Premium Content

Access "Robust information security program key to PCI compliance requirements"

Eric Holmquist Published: 18 Oct 2012

Every day, compliance professionals make determined efforts to satisfy the litany of laws, regulations, and policy mandates that make up the information security world, all while fending off relentless attempts by faceless enemies with limited resources and varying degrees of institutional support.  And yet, in this eternal pursuit of the two illusive (if not entirely theoretical) goals of data security and security compliance, there are common mistakes that tend to trip people up. For those that are subject to  PCI compliance requirements, at least PCI DSS provides some specific, if not prescriptive, requirements for internal systems and structures.  But, it doesn’t provide the framework for a security program.  There are practical ways for organizations to build on those technical specifications  and focus their efforts on satisfying their compliance mandate, as well as building a robust, comprehensive information security program. One of the most important points to realize is that “compliant” does not mean “secure.”  This is often said, but it bears ... Access >>>

Access TechTarget
Premium Content for Free.

By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

What's Inside

Features

More Premium Content Accessible For Free

  • Compliance and risk modeling
    ISM_cover_may_2013.png
    E-Zine

    You can fight compliance or embrace it, but one way or the other, you can’t escape it. Increasingly, smart organizations are not just accepting ...

  • Essentials: Threat detection
    ISM_supplement_cover_0513.png
    E-Zine

    Antivirus and intrusion prevention aren’t the threat detection stalwarts they used to be. With mobile endpoints and new attack dynamics, enterprises ...

  • Managing identities in hybrid worlds
    ISM_april_2013_landscape.PNG
    E-Zine

    The world in which successful IAM programs must be implemented is increasingly complex, a mix of legacy on-premise IAM infrastructures, cloud-based ...