Blog

Dick Hacking

Dick Hacking has an extraordinary depth of knowledge in hardware, firmware, and operating systems, and is a recognized expert in identifying and mitigating product vulnerabilities in system software and embedded systems.

Recent Posts

SAQs, responsibilities and Obligations

Posted by Dick Hacking on Sep 4, 2020 9:00:00 AM

The PCI SSC (Payment Cards Industry Security Standards Council) allows for some organizations that handle payment card data (merchants and their service providers) to complete a Self Assessment Questionnaire (SAQ) and associated Attestation of Compliance (AOC) to the PCI Data Security Standard (DSS) rather than get a full onsite assessment and Report on Compliance (ROC) from a Qualified Security Assessor (QSA). A QSA can still be engaged to assist with the details of completing the appropriate SAQ; however, unlike in a full ROC, the organization is attesting to its own compliance rather than seeking the independent opinion of a QSA.

Read More

Topics: PCI DSS

Related Articles By Topic