quick Reference Guide1, intrusion detection techniques are required to alert personnel of suspected compromises that could compromise cardholder data or payment processing systems. This is one of the requirements for identifying and mitigating vulnerabilities that could compromise cardholder data.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments