Free Assessment Tool
PCI DSS Readiness Scorer
Answer 12 questions covering every PCI DSS requirement area and receive a traffic-light readiness score with prioritised recommendations for closing gaps.
Do you have a current network diagram showing all connections to/from the CDE?
Req 1Are all system components hardened with vendor-supplied security patches applied within 30 days?
Req 2, 6Is stored cardholder data encrypted or tokenised with documented key management?
Req 3Is all cardholder data transmitted over encrypted channels (TLS 1.2+)?
Req 4Do all systems have current anti-malware software with automated updates?
Req 5Do you have a documented secure development lifecycle for payment applications?
Req 6Is access to cardholder data restricted to personnel with a documented business need?
Req 7Is multi-factor authentication enforced for all access to the CDE?
Req 8Are physical access controls in place for all areas containing cardholder data?
Req 9Do you have centralised logging with automated review for security events?
Req 10Are quarterly ASV scans and annual penetration tests conducted and passing?
Req 11Do you have a documented information security policy reviewed within the last 12 months?
Req 12Answer all 12 questions to calculate your readiness score.
Close Your Compliance Gaps
GRCTrack identifies every gap, generates remediation plans, and tracks your progress to PCI DSS certification.