This website uses cookies. View our cookie policy

PCI DSS resources

Our range of free resources, including guides, data sheets, infographics and green papers, provide technical guidance to help support your PCI DSS (Payment Card Industry Data Security Standard) compliance programme.


The PCI DSS was developed to encourage and enhance cardholder data security. As a general guideline, any merchant or service provider that stores, processes or transmits cardholder data is required to comply with the Standard. However, many merchants are not yet PCI-compliant.

Throughout this webinar series, we will offer recommendations and insight to help you achieve and maintain PCI DSS compliance. You can also download past webinars.

Register >>

Green papers

Free download – PCI DSS v3.0, 3.1 and 3.2: What has changed?

The PCI DSS is continually updated to combat emerging threats and changes in the market, such as mobile acceptance and Cloud computing. This green paper explains the changes to the Standard and the effect they may have on merchants and service providers.

Download now >>

PCI Audit Success in Nine Essential Steps

This green paper will help organisations to effectively prepare for a PCI audit and ensure a successful audit outcome.

Download now >>

Encryption for PCI DSS v3.2

This green paper is aimed at those implementing PCI DSS v3.2 and those conducting audits to make sure an organisation is compliant. 

Download now >>

PCI DSS: Reducing the cardholder data environment

This green paper will help organisations reduce their CDE (cardholder data environment) in order to minimise PCI DSS compliance costs.

Download now >>

Brochures and guides

Executive briefing: The PCI DSS: Challenge or opportunity?

This executive briefing outlines the PCI’s 12 requirements for storing, transmitting and processing cardholder data. 

Download now >>

Data sheet: The PCI DSS – Protect profits by managing payment card risk

Discover IT Governance’s approach of using the PCI DSS as a set of information security controls that can be effectively integrated within a broader cyber security framework to further reduce risk.

Download now >>

Case study: Appletree Communications Ltd: Moving beyond PCI DSS compliance

Find out how IT Governance helped Appletree Communications Ltd progress to the highest level of PCI compliance as a service provider, extending the payment gateway and payment processing arm of the business.

Download now >>


Further information

PCI DSS Penetration Testing

Requirement 11 of the PCI DSS demands regular and frequent tests to identify unaddressed security issues and scan for rogue wireless networks. Find out which penetration test you need to identify unaddressed security issues and scan for rogue wireless networks.

Find out more >>

Contact our PCI DSS experts

If you need help determining your PCI DSS compliance needs or advice on a programme that meets the maturity and expectations of your organisation, get in touch with our PCI DSS experts to find out how we can help you.