This document summarizes a panel discussion on achieving PCI compliance in virtualized and cloud computing environments. The panelists discussed key challenges of PCI compliance in these environments, including increased risks from information leakage and lack of visibility. They emphasized the shared responsibility model between merchants and cloud providers, and advised merchants to understand the scope of their provider's PCI certification. The panel provided guidance on engaging a QSA early, adopting a virtualization by default approach, and starting with dedicated hosting before moving to public clouds. Resources for PCI compliance in virtualization and cloud were also listed.