How is cardholder data encrypted and segmented per PCI DSS?
Cardholder data is encrypted at rest with AES-256 and processed in a logically segregated environment with network controls isolating production workloads.
Confidence factors
- Control Match4/4weight ×2.0
How directly approved controls answer the question.
- Evidence Freshnessderived4/4weight ×2.0
Currency of the mapped evidence (derived from review dates).
- Approved Language4/4weight ×1.5
Availability of vetted, pre-approved response language.
- Answer Reuse4/4weight ×1.5
Consistency with prior approved responses to the same ask.
- Category Clarity4/4weight ×1.0
How standard and well-bounded the question is.
Mapped evidence
Why this verdict
- Strong control match on current, approved evidence with no sensitivity flags — cleared to auto-approve.