Chris interview
how would you scope on the auditor side of PCI DSS? I need to see the inventory list. I need all your paperwork, all your policies. I believe working along with any network engineers will establish your environment, what is your segmentation look like. a lot of business, how are they goign to route all these services? any source, any destination. let's talk about. how are you securing this data? where is it at? that is important. another that the coucil provides. you establish your levels, your milestone. all those results will come along. what if the client does not store or process or transmit credit card data? how wold you or maybe they are a service provider? who is your ASV. we need to know that to establish this assessment. the QSA will break it down. that AOC for you, we will establish, because you still have to make this extra research. we need to confirm that informatino. Q: if you are the QSA I will be soon. If you are the QSA and the client says we don't touch cr