Making PCI Stand For Coordination & Impact
Daniel Wallace, Information Security Consultant
It will be no small task in terms of cost and effort for many of the impacted companies to make the transition from self-assessment to onsite 3rd party assessment. However, there are ways to lessen the burden and actually drive business-value from the engagement.
PCI SSC Seeks Input on Security Standards
From the PCI Security Standard Council
During phase two of the lifecycle process, between July 1 and November 1, 2009, merchants, processors, financial institutions and other key stakeholders have the opportunity to provide detailed and actionable feedback in an effort to revise future editions of the Council’s standards to improve payment data security.
PCI SSC ANNOUNCES NEW BOARD
From the PCI Security Standard Council
“Our Participating Organizations came out in force in the recent Council nominations and election process. It is exciting to see such widespread participation,” said Bob Russo, general manager, PCI Security Standards Council. “I would like to congratulate not only our new Board of Advisors but everyone who continues to join the Council in pursuing its mission of securing payment card data, through these collaborative processes. I’m confident our new Board of Advisors will build upon the success of their predecessors in helping the Council to effectively evolve the PCI standards and bring new tools and resources to market to help improve education and implementation of PCI standards.”
ISR News: PCI STANDARDS TRAINING
From The PCI Security Standards Council:
The two-day course entitled Standards Training, is designed to help merchants improve preparation for on site assessment, understand what is involved in creating their own internal assessment capability and establish an internal compliance program to help them sustain PCI DSS security practices and compliance when the assessment process is completed.
PCI Security Standards Council Issues Guide
From the PCI Security Standards Council:
“Securing cardholder data is the ultimate priority and following the PCI DSS is the best way to achieve this. The Prioritized Approach framework will help stakeholders understand where they can act to reduce risk earlier in their journey towards PCI compliance,” said Bob Russo, general manager, PCI Security Standards Council. “The launch of these new guidance and interactive documents are another step by the Council to increase understanding of and education around PCI DSS among merchants, providing them with insight into how they can protect card holder data faster and demonstrate progress and compliance with the PCI DSS.”


