Benchmark: Appendix A3: Designated Entities Supplemental Validation (DESV)
Description
This Appendix applies only to entities designated by a payment brand(s) or acquirer as requiring additional validation of existing PCI DSS requirements. An entity is required to undergo an assessment according to this Appendix ONLY if instructed to do so by an acquirer or a payment brand.
Usage
Install the mod:
mkdir dashboardscd dashboardspowerpipe mod initpowerpipe mod install github.com/turbot/steampipe-mod-aws-compliance
Start the Powerpipe server:
steampipe service startpowerpipe server
Open http://localhost:9033 in your browser and select Appendix A3: Designated Entities Supplemental Validation (DESV).
Run this benchmark in your terminal:
powerpipe benchmark run aws_compliance.benchmark.pci_dss_v40_appendix_a3
Snapshot and share results via Turbot Pipes:
powerpipe benchmark run aws_compliance.benchmark.pci_dss_v40_appendix_a3 --share
Benchmarks
- A3.3: PCI DSS is incorporated into business-as-usual (BAU) activities
- A3.4: Logical access to the cardholder data environment is controlled and managed
- A3.5: Suspicious events are identified and responded to