The RSI security weblog breaks down the actions in a few detail, but the procedure in essence goes similar to this: Formally attest your compliance. An AOC (attestation of compliance) is the form you use to signal that you just’ve obtained PCI DSS compliance. Finishing your questionnaire without any “Improper” https://www.nathanlabsadvisory.com/open-source-scanning-oss.html