Last Updated on June 19, 2026 by Narendra Sahoo
PCI DSS v3 has been protecting card holders for years, but as the number of card holders increase so do the threats of cybercrimes. To counter the threats of cybercrimes and absorb emerging technologies, the PCI Council launched its v4 version.
As organizations shift to the v4 version, here are all the differences between v3 and v4 and how it affects your organization.

Narendra Sahoo (PCI QSA, PCI SSFA, CISP, CISA, CRISC, 27001 LA) is the Founder and Director of VISTA InfoSec, a global information security consulting firm. With 21 years of experience in information security consulting, assessment and compliance services, Narendra has helped organizations address complex cybersecurity and regulatory requirements across global markets.