Which item must be recorded to verify who authorized a visitor's access?

Prepare for the PCI DSS Test with detailed questions and explanations. Use flashcards and quizzes to enhance knowledge. Ensure you're ready for your certification exam!

Multiple Choice

Which item must be recorded to verify who authorized a visitor's access?

Explanation:
The key idea is that access to sensitive areas must be traceable to the person who approved it. For a visitor, the record should show the specific onsite personnel who granted the authorization to enter. This creates an auditable link between the entry and the person who approved it, which is essential for accountability and incident response. While capturing the visitor’s email, phone number, or even a driver’s license can help identify the visitor, these items do not establish who approved access. The authorization chain—the onsite personnel authorizing the visit—is the critical piece to record.

The key idea is that access to sensitive areas must be traceable to the person who approved it. For a visitor, the record should show the specific onsite personnel who granted the authorization to enter. This creates an auditable link between the entry and the person who approved it, which is essential for accountability and incident response. While capturing the visitor’s email, phone number, or even a driver’s license can help identify the visitor, these items do not establish who approved access. The authorization chain—the onsite personnel authorizing the visit—is the critical piece to record.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy