The company I currently work for is undertaking a PCI/DSS project around it's store back office and POS systems.
One of the issues we're facing is how to meet the requirements for logins for store cashiers while at the same time meeting some of the base level PCI/DSS requirements.
In specialty retail, cashiers tend to have high turn-over rates (as compared to the broader workforce of the company) and the desire is usually to facilitate speed at the cash wrap. These seem to be contradictory goals with the comlexities a more stringent security mechanism will bring to bear.