Sorry, this page is no longer available
Sorry, this page is no longer available
We may earn an affiliate commission when you visit our partners.
John Elliott and Jacob Ansari

Requirements 10, 11, & 12 of PCI DSS version 3.2.1 are to monitor & test networks, and to maintain an information security policy. Understand what each requirement asks for and discover practical guidance from experienced PCI assessors.

Read more

Requirements 10, 11, & 12 of PCI DSS version 3.2.1 are to monitor & test networks, and to maintain an information security policy. Understand what each requirement asks for and discover practical guidance from experienced PCI assessors.

The key to achieving PCI DSS compliance is a thorough knowledge of each of the sub-requirements and how they'll be assessed. In this course, PCI DSS: Detection, Assurance, and Management, you’ll learn how to interpret PCI DSS requirements 10, 11, & 12, and apply them to your network. First, you’ll learn the how PCI DSS wants access to network resources and cardholder data to be tracked and monitored. Next, you’ll explore the requirement to regularly test security systems and processes. You’ll also see the final requirement in PCI DSS which is to maintain a policy that addresses information security for all personnel. Finally, you’ll discover practical insights about all three requirements from experienced PCI assessors. When you’ve finished with this course you'll have the skills and knowledge to apply PCI DSS requirements 3, 4, 5, & 6 to an organization’s environment and to determine whether they are compliant with the demands of the standard.

What's inside

Syllabus

Course Overview
Requirement 10: Track and Monitor Access to Resources and Data
Requirement 11: Regularly Test Security Systems and Processes
Requirement 11.3: Penetration Testing
Read more

Traffic lights

Read about what's good
what should give you pause
and possible dealbreakers
Examines highly relevant PCI DSS compliance requirements
Taught by instructors recognized for PCI DSS assessment expertise
Practical guidance for implementing PCI DSS requirements
Teaches students how to track and monitor access to network resources and cardholder data
Develops understanding of regular security systems and process testing
Addresses the maintenance of information security policies for all personnel

Save this course

Create your own learning path. Save this course to your list so you can find it easily later.
Save

Activities

Be better prepared before your course. Deepen your understanding during and after it. Supplement your coursework and achieve mastery of the topics covered in PCI DSS: Detection, Assurance, and Management with these activities:
Read 'Network Security Assessment' by Chris McNab
Supplement understanding of network security concepts through a comprehensive and informative text.
Show steps
  • Obtain a copy of the book
  • Read and review chapters relevant to the course
Join a study group to discuss course concepts
Engage with peers, exchange perspectives, and deepen comprehension through collaborative learning.
Show steps
  • Find or form a study group with classmates
  • Establish regular meeting times and discuss assigned topics
Complete a tutorial on network monitoring tools
Gain practical experience using tools to monitor network traffic and identify security breaches.
Browse courses on Network Monitoring
Show steps
  • Choose a reputable tutorial on network monitoring tools
  • Follow the tutorial step-by-step and practice using the tools
Four other activities
Expand to see all activities and additional details
Show all seven activities
Develop a network security policy
Translate security requirements into clear and enforceable policies to guide network management and usage.
Show steps
  • Review existing security standards and regulations
  • Identify specific security objectives and controls
  • Document the policy clearly and distribute it to relevant parties
Conduct regular penetration tests
Identify potential vulnerabilities and weaknesses in your network through simulated attacks.
Show steps
  • Establish a testing environment and define scope
  • Use automated and manual techniques to scan for vulnerabilities
  • Analyze results and prioritize remediation efforts
Volunteer for a cybersecurity organization
Enhance practical knowledge, build industry connections, and contribute to the security ecosystem.
Browse courses on Cybersecurity
Show steps
  • Research and identify reputable cybersecurity organizations
  • Inquire about volunteer opportunities and apply for a suitable role
Contribute to open-source network security projects
Gain hands-on experience and contribute to the broader security community by participating in open-source projects.
Browse courses on Network Security
Show steps
  • Identify suitable open-source network security projects
  • Review the project documentation and identify areas to contribute
  • Make meaningful contributions such as bug fixes or feature enhancements

