As part of PCI info security requirements, Bodily cardholder information will have to also be stored inside of a secure spot, for instance a locked space or storage space with limited access. SOC two is a security framework that specifies how companies should really safeguard purchaser details from unauthorized access, https://www.nathanlabsadvisory.com/nist-800-cyber-security-frame-work.html