pci-dss-compliance

Implement PCI DSS requirements for payment card security.

Safety Notice

This listing is imported from skills.sh public index metadata. Review upstream SKILL.md and repository scripts before running.

Copy this and send it to your AI assistant to learn

Install skill "pci-dss-compliance" with this command: npx skills add bagelhole/devops-security-agent-skills/bagelhole-devops-security-agent-skills-pci-dss-compliance

PCI DSS Compliance

Implement PCI DSS requirements for payment card security.

Requirements

requirements: 1_firewall: - Network segmentation - Firewall configuration - CDE isolation

3_protect_data: - Mask PAN display - Encrypt stored data - Key management

6_secure_systems: - Patch management - Secure development - Change control

8_access_control: - Unique IDs - MFA for remote access - Password policies

10_logging: - Audit trail - Time synchronization - Log retention (1 year)

11_testing: - Vulnerability scans - Penetration testing - IDS/IPS monitoring

Network Segmentation

Internet --> DMZ --> Firewall --> CDE | Non-CDE <-- Firewall --

Data Protection

encryption: at_rest: AES-256 in_transit: TLS 1.2+ key_storage: HSM or dedicated key vault

tokenization:

  • Replace PAN with token
  • Store mapping securely
  • Reduce CDE scope

Best Practices

  • Minimize CDE scope

  • Use tokenization

  • Quarterly vulnerability scans

  • Annual penetration tests

  • ASV scan certification

Source Transparency

This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.

Related Skills

Related by shared tags or category signals.

Security

sops-encryption

No summary provided by upstream source.

Repository SourceNeeds Review
Security

linux-administration

No summary provided by upstream source.

Repository SourceNeeds Review
Security

linux-hardening

No summary provided by upstream source.

Repository SourceNeeds Review
Security

windows-server

No summary provided by upstream source.

Repository SourceNeeds Review