Career center

Learners who complete PCI DSS: Detection, Assurance, and Management will develop knowledge and skills that may be useful to these careers:
Penetration Tester
Penetration Testers are responsible for testing an organization's security systems and infrastructure to identify vulnerabilities that could be exploited by attackers. PCI DSS requirement 11.3 specifically addresses penetration testing. This course may help build a foundation for a career as a Penetration Tester by providing a deep understanding of PCI DSS requirements 10, 11, & 12.
Information Security Officer (ISO)
Information Security Officers (ISOs) are responsible for developing and implementing an organization's information security program. PCI DSS requirements 10, 11, & 12 are essential for ISOs to understand and implement. This course may help build a foundation for a career as an ISO by providing a deep understanding of these requirements.
Chief Information Security Officer (CISO)
Chief Information Security Officers (CISOs) are responsible for leading an organization's information security program. PCI DSS requirements 10, 11, & 12 are essential for CISOs to understand and implement. This course may help build a foundation for a career as a CISO by providing a deep understanding of these requirements.
Information Security Analyst
Information Security Analysts are responsible for protecting an organization's computer networks and systems from unauthorized access, use, disclosure, disruption, modification, or destruction. PCI DSS requirements 10, 11, & 12 are essential for Information Security Analysts to understand and implement. This course may help build a foundation for a career as an Information Security Analyst by providing a deep understanding of these requirements.
Security Engineer
Security Engineers design, implement, and maintain an organization's security systems and infrastructure. They work to protect the organization's data, systems, and networks from unauthorized access, use, disclosure, disruption, modification, or destruction. PCI DSS requirements 10, 11, & 12 are essential for Security Engineers to understand and implement. This course may help build a foundation for a career as a Security Engineer by providing a deep understanding of these requirements.
Risk Manager
Risk Managers are responsible for identifying, assessing, and mitigating risks to an organization. PCI DSS requirements 10, 11, & 12 are essential for Risk Managers to understand and implement. This course may help build a foundation for a career as a Risk Manager by providing a deep understanding of these requirements.
Security Architect
Security Architects design, implement, and maintain an organization's security infrastructure. They work to protect the organization's data, systems, and networks from unauthorized access, use, disclosure, disruption, modification, or destruction. PCI DSS requirements 10, 11, & 12 are essential for Security Architects to understand and implement. This course may help build a foundation for a career as a Security Architect by providing a deep understanding of these requirements.
Compliance Manager
Compliance Managers are responsible for ensuring that an organization complies with all applicable laws and regulations. PCI DSS requirements 10, 11, & 12 are essential for Compliance Managers to understand and implement. This course may help build a foundation for a career as a Compliance Manager by providing a deep understanding of these requirements.
Security Consultant
Security Consultants provide advice and guidance to organizations on how to protect their data, systems, and networks from unauthorized access, use, disclosure, disruption, modification, or destruction. PCI DSS requirements 10, 11, & 12 are essential for Security Consultants to understand and implement. This course may help build a foundation for a career as a Security Consultant by providing a deep understanding of these requirements.
Security Analyst
Security Analysts are responsible for monitoring an organization's security systems and infrastructure for suspicious activity. PCI DSS requirements 10, 11, & 12 are essential for Security Analysts to understand and implement. This course may help build a foundation for a career as a Security Analyst by providing a deep understanding of these requirements.
Incident Responder
Incident Responders are responsible for responding to security incidents and breaches. PCI DSS requirement 12 specifically addresses incident management. This course may help build a foundation for a career as an Incident Responder by providing a deep understanding of this requirement.
Auditor
Auditors are responsible for examining an organization's financial records and operations to ensure accuracy and compliance with laws and regulations. PCI DSS requirements 10, 11, & 12 are essential for Auditors to understand and implement. This course may help build a foundation for a career as an Auditor by providing a deep understanding of these requirements.
Network Administrator
Network Administrators are responsible for managing an organization's computer networks and systems. PCI DSS requirement 10 specifically addresses tracking and monitoring access to network resources and data. This course may help build a foundation for a career as a Network Administrator by providing a deep understanding of this requirement.
Systems Administrator
Systems Administrators are responsible for managing an organization's computer systems and software. PCI DSS requirement 11 specifically addresses regularly testing security systems and processes. This course may help build a foundation for a career as a Systems Administrator by providing a deep understanding of this requirement.
Database Administrator
Database Administrators are responsible for managing an organization's databases. PCI DSS requirement 10 specifically addresses tracking and monitoring access to data. This course may help build a foundation for a career as a Database Administrator by providing a deep understanding of this requirement.

Reading list

We've selected 12 books that we think will supplement your learning. Use these to develop background knowledge, enrich your coursework, and gain a deeper understanding of the topics covered in PCI DSS: Detection, Assurance, and Management.
This official guide from the PCI Security Standards Council provides a concise overview of the PCI DSS requirements, making it a valuable resource for anyone seeking to understand the standard's key principles.
This certification guide covers a broad range of security topics, including network security, cryptography, and risk management, providing a solid foundation for understanding PCI DSS requirements.
This practical guide provides hands-on experience with penetration testing techniques, helping readers understand the process of identifying vulnerabilities and mitigating risks.
This concise guide to ISO 27001, an international standard for information security management, provides valuable insights into the principles and practices that complement PCI DSS requirements.
This certification guide covers a wide range of security domains, including information security governance, risk management, and incident response, providing a comprehensive understanding of security principles.
This foundational book provides a comprehensive framework for understanding and managing security risks, offering valuable insights into the principles that underpin PCI DSS compliance.
This official guide from NIST provides a comprehensive framework for cybersecurity, offering valuable insights into the principles and practices that complement PCI DSS requirements.
This textbook provides a comprehensive overview of computer security concepts and principles, offering valuable background knowledge for understanding PCI DSS requirements.
This textbook provides a detailed explanation of network security concepts and technologies, offering valuable insights into the principles that underpin PCI DSS requirements.
This textbook provides a comprehensive overview of security assessment techniques and methodologies, offering valuable insights into the principles that underpin PCI DSS requirements.

Share

Help others find this course page by sharing it with your friends and followers:

Similar courses

Similar courses are unavailable at this time. Please try again later.
Our mission

OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

Find this site helpful? Tell a friend about us.

Affiliate disclosure

We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

Your purchases help us maintain our catalog and keep our servers humming without ads.

Thank you for supporting OpenCourser.

© 2016 - 2025 OpenCourser