This PCI DSS V1.2 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.

Return to Main Page
Manual Examination DEVELOPMENT_6_3_7_C_071

PCI DSS V1.2 for Merchant

Findings Color Code
Compliant
Not assessed
Non-Compliant

PCI DSS 06 .03 .07 .c

Question: Does an examination of records regarding the second most recent change to web applications show code is developed to ensure code is developed according to secure coding guidelines such as the Open Web Security Project Guide (as described in PCI DSS Requirement 6.5) ?

Answered by: BOSTON::JEFFERSON

As part of Manual Examination group: APPLICATION_DEVELOPMENT_WEB

Answer: YES

This PCI DSS V1.2 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.