GAISSF™ to PCI DSS Crosswalk
ID GAISSF-CRO-032
Framework GAISSF™ Type Crosswalk
Read this first. A crosswalk records a documented correspondence under stated criteria. It does not establish compliance, equivalence, endorsement or certification.
What it coversThis crosswalk contains 187 outcome-based records covering all 59 GAISSF™ controls and all 12 PCI DSS requirement families. It supports payment-security control rationalization, gap analysis and evidence planning.
Scope and limitsNo basis was found to claim PCI DSS certification, automatic scope reduction, QSA approval, payment-brand acceptance, satisfaction of every subrequirement, operating effectiveness, or PCI SSC endorsement.
Edition mappedPCI DSS v4.0.1
Revision history
| Date (as stated) | Event | What changed |
|---|---|---|
| 2026 | Publication | Published as v1.0Source: Page metadata (/crosswalks/cro-032-pci-dss/) |
| 7 October 2026 | Document revision | Draft for Publication issued, public and in full; maps PCI DSS v4.0.1 (verification date 29 June 2026); independent crosswalk review openSource: GAISSF-CRO-032_GAISSF-PCI-DSS-Mapping_v1.0.pdf |
| 7 October 2026 | File correction | Website summary: list of publication files now names the files published here (PDF, XLSX, JSON); DOCX and Markdown entries removed (document date unchanged)Source: GAISSF-CRO-032_GAISSF-PCI-DSS_Website-Summary_v1.0.pdf |
Website record last updated 7 October 2026. This is the web page, not the document.
More from GAISSF™
| SEC-047 | GAISSF™ Telecommunications Sector Implementation Guide |
| NOR-001 | GAISSF™ Framework Standard |
| NOR-002 | GAISSF™ Executive Summary |
| NOR-003 | GAISSF™ Quick Start Guide |
Cite this document
ODA3 Institute. GAISSF™ to PCI DSS Crosswalk (GAISSF-CRO-032), v1.0. Published 2026. docs.oda3.org/documents/cro-032/
ODA3 Institute. GAISSF™ to PCI DSS Crosswalk (GAISSF-CRO-032), v1.0. Published 2026. docs.oda3.org/documents/cro-032/