PCI compliance updates released for mobile payments

The rise in cloud computing and how the use of hosted data storage solutions relates to PCI compliance have been given a lot of attention this year. However, increasing numbers for the spread of mobile payments has also caught the eye of the PCI Security Standards Council.That's evident following the recently released guidelines for mobile payments, entitled Which Applications are Eligible for PA-DSS Validation? A Guiding Checklist."We understand there is a growing demand in the marketplace Read more [...]

PCI compliance updates released for mobile payments

The rise in cloud computing and how the use of hosted data storage solutions relates to PCI compliance have been given a lot of attention this year. However, increasing numbers for the spread of mobile payments has also caught the eye of the PCI Security Standards Council.That's evident following the recently released guidelines for mobile payments, entitled Which Applications are Eligible for PA-DSS Validation? A Guiding Checklist."We understand there is a growing demand in the marketplace Read more [...]

Determining virtualization’s compliance viability

Ever since the technology rose to prominence during the past few years, much has been made about whether or not virtual environments are able to meet regulatory mandates, such as those spelled out in the PCI Data Security Standard.A recent ServerWatch report addressed the question of whether or not virtualization is able to meet compliance standards."The answer is yes - but it will even more fiendishly difficult than it is in a non-virtualized one. You have been warned," Paul Rubens said.There Read more [...]

PCI compliance standards updated for cloud-based storage

The popularity of cloud computing has grown to a point where retailers are using the technology to store payment card data. This has prompted the PCI Security Standards Council to release new updates for version 2.0 of the PCI Data Security Standard.Companies now have guidance on their responsibilities for meeting PCI compliance for payment card data stored in a third-party vendor's database. The main message was loud and clear that companies utilizing the cloud must ensure that proper security Read more [...]

Tips for data security compliance

Companies in the U.K. are tasked with complying with the mandates covered under the Data Protection Act, a wide-reaching law that aims to hold companies and organizations that store personal data accountable for protecting it.In a recent report for Supply Management, contributor Beverley Flynn offered numerous tips for companies to ensure they don't run afoul of the law.For starters, it's important for companies to know exactly what type of information is covered under the law. According Read more [...]

Tokenization is key for meeting PCI compliance

There are many data security measures a company can implement to ensure it meets the requirements of the Payment Card Industry Data Security Standard. Tokenization is one such tool that has proven especially useful, according to a recent Retail Info Systems News report.Tokenization protects sensitive information by masking it with alias values - or tokens - that are meaningless. That means, should someone access payment card data, the information he obtains is useless because it is a random jumble Read more [...]

Data management focused on addressing compliance challenges

Many companies in Australia choose to focus their data management programs on meeting compliance standards, according to a report recently issued by data solutions provider DataFlux.The poll of 140 technology executives revealed that 40 percent said their companies have plans to initiate a data management program. Many of those plans, according to respondents, received the consent of the CEO, demonstrating they recognize the importance of business data.When asked how they would focus their new programs, Read more [...]

PCI compliance takes ‘big picture’ approach

Companies that simply implement a data solution and expect to meet the requirements outlined in the Payment Card Industry Data Security Standards are horribly mistaken, according to a recent report from British news provider Computing.However, according to the report, companies in the U.K. are advised to follow the protocols of the country's Data Protection Act, as its requirements closely mirror those of the PCI DSS.For example, the U.K.'s Information Commissioner's Office, which Read more [...]

PCI compliance protects data in transit

Cyber criminals are increasingly targeting payment card data that is in transit - information moving from the point-of-sale to the merchant's data base.However, by following the requirements of the Payment Card Industry Data Security Standard, companies can ensure information is protected in transit and while it is stored, according to PCI Free, which provides data protection solutions."PCI compliance protects your business in ways you didn’t know you were vulnerable. Don’t Read more [...]

PCI compliance guidance necessary

Greater use of cloud-based services and virtual environments has many companies looking for guidance when it comes to the Payment Card Industry Data Security Standards, according to the results of a poll recently conducted by TechTarget.The technology news provider surveyed 119 IT security and compliance professionals following a recent virtual seminar. The poll revealed that 30 percent of respondents are "urgently awaiting" guidelines on the subject from the PCI Security Standards Council's Read more [...]