Should your application involves your consumers to enter their info on their own personal devices, Then you really qualify for SAQ A. Formally attest your compliance. An AOC (attestation of compliance) is the form you utilize to sign that you’ve accomplished PCI DSS compliance. Ending your questionnaire without having “Erroneous” https://www.nathanlabsadvisory.com/nist-800-cyber-security-frame-work.html