PCI DSS REQUIREMENT 11.4

PCI DSS 4.0 Compliance Testing

Internal, external, and segmentation pentests mapped to Req 11.4. QSA-ready reports in 2 weeks.

What We Test

Every finding maps to a specific PCI control. Your QSA validates compliance without guesswork.

INT

11.4.1 — Internal Pentest

Network and app-layer testing from inside the CDE. Lateral movement paths and privilege escalation identified.

EXT

11.4.3 — External Pentest

Internet-facing systems tested from an external attacker perspective. Web apps, APIs, network services, and cloud infra.

SEG

11.4.5 — Segmentation Testing

Validates segmentation controls isolate the CDE from out-of-scope systems and networks.

SP

11.4.6 — Service Provider Testing

Multi-tenant isolation and shared infrastructure security validation for service providers.

Quote response in <24h

Get a Quote for SOC 2 Pentesting