Requirement 4: Encrypt transmission of cardholder data across open public networks

Sensitive information must be encrypted during transmission over networks that are easily accessed by malicious individuals. Mis-configured wireless networks and vulnerabilities in legacy encryption and authentication protocols continue to be targets of malicious individuals who exploit these vulnerabilities to gain privileged access to cardholder data environments.

Requirement 4 Encrypt transmission of cardholder data across open public networks
4.3 Ensure that security policies and operational procedures for managing vendor defaults and other security parameters are documented, in use, and known to all affected parties.

Update: v3.0 November 2013