Payment Card Security Certification
Certified Payment Industry Security Implementer on PCI DSS v4.0
Learn to implement PCI DSS v4.x from scratch, make the transition from v3.2.1 cost-effectively, and earn the CPISI credential that proves you can put payment card security into practice.
Talk to us about CPISI
Share your details and our team will guide you on the next intake.
Vishal - I couldn't have passed CISSP without Cybernous.
What is the CPISI certification?
CPISI (Certified Payment Industry Security Implementer) is a certification for professionals who implement PCI DSS. Cybernous delivers it as live, practitioner-led training across ten modules, followed by an online exam of 50 questions in 1 hour with a 66% pass mark. It suits security professionals, payment security implementers and teams moving from PCI DSS v3.2.1 to v4.x. Jump to the curriculum, the FAQ, or book a free consultation.
- Certification
- Certified Payment Industry Security Implementer (CPISI)
- Standard covered
- PCI DSS v4.x, including transition from v3.2.1
- Delivery
- Live, instructor-led training
- Exam
- Online · 50 questions · 1 hour · 66% to pass
- Exam window
- Within 10 calendar days of completing training
- Prerequisites
- None formal
Why PCI DSS
Why Payment Security Skills Matter
PCI DSS is the global baseline of technical and operational requirements for any organisation that stores, processes or transmits cardholder data. Version 4.x promotes security as a continuous process, with a more flexible, risk-based approach and improved validation methods.
Merchants, banks, gateways and service providers all need people who can scope the environment correctly, choose the right validation route and implement the controls that assessors expect. The CPISI programme builds exactly that capability. Read more in why PCI DSS matters for businesses or browse our PCI DSS articles.
Programme Highlights
- Implement PCI DSS v4.x from scratch
- Cost-effective transition from v3.2.1
- Scoping, segmentation and SAQ selection
- Targeted risk analyses
- Online certification exam: 50 questions, 1 hour
Designed For You
Who Should Enrol
Security professionals
Practitioners who need working knowledge of payment card security and the PCI DSS requirements.
Payment security implementers
Engineers and project leads responsible for making an environment PCI DSS compliant.
Transition teams
Teams moving their organisation from PCI DSS v3.2.1 to v4.x.
GRC and audit professionals
Compliance, risk and audit staff who support merchants, banks, gateways and service providers.
Curriculum
What You Will Learn
The Payment Card Ecosystem
- Cardholder and sensitive authentication data
- Brands, issuers, acquirers, merchants and service providers
- Transaction lifecycle and flow
Cloud Service Providers
- Shared responsibility for card data
- Validating cloud and third-party providers
PCI DSS v4.x Standard
- Structure, goals and the 12 requirements
- What changed from v3.2.1
- The role of the PCI Security Standards Council
Route to Compliance
- Planning an implementation from scratch
- Roles, evidence and validation approach
Managing the PCI DSS Programme
- Governance and ownership
- Keeping controls effective as a continuous process
Merchant & Service Provider Levels and SAQs
- Determining your validation level
- Choosing the right Self-Assessment Questionnaire
Scoping & Segmentation
- Identifying the cardholder data environment
- Reducing scope with network segmentation
Targeted Risk Analyses
- When v4.x requires one
- Documenting and justifying control frequency
Implementing the PCI DSS Requirements
- Practical controls across all 12 requirements
- Evidence that stands up to assessment
Transition Approach
- Moving from v3.2.1 cost-effectively
- Planning for future-dated requirements
Learning Outcomes
What You Will Be Able To Do
Implement PCI DSS v4.x from scratch, requirement by requirement.
Define and minimise the cardholder data environment through sound scoping and segmentation.
Select the correct validation level and SAQ for your organisation.
Run targeted risk analyses and justify your control decisions to assessors.
Manage the PCI responsibilities shared with cloud and third-party service providers.
Plan a cost-effective, low-disruption transition from PCI DSS v3.2.1.
Ready to Become a Certified PCI DSS Implementer?
Book a free consultation and we will help you plan your CPISI journey.
Complete Package
What's Included
Live, practitioner-led training
Interactive sessions with room for questions on your own PCI scope.
Course slides & reference materials
Slides for every section plus reference materials to revisit after the programme.
Knowledge checks & exercises
Short quizzes and hands-on exercises that reinforce each module.
CPISI certification exam
Online exam: 50 questions, 1 hour, 66% to pass, taken within 10 calendar days of finishing the training.
Common Questions
Frequently Asked Questions
Payment security guides
Become a Certified PCI DSS Implementer
Practitioner-led training on PCI DSS v4.x with an online CPISI certification exam.