IT Specialist & Developer
IT Specialist Personal Blog, Specialized in Information Security, Compliance, Business Development, and Active Software Developer
-
Clearly written and easy to use, Payment Card Industry Data Security Standard Handbook is your single source along the journey to compliance with the Payment Card Industry Data Security Standard (PCI DSS), addressing the payment card industry standard that includes requirements for security management, protection of customer account data, policies, procedures, network architecture, software design, and other critical protective measures. This all-inclusive resource facilitates a deeper understanding of how to put compliance into action while maintaining your business objectives.
-
Does PCI-DSS really protect card holder data?
The ultimate target of PCI-DSS Compliancy controls is to protect card holder data or what they call it PAN (Primary account number).
Why does it focus highly in PAN? Simple answer, PAN is the direct required parameters to do offline transactions (card not present)!
-
PCI-DSS is a work style
PCI-DSS one of most respected compliancy requirements for Financials; it is currently of the major features that products advertise itself by being PCI-DSS Compliant.
Every Financial institution I know either fully PCI-DSS compliant or engaged into getting compliant. However getting the certificate is not the end of the story. Although PCI-DSS mandates a review process dependent of controls types, those reviews are not enough to keep concrete compliancy with PCI-DSS.