Expert Advice Community

Guest

ISO 27001 and PCI DSS

  Quote
Guest
Guest user Created:   Sep 04, 2017 Last commented:   Sep 04, 2017

ISO 27001 and PCI DSS

if we are a ISO 27000 certified Company, and we are now, as a travel agency, also required by IATA to be PCI DSS compliant, does the ISO 27000 certification EQUAL or contribute to the PCI compliance? Simply put - if we are 27000 compliant - do we still need to be PCI compliant AS WELL or are we automatically PCI compliant when we are ISO 27000 compliant?
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Sep 04, 2017

Answer: ISO 27000 certification is not equal to PCI, so being ISO 27001 compliant does not make your organization automatically compliant with PCI DSS, although ISO 27001 practices can contribute to achieve PCI compliance. That said, your organization will have to go through all the steps required to PCI certification, but your ISO 27001 certified ISMS will for sure reduce the required effort.

These articles will provide you further explanation about ISO 27001 and PCI DSS:
- PCI-DSS vs. ISO 27001 Part 1 – Similarities and Differences https://advisera.com/27001academy/knowledgebase/pci-dss/
- PCI-DSS vs. ISO 27001 Part 2 – Implementation and Ce rtification https://advisera.com/27001academy/knowledgebase/pci-dss/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Sep 04, 2017

Sep 04, 2017

Suggested Topics

Guest user Created:   Mar 27, 2020 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 and PCI DSS/ PA DSS

Guest user Created:   May 25, 2018 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 and PCI DSS

Guest user Created:   Apr 01, 2022 ISO 27001 & 22301
Replies: 1
0 0

ISO 27001 Integration