| Requirements Nr. | Description | Keywords |
| 01 | Install and maintain a firewall configuration to protect cardholder data | Firewall |
| 02 | Do not use vendor-supplied defaults for system passwords and other security parameters | Configuration Management |
| 03 | Protect stored cardholder data | Segregation of Duties (SoD) Multifactorial Authentication Database Encryption File / Disc Encryption Data Leakage Protection (DLP) Key Management
|
| 04 | Encrypt transmission of cardholder data across open, public networks | VPN SSL Acceleration E-mail Encryption Data Leakage Protection (DLP) |
| 05 | Use and regularly update anti-virus software | Antivirus |
| 06 | Develop and maintain secure systems and applications | Code Analysis Patch / Change Management Application Firewall Application Vulnerability Scanning Test Data Generation
Data Leakage Protection (DLP |
| 07 | Restrict access to cardholder data by business need-to-know | Access Control Solutions Role Management Solutions |
| 08 | Assign a unique ID to each person with computer access | Strong Authentication Management Identity Management Solutions
|
| 09 | Track and monitor all access to network resources and cardholder data | Security Information and Event Management (SIEM) File Integrity Monitoring (FIM)
|
| 10 | Regularly test security systems and processes | Intrusion Detection and Prevention Systems (IDPS) File Integrity Monitoring (FIM) Vulnerability Scanning Wireless IPS/IDS
|
| 11 | Maintain a policy that addresses information security | IsmArt |