Generating PCI compliance reports

In IBM QRadar Vulnerability Manager, you can generate a compliance report for your PCI (payment card industry) assets. For example, generate a report for assets that store credit card or other sensitive financial information.

The compliance report demonstrates that you took all the security precautions necessary to protect your assets.

Procedure

  1. Run a PCI scan for the assets in your network that store or process PCI information.
  2. Update your asset compliance plans and software declarations.

    Your compliance plan and software declarations are displayed in the special notes section of the executive summary.

    For more information, see the PCI security standards for approved software vendors.

  3. Create and run a PCI compliance report for the assets that you scanned.