The Payment Card Industry Data Security Standard (PCI DSS) v4.0, released in March 2022, is the latest global framework for securing cardholder data. It replaces version 3.2.1 and becomes fully enforceable from March 31, 2025, after the transition period ends. Developed by the PCI Security Standards Council (PCI SSC), this version enhances flexibility, strengthens authentication requirements, and focuses on continuous monitoring.
It applies to all
merchants, payment processors, banks, issuers, fintech companies, and other
organizations that store, process, or transmit cardholder data. PCI DSS v4.0 supports both traditional and modern payment environments, including cloud and mobile platforms, requiring organizations to implement robust
fraud risk management systems to protect sensitive cardholder information and maintain compliance with evolving security standards.