PCI DSS
Tag details
Welcome to the 'PCI DSS' tag page at Technorati. This page features content from the farthest reaches of the Blogosphere that authors have "tagged" with 'PCI DSS'.
Latest blogosphere posts tagged “PCI DSS”
-
A 12 STEP PROGRAM TO SECURING YOUR SMALL-TO-MEDIUM SIZE BUSINESS: STEP 4
Wael Isa —
Authority: 141
This is the fourth in a series of twelve articles for the non-technical managers at small to medium sized companies who operate smaller networks and may lack a sophisticated in-house information technology department. Cost: Moderate – Software is free but effective tuning takes time Technology skill level: ...1 day ago -
Common Areas for PCI Violation
Memmis.com News Agency —
Authority: 159
With so many threats coming from around the world targeting a companys data, which includes their customers data, the business industry created PCI compliance standards to protect sensitive information. PCI Compliance is a global mandated set of standards that businesses must implement and follow in order to protect ...3 days ago -
Amazon Cloud Attacked – Lessons Learned
Payment Card Security & IT Controls Explained —
Authority: 108
As mentioned in prior posts, Cloud security and addressing the risks that exist (the new risks and the new tools to address these risks) is fundamental to ensuring a successful and beneficial use of the Cloud provider environments. The RSA London conference held several strong documents highly to help approach the ...4 days ago -
PCI Compliance Does Not Equal Security
Information Security Resources —
Authority: 472
By Danny Lieberman , Security Expert and Founder of Software Associates I recently saw a post from a blog on a corporate web site from a company called Cloud compliance, entitled Compliance is the New Security Standard . Cloud Compliance provides a SaaS-based identity and Access Assessment (IdAA) solution ...1 week ago -
Only 3 Seats Left for Dallas CPISM/A!
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
The Dallas CPISM/A training and certification course has filled up quickly and we only have 3 seats left. If you are interested in attending the November 10-13th event, sign up soon. After reviewing the registrants, this should be a very interactive course with some great comments and input from the participants and ...2 weeks ago -
Another End to End / Tokenization Entrant
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
Everyone who has read my blogs over the past few years or spoken to me about PCI DSS knows my feelings on end-to-end encryption and data replacement technologies. I have a huge proponent and feel that these technologies will help secure our industry and provide significant benefits in reduction of PCI DSS ...2 weeks ago -
Abstract About PCI Regulation Discussion
Computer Training Blog —
Authority: 136
PCI DSS is Payment Card Industry Data Security Standard, a collaborative effort to achieve a common set of security standards for use by entities that process, store, or transport payment card data. This is adequate for: all merchants like “store, process, or transmit cardholder data” and all payment channels ...2 weeks ago -
China Expands Cyberspying in the US
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
The Wall Street Journal has a very interesting article out today that talks about cyberspying in the US. A report released today by the U.S.-China Economic and Security Review Commission indicates that the Chinese government is ratcheting up their cyber espionage efforts in the US. US companies have been ...2 weeks ago -
Internal Clouds Are More Than Just VMware
Information Security Resources —
Authority: 472
By Dwayne Melancon , Tripwire’s VP of Corporate and Business Development I was just reading a NetworkWorld article called Internal Clouds are More Than Just Virtualization and it’s got some pretty good data (and perspective) about how companies view internal clouds. One interesting (but not so surprising) ...2 weeks ago -
California Taking a Step Back?
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
California has long been credited with the creation of the state breach notification law. For many in the security world breach notification and SB 1386 are practically synonymous. Over the years since its passage, however, breach notification laws have undergone a number of evolutionary changes - central reporting ...2 weeks ago -
The Truth About Regulatory Compliance
Information Security Resources —
Authority: 472
By Steven Fox , Founder of SecureLexicon This is the first part of my podcast interview with Edward Schwartz, CSO of NetWitness . In this installment, Mr. Schwartz comments on regulatory compliance as a driver for security spending. Regulatory compliance was cited as a driver for ...3 weeks ago -
PCI DSS* - where Open Source should have an advantage
WordsOfMine.Com —
Authority: 143
Over the past few weeks and months I’ve been helping to develop a PCI DSS System for a client.It is necessary to a few integrity checks,tripwire monitors to set up and automate - and having the services that are running audited for secure protocols - aa well as policies in place to make sure that [...]3 weeks ago -
Only 5 Seats Left for Dallas CPISM/A!
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
The Dallas CPISM/A training and certification course has filled up quickly and we only have 5 seats left. If you are interested in attending the November 10-13th event, sign up soon. After reviewing the registrants, this should be a very interactive course with some great comments and input from the participants and ...3 weeks ago -
SC Magazine: Can the phone be a second factor in authentication?
PhoneFactor —
Authority: 108
PhoneFactor vice president Sarah Fender suggests phone-based authentication for easy, cost-effective compliance with PCI DSS requirement 8.3. “Although the 8.3 requirement is clear, achieving compliance with the requirement is not necessarily clear cut… For many organizations, phone-based authentication ...3 weeks ago -
Black Hat: Articulating the Value of Security
Information Security Resources —
Authority: 472
By Steven Fox , Founder of SecureLexicon This is the second part ( Part One ) of my Black Hat interview with Barmak Meftah , Sr. VP, Products & Services at Fortify. In this installment, Mr. Meftah discusses ways to evangelize security. How do we market security? The cyber-bullies among us might ...4 weeks ago -
Looking for help. Starting a Charity…
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
While this is not a PCI related question or security related topic, I am looking for some advice and/or help.Heather and I had our first baby about 3 weeks ago. We were blown away with how expensive it is to have/feed/cloth and generally take care of a new baby. We do pretty well financially and [...]5 weeks ago -
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
5 weeks ago -
Society of Payment Security Professionals - Payment Security Blog —
Authority: 108
5 weeks ago -
Two-Factor Security Is A Must for PCI Compliant Hosting
PhoneFactor —
Authority: 108
Two-factor security is critical for managed hosting providers, particularly those who host payment applications and e-commerce websites. Not only is it required by the Payment Card Industry Data Security Standard (PCI DSS), but it is essential to protect against today’s threats. A recent breach at Network Solutions ...7 weeks ago -
Managed Hosting Provider GSI Chooses PhoneFactor for Simple, Cost-Effective PCI DSS Compliance
PhoneFactor —
Authority: 108
September 16, 2009 – PhoneFactor, a leading provider of two-factor authentication services, today announced that GSI, provider of specialized managed hosting products and services, has selected its phone authentication technology to secure client access to GSI’s management portal. GSI provides Fortune 500 ...7 weeks ago