PCI DSS 4.0 was introduced in 2022. It was a major upgrade to the existing version 3.2.1. To allow time for both PCI and the regulated entities to understand and implement the necessary requirements, some of the proposals were marked as best practices and future dated.
The existing version 3.2.1 was retired on March 31, 2024. Version 4.0 became the only active version of DSS, but still had some concerns. These were discussed in November 2024 and rapidly rectified. On March 31, 2025, the corrected and active version became DSS 4.0.1.
[...]
PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry
PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry
-
- Secretary
- Posts: 381
- Joined: Mon Oct 30, 2023 1:32 am
- Location: Vicksburg, MS
- ISC2 Member Status: Yes
- Contact:
PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry
Robert B. Carleton + ISC2 Central Mississippi Secretary