Main site ↗

Docs / GAISSF™ / Crosswalk

GAISSF™ to PCI DSS Crosswalk

ID GAISSF-CRO-032 Framework GAISSF™ Type Crosswalk

Download PDF Document record

Read this first. A crosswalk records a documented correspondence under stated criteria. It does not establish compliance, equivalence, endorsement or certification.
What it coversThis crosswalk contains 187 outcome-based records covering all 59 GAISSF™ controls and all 12 PCI DSS requirement families. It supports payment-security control rationalization, gap analysis and evidence planning.
Scope and limitsNo basis was found to claim PCI DSS certification, automatic scope reduction, QSA approval, payment-brand acceptance, satisfaction of every subrequirement, operating effectiveness, or PCI SSC endorsement.
Edition mappedPCI DSS v4.0.1

Revision history

Date (as stated)EventWhat changed
2026PublicationPublished as v1.0Source: Page metadata (/crosswalks/cro-032-pci-dss/)
7 October 2026Document revisionDraft for Publication issued, public and in full; maps PCI DSS v4.0.1 (verification date 29 June 2026); independent crosswalk review openSource: GAISSF-CRO-032_GAISSF-PCI-DSS-Mapping_v1.0.pdf
7 October 2026File correctionWebsite summary: list of publication files now names the files published here (PDF, XLSX, JSON); DOCX and Markdown entries removed (document date unchanged)Source: GAISSF-CRO-032_GAISSF-PCI-DSS_Website-Summary_v1.0.pdf

Website record last updated 7 October 2026. This is the web page, not the document.

More from GAISSF™

SEC-047GAISSF™ Telecommunications Sector Implementation Guide
NOR-001GAISSF™ Framework Standard
NOR-002GAISSF™ Executive Summary
NOR-003GAISSF™ Quick Start Guide
Cite this document
ODA3 Institute. GAISSF™ to PCI DSS Crosswalk (GAISSF-CRO-032), v1.0. Published 2026. docs.oda3.org/documents/cro-032/

Report a correction or ask about this publication