CIS Critical Security Controls v7.1 and Sub-Controls Mapping to PCI DSS

Published on September 18, 2020

This document maps CIS Critical Security Controls v7.1 to the Payment Card Industry Data Security Standard (PCI DSS).
CIS-Controls-PCI-Mapping

As of June 23, 2025, the MS-ISAC has introduced a fee-based membership. Any potential reference to no-cost MS-ISAC services no longer applies.