[PCI DSS 3.0] 5.4 Ensure that security policies and operational procedures for protecting systems against malware

5.4 Ensure that security policies and operational procedures for protecting systems against malware are documented, in use, and known to all affected parties.

5.4 Examine documentation and interview personnel to verify that security policies and operational procedures for protecting systems against malware are:
• Documented,
• In use, and
• Known to all affected parties.

Personnel need to be aware of and following security policies and operational procedures to ensure systems are protected from malware on a continuous basis.