CIS Controls Mapping to Payment Card Industry (PCI)

Published on August 29, 2022

This document contains mappings of the CIS Controls and Safeguards to Payment Card Industry (PCI) Data Security Standard, v4.0.

CIS Controls v8 Mapping  to PCI DSS 40 cover

As of June 23, 2025, the MS-ISAC has introduced a fee-based membership. Any potential reference to no-cost MS-ISAC services no longer applies.