Under PCI-DSS compliance requirements, which practice is mandatory when storing cardholder data?
-
A
Store card data in plain text for easy retrieval
-
B
Encrypt stored cardholder data using strong cryptography
-
C
Limit storage to spreadsheets accessible to the team
-
D
Back up card data to personal cloud storage