This document provides an overview and summary of changes to PCI DSS v3.2, including timelines and new/updated requirements. Key changes include expanded multi-factor authentication requirements, additional requirements for service providers, updated PAN display requirements, and a new change control process requirement. The timeline outlines that PCI DSS v3.2 was published in April 2016, with new requirements effective October 31, 2016. PCI DSS v3.1 will retire on February 1, 2018 when all assessments must use v3.2.