A payments company discovers that a rogue employee has been exfiltrating cardholder data for six months. Which FIRST step best aligns with PCI DSS incident response requirements?
-
A
Immediately notify all affected cardholders
-
B
Contain the breach and preserve forensic evidence
-
C
Terminate the employee and reset all passwords
-
D
File a police report before taking any internal action