PCI (Payment Card Industry Security Standard)_Req 9.3

PCI (Payment Card Industry Security Standard)

Restrict physical access to cardholder data

Req 9.3

9.3 Control physical access for onsite personnel to sensitive areas as follows: – Access must be authorized and based on individual job function. – Access is revoked immediately upon termination and all physical access mechanisms such as keys access cards etc. are returned or disabled.

Controlling physical access to sensitive areas helps ensure that only authorized personnel with a legitimate business need are granted access. When personnel leave the organization all physical access mechanisms should be returned or disabled promptly (as soon as possible) upon their departure to ensure personnel cannot gain physical access to sensitive areas once their employment has ended.


Click here to Start your FREE trial today!

Explainer video


What is a Cybersecurity Compliance Framework?

You don’t need to clutter your security and privacy programs with an ever-increasing number of tools as they become more sophisticated. The Lionfish platform offers a one-stop solution to track progress and monitor any framework, from custom-built ones to highly-specialized and in-demand top security and privacy frameworks and certifications.

With the Lionfish platform, every framework is supported with guided scoping, policies, controls, automated evidence collection, and continuous monitoring, ensuring efficient preparation for audits or attestation in minimal time.

The Lionfish platform is compatible with a wide range of security and privacy frameworks, including:

Click here to Start your FREE trial today!

Explainer video