PCI Guru is a blog operated by a somewhat well known Payment Card Industry (PCI) Qualified Security Assessor (QSA). The purpose of this blog is to provide commentary on topics related to PCI compliance and comments on common questions regarding the various PCI standards. If you want questions answered, I recommend that you go to the Society of Payment Security Professionals (SPSP) Forum (http://forum.paymentsecuritypros.com/index.php). There you can find all sorts of advice from a variety of professionals. If you would like to get a hold of the PCI Guru, the PCI Guru can be contacted through GMail at the PCIGuru account.
03
Feb
09
SAQ A and SAQ A-EP clarification – Jan 7/2015 post
Dear PCI Guru,
In your post, you provided a table from Visa Europe, i.e. SAQ A if uses redirect or iFrame. Our SAQ A/A-EP process are all fully outsourced and is using redirect and iFrame.
Do you know if this policy has been implemented in North America?
Thanks,
Raul
Not only is that chart used worldwide by Visa, it is the basis for the Council’s interpretation for SAQ A/A-EP.