What does 12.7 require regarding screening before hire?

Prepare for the PCI Data Security Standard Test with our quiz. Use flashcards and multiple-choice questions to learn each concept. Get ready to excel in your examination!

Multiple Choice

What does 12.7 require regarding screening before hire?

Explanation:
Screening potential personnel before hire to reduce risk to cardholder data is what PCI DSS 12.7 requires. It directs organizations to perform background checks on candidates prior to granting access to systems that handle cardholder data. The checks typically cover past employment history, criminal records, references, and, where allowed by law, credit history. This pre-employment verification helps ensure that individuals entrusted with sensitive information have trustworthy backgrounds and are less likely to become insider threats or be vulnerable to coercion. The other options do not meet the requirement: limiting screening to executives, screening only after employment begins, or not performing background checks all fail to align with the mandated pre-hire screening practice.

Screening potential personnel before hire to reduce risk to cardholder data is what PCI DSS 12.7 requires. It directs organizations to perform background checks on candidates prior to granting access to systems that handle cardholder data. The checks typically cover past employment history, criminal records, references, and, where allowed by law, credit history. This pre-employment verification helps ensure that individuals entrusted with sensitive information have trustworthy backgrounds and are less likely to become insider threats or be vulnerable to coercion. The other options do not meet the requirement: limiting screening to executives, screening only after employment begins, or not performing background checks all fail to align with the mandated pre-hire screening practice.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy