|
|
|
|
|
by borski
4063 days ago
|
|
Show me where it suggests automated testing as a regular part of your SDLC. It recommends applying patches, coding to secure guidelines / best practices, doing code reviews, and running an automated or manual pen test at least once a year. Nowhere does it state in Requirement 6 that you should build automated testing into your SDLC. Reference: https://www.pcisecuritystandards.org/documents/pci_dss_v2.pd... |
|