Prepare for the CompTIA Network+ Exam. Utilize interactive quizzes and multiple-choice questions with explanations. Boost your readiness and achieve exam success now!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which of the following is NOT one of the six control objectives for PCI DSS?

  1. Build security across organizations

  2. Protect cardholder data

  3. Maintain a vulnerability management program

  4. Implement strong access controls

The correct answer is: Build security across organizations

The control objectives for PCI DSS (Payment Card Industry Data Security Standard) are designed to ensure the security of cardholder data and to help organizations comply with the necessary standards to protect sensitive payment information. The objectives encompass a range of areas, including the protection of cardholder data, the establishment and maintenance of a vulnerability management program, and the implementation of strong access controls. The first option, which involves building security across organizations, does not specifically fit into the context of PCI DSS control objectives. While organizational security is important, the PCI DSS framework is more focused on direct measures that protect cardholder data and secure systems related to payment processing. Therefore, this option stands apart as it applies to a broader organizational approach rather than the stringent controls outlined by PCI DSS. In contrast, protecting cardholder data, maintaining a vulnerability management program, and implementing strong access controls are all integral parts of the PCI DSS objectives, aimed at ensuring that organizations effectively safeguard sensitive information and mitigate risks associated with data breaches. These control objectives are essential for achieving compliance with the PCI DSS standards.