Email Alerts
-
TJX faces data audits for 20 years under FTC settlement
TJX Cos Inc. agreed to implement tighter security and obtain independent audits every other year for 20 years, according to a settlement reached with the Federal Trade Commission. Article
-
How would you meet PCI requirement 2.3 when it comes to terminal service or RDP sessions?
What's the best way to comply with PCI DSS without having to create a secure IPsec tunnel with every connection to critical systems? Security management expert Mike Rothman gives his advice. Ask the Expert
-
Solidcore launches PCI file integrity software
New software from Solidcore Systems Inc. addresses section 10 and 11 of the PCI standard, enabling administrators to record and monitor changes to protected files. News
-
PCI compliance drives identity management spending, says IBM's GRC chief
Kristin Lovejoy came to IBM as chief technology officer of Consul Risk Management, which was acquired by Big Blue in early 2007. Lovejoy helps contribute to IBM's company-wide security strategy, overseeing the company's governance, risk and complianc... Interview
-
How to store and secure credit card numbers on the LAN
How do small companies typically store credit card numbers on their LANs? Joel Dubin comments. Answer
-
How are the PCI DSS deadline extensions affecting corporations' desire to become compliant?
Becoming PCI DSS compliant is hard work for financial institutions, but will deadline extensions help? Ask the Expert
-
Quiz: Developing a risk-based compliance program
A five-question multiple-choice quiz to test your understanding of the content presented by expert Richard Mackey in this lesson of SearchSecurity.com's Compliance School. Quiz
-
How to apply ISO 27002 to PCI DSS compliance
The Payment Card Industry Data Security Standard may be fairly straightforward, but it's lacking in defining the processes that will ultimately lead to PCI DSS compliance. In this tip, expert Richard Mackey explains why the ISO 27002 can not only hel... Tip
-
Why are there still various independent credit card security standards?
PCI DSS has become the well-known information security standard for credit cards, but vendors can still have different approaches to card data security. Ask the Expert
-
Governor rejects data security law
California Gov. Arnold Schwarzenegger rejected a bill that would have placed more liability on businesses in that state to protect credit card data. Article
Security Management Strategies for the CIO