PCIP Exam Proficiency Pre-Assessment Exam Questions with Ascertained Solutions 2024/2025
7 views 0 purchase
Module
PCIP
Institution
PCIP
PCIP Exam Proficiency Pre-Assessment Exam Questions with Ascertained Solutions 2024/2025
What are the three steps in Payment Card Processing - correct answer 1) Authorization 2) Clearing 3) Settlement
Functions associated with Acquirers - correct answer Authorize, Clear and Settle to merchant...
pcip exam proficiency pre assessment exam question
Written for
PCIP
PCIP
Seller
Follow
KieranKent55
Reviews received
Content preview
PCIP Exam
What are the three steps in Payment Card Processing - correct answer 1)
Authorization 2) Clearing 3) Settlement
Functions associated with Acquirers - correct answer Authorize, Clear and Settle
to merchant
Who ultimately approves the purchase - correct answer Issuer
Which step does the Payment Brand Network provide complete reconciliation to
the merchant bank - correct answer Clearing
How long is PCIP qualification valid - correct answer 3 years
Which takes precedence...local laws or PCI Standards - correct answer Local Laws
Payment Brand Network - correct answer The cc brands (e.g. Am Ex, Discover).
Discover and Amex are BOTH the card network and issuing bank- having their own
financial institutions issue the cc's to consumers
Visa and MasterCard are card networks only and do NOT issue cc's- they have
third party issuing banks do it for them.
What do Acquirer's do for their merchants - correct answer Authorize--Clear--
Settle for their merchant
,Who ultimately approves the purchase - correct answer Issuer
In which step does the Payment Brand Network provide complete reconciliation to
the merchant bank - correct answer Clearing
(PA-DSS) Payment Application Data Security Standard - correct answer Third party
payment applications that authorize and settle
Examples- POS, Shopping Cart
Role of Payment Brand Network - correct answer 1) Develop and Enforce
Compliance Programs, 2) Accept validation documentation from approved QSA,
PA-QSA, and ASV companies, and 3) endorse the QSA, PA-QSA and ASV company
qualification criteria
Point to Point Encryption (P2PE) Requirements - correct answer 1-Secure
encryption of payment card data at Point of Interaction (POI)
2-Validated apps at the POI
3-Secure environment of encryption and decryption devices
4-Manage decryption environment and ALL decrypted account data
5-Use source encryption technologies and cryptographic key elements-like key
generation, distribution, loading and injection, administration and usage
May reduce PCI-DSS scope for Merchant
-Geared toward provider of point to point solution (e.g. Processor, Acquirer,
payment gateway (e.g. PayPal)
(PA-DSS) Payment Application DSS - correct answer Most payment application
(PA-DSS) requirements are equivalent of PCI-DSS
,-Geared toward the Application providers
P2PE - correct answer P2PE- Incorporates requirements from PTS, PCI-DSS, PA-
DSS, and PCI-PIN
Protects cc data from point of capture to processing
(PCI-PTS) PIN- Transaction Security Devices - correct answer PCI-PTS applies to pin
entry devices/ point of interaction devices (POI), Encrypting Pin Pads (EPP), Point
of Sale devices (POS), Hardware (or host) security modules (HSMs), Unattended
Payment Terminals (UPT)s, and non-PIN entry module
-Geared toward Device Manufacturers
PCI-PTS - what does the program ensure against - correct answer 1- Terminals
cannot be manipulated or hacked, or access to pins/keys
2-Secure Read and Exchange Module (SREM)- allows terminals to be approved for
the secure encryption of cardholder data as part of the P2PE program
3-PTS extended to allow non-PIN entry modules to be evaluated against the SRED
module, allowing secure encryption at POI for non-chip and PIN cards
PCI Pin Requirements provides for secure.... - correct answer 1) PIN management
2) processing and 3) transmission
PCI PIN requirements protects PINs entered when and where - correct answer
Online and offline payment card transactions
at ATMs and attended and unattended POS
, Qualified Integrators and Resellers (QIR) - correct answer entities that sell, install
or service payment applications on behalf of software vendors
-software vendors develop the app but QIRs need to make sure app is
implemented properly to comply with PCI-DSS
-QIR cannot submit certification for PA-DSS validation, only software vendor can
file
Where does cardholder data flow - correct answer Between and through apps,
systems and network infrastructure devices
-Document data flow before the assessment
Name 3 methods to protect PAN per PCI-DSS 3.4 - correct answer 1) Hashing,
2)Encryption, 3)Truncation
- to make PAN unreadable when stored- hash the entire PAN completely using
strong cryptography
May Full track data or Sensitive Authentication Data be stored AFTER
authentication - correct answer No, even if it is protected.
Exception: Issuers or Issue processors may be able to store SAD if there is a
business need
Location for Track Data Storage - correct answer Databases, Flat Files, Log Files,
Debug Files
-Systems that typically store track data- POS Systems, POS servers, Authorization
servers
How frequent review firewall and router rule sets Req. 1.1.7 - correct answer
Every six (6) months (at least)
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller KieranKent55. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for £9.36. You're not tied to anything after your purchase.