Making PCI Stand For Coordination & Impact

June 29, 2009 by ADMIN · 1 Comment

Daniel Wallace, Information Security Consultant

It will be no small task in terms of cost and effort for many of the impacted companies to make the transition from self-assessment to onsite 3rd party assessment. However, there are ways to lessen the burden and actually drive business-value from the engagement.

PCI SSC Seeks Input on Security Standards

June 24, 2009 by ADMIN · Leave a Comment

From the PCI Security Standard Council

During phase two of the lifecycle process, between July 1 and November 1, 2009, merchants, processors, financial institutions and other key stakeholders have the opportunity to provide detailed and actionable feedback in an effort to revise future editions of the Council’s standards to improve payment data security.

PCI SSC ANNOUNCES NEW BOARD

May 21, 2009 by ADMIN · 3 Comments

From the PCI Security Standard Council

“Our Participating Organizations came out in force in the recent Council nominations and election process. It is exciting to see such widespread participation,” said Bob Russo, general manager, PCI Security Standards Council. “I would like to congratulate not only our new Board of Advisors but everyone who continues to join the Council in pursuing its mission of securing payment card data, through these collaborative processes. I’m confident our new Board of Advisors will build upon the success of their predecessors in helping the Council to effectively evolve the PCI standards and bring new tools and resources to market to help improve education and implementation of PCI standards.”

Payment Card Industry Swallows Its Own Tail

April 1, 2009 by ADMIN · 10 Comments

By Anthony M. Freed, Information-Security-Resources.com Financial Editor

Anyone who has been following the cascade of security failures plaguing the payment card industry in the last year, and punctuated by the still-shrouded breaches at RBS WorldPay (RBS) and Heartland Payment systems (HPY), has to acknowledge that there are major problems with security that need to be addressed pronto. But the greatest threat to the survival of PCI DSS (Payment Card Industry Data Security Standard) may not be the ever-evolving tactics of the criminal hackers intent on a “big score,” but instead the dysfunctional nature of the relationships between the very parties the standards are meant to serve.

Visa Puts Heartland on Probation Over Breach

March 13, 2009 by ADMIN · 6 Comments

By Anthony M. Freed, Information-Security-Resources.com Financial Editor

System Participation - HPS is now in a probationary period, during which it is subject to a number of risk conditions including more stringent security assessments, monitoring and reporting. Subject to these conditions, Heartland will continue to serve as a processor in the Visa system.