Mark Stoudemire is a Senior Associate at Schellman, bringing over 15 years of technical expertise to the firm. Before joining Schellman, he worked as a consultant specializing in IT audit, regulatory compliance, and network security. In his current role, Mark primarily leads PCI-DSS assessments, while also leveraging his broad experience conducting SOC 1 and SOC 2 audits for clients across diverse industries. Mark holds a Master of Science in Cybersecurity and Information Assurance from Western Governors University. He also maintains several respected industry certifications, including CISSP, CISA, and PCI QSA.
Payment Card Assessments | PCI DSS
By:
Mark Stoudemire
October 13th, 2025
As organizations continue to transition to PCI DSS v.4.x, they encounter updated requirements for authentication, especially considering the emerging phishing-resistant technologies like passkeys. To help clarify these changes, the PCI Security Standards Council has released two key FAQs: FAQ 1595 and FAQ 1596, offering valuable insights into the use of passkeys, FIDO2-based authentication, and their alignment with multi-factor authentication (MFA) and phishing-resistant protocols.