|
Solution Search:
|
Related Articles
PCI DSS Council adding new standard for payment applications
the Payment Card Industry Security Standards Council is adding a new provision to the PCI Data Security Standard (PCI DSS).
The council, which manages PCI DSS and the PCI PIN Entry Device (PED) security requirements, said Wednesday that the Payment Application Data Security... More...
Don't blame PCI DSS for TJX troubles, IT pros say
at TJX Cos. Inc. and elsewhere have some questioning whether the Payment Card Industry Data Security Standard (PCI DSS) is tough enough to quell the epidemic. But most IT security professionals say the problem isn't PCI DSS, but the lax manner in which companies try to implement...
More...
How Chevron met the PCI DSS deadline
trouble understanding everything that would be required under the Payment Card Industry's Data Security Standard (PCI DSS). As global information protection architect for Chevron, he has long dealt with the demands of regulatory compliance.
Bound by "every regulatory law ever... More...
PCI DSS requirements still baffling as compliance deadline approaches
that one of three U.K. companies still does not fully understand Payment Card Industry's Data Security Standard (PCI DSS) requirements, and only 11% say they are compliant with the standard.
The figures come from a study carried out by Redshift Research Ltd. on behalf of security... More...
Visa hopes encouragement improves lagging PCI DSS adoption
NEW YORK -- Visa executives are trying to encourage merchants to comply with the PCI Data Security Standards (PCI DSS), and raise lagging adoption rates in the program.
Speaking to about 50 attendees at a day-long Advanced PCI DSS Conference in New York, Jennifer Fischer... More... Related Advice
Should PCI DSS auditors be subjective?
nature of different technology environments, it's not possible to define regulations tightly enough to remove subjectivity.
If we are talking about PCI DSS specifically, let's take its first requirement -- "Install and maintain a firewall configuration to protect data." How is that anything but subjective... More...
How to protect credit card data over the phone – and pass PCI DSS
As my organization moves towards PCI DSS compliance, I have been asked by our call centre to look at installing a recording function on the phone system. The problem is that card transactions...
More...
Will the PCI DSS require encryption over dedicated lines?
over dedicated lines. The passing of unencrypted data over a closed network carries only a small risk, and there are simply much greater threats that the PCI DSS must protect against. We're far more likely to see changes similar to the stricter revisions of the PCI Data Security Standard version 1.1. For example...
More...
|