PCI DSS version 1.2 was released today, I blogged a little about the changes based upon a earlier PCI 1.2 summary document here and rather then duplicate the excellent work of others, I’ll point you to Mike over at www.pcianswers.com who does a great breakdown on the changes between PCI DSS version 1.1 and PCI DSS version 1.2 audit procedures.
From the PCI SSC Press release on PCI 1.2:
This latest version is the culmination of two years of feedback and suggestions from its industry stakeholders and is designed to clarify and ease implementation of the foremost standard for cardholder account security. Version 1.2 is effective immediately and version 1.1 of the standard will sunset on Dec. 31, 2008.
Go read the changes here.


