Email Alerts
-
Data breach discovery, disclosure outpaces 2007
More data breaches have been reported so far this year than in all of 2007, according to a report released by a nonprofit group that works to prevent fraud. Article
-
PCI groups to focus on wireless, pre-authorization changes
The PCI Security Standards Council has started two special interest groups to focus on pre-authorization and wireless security issues. Article
-
PCI DSS 1.2 clarifies wireless, antivirus use
Version 1.2 of PCI DSS, due out in October, requires 802.1x for wireless protection and antivirus for all operating systems, according to a summary of the changes issued Tuesday. Article
-
Compliance recycling: Combining compliance efforts to manage PCI DSS
While the Payment Card Industry Data Security Standard (PCI DSS) looms large over most enterprises' compliance efforts, it doesn't necessarily mean abandoning other compliance efforts. Expert Diana Kelley explains not only how to use existing control... Tip
-
PCI Requirement 6.6 has merchants gearing up
Large organizations opt for Web application firewalls, smaller companies lean toward code reviews. Article
-
PCI compliance extends to car washes, quick lubes
A point-of-sale system supplier for car washes and quick lubes protects its machines from viruses and other malware and enables PCI compliance. Article
-
PCI automation: Discovering the benefits
Complying with PCI is just the beginning – staying compliant can be a challenge as well. However, automation is one option. Qualified Security Assessor Spyro Malspinas suggests two automation opportunities for financial firms to overcome the ch... Tip
-
PCI council to launch assessor quality assurance program
Staff will evaluate merchant feedback on the quality of their assessors and issue probations and revoke certification for negative comments. Article
-
The 'security standards dilemma': Network segmentation and PCI Compliance
The Hannford Bros. data security breach led many to believe that even PCI-compliant organizations did not properly segment their networks -- or that PCI does not adequately address the importance of network segregation. Contributor Stephen Cobb expla... Tip
-
NSS Labs to focus research on PCI technologies
In this podcast, Rick Moy of NSS Labs talks about how the firm's research help companies make informed buying decisions for PCI. Article
Security Management Strategies for the CIO