Hacker News new | ask | show | jobs
by grandalf 4188 days ago
it's actually pretty easy for a shop with its own servers and network team (in-house or outsourced) to come up with a network diagram that satisfies the PCI DSS 3.0 SAQ requirements.

> I think you are dramatically underestimating how many very small businesses, private individuals, bootstrapped start-ups, etc. would be caught by this.

This is not new, it has been part of SAQ A for quite some time.