PCI compliance paramount for small merchants

Perhaps more so than their larger counterparts, PCI compliance is essential for Level 4 merchants, as a new Trustwave report reveals that many incidents occur among these small merchants.MasterCard and Visa define Level 4 merchants as those that process fewer than 20,000 ecommerce transactions annually and all other merchants processing up to 1 million Visa transactions annually. According to Payment Card Trends and Risks for Small Merchants report from Trustwave, 90 percent of compromises involve Read more [...]

Experts: PCI DSS failing to improve data security

Experts believe that the Payment Card Industry Data Security Standard does not go far enough to improve data security, concludes a recent report published by the Ponemon Institute.The data security and policy research firm interviewed 670 IT security professionals at U.S. and multinational organizations. Results show that, while respondents have experienced fewer breaches by meeting PCI compliance, they still don't feel the requirements go far enough.Sixty-four percent of PCI compliant respondents Read more [...]

Update: PlayStation breathes sigh of relief

Recently, Sony suffered one of the biggest data breaches in memory, causing the shutdown of its virtualized PlayStation Network. According to the Press Association, there was an "illegal and unauthorized" intrusion that may have put the personal information of the network's 70 million users at risk.This breach had the potential to be catastrophic, and the public braced for the worse. However, fears have been partially alleviated, as now it appears that payment card information was Read more [...]

Australian banks tighten PCI compliance standards

Despite economic hardships, banking institutions in Australia are implementing tighter standards and stricter penalties on companies after years of compliance breaches, experts say.According to CIO Magazine, all companies that accept payment cards - Visa and Mastercard specifically - are required to implement 12 high-level security controls prescribed by the standard in order to help mitigate credit card fraud. Larger companies face significantly tougher compliance requirements than smaller firms Read more [...]

Study: Stringent standards may prevent security breaches

The exchange of payment card information necessitates that companies in a multitude of industries meet certain standards. These regulatory codes are beneficial to businesses striving for system interoperability, and may also prevent unwanted access to critical financial information.According to Imperva and the Ponemon Institute, a new study has found that businesses compliant with PCI standards are less likely to suffer security breaches.The study focuses on data breach reports by both PCI-compliant Read more [...]

Healthcare merchants falling behind in PCI compliance

Hospitals, doctor's offices, dental practices, pharmacies and other healthcare organizations are struggling to deploy PCI-complaint technologies and policies because many lack the IT resources to invest in such systems.A recent PCI Free report explains most large medical facilities with dedicated IT staff have minimal trouble maintaining PCI compliance standards. However, small practices and other minor medical facilities lack the IT staff and infrastructure to properly meet PCI compliance demands.The Read more [...]

Trends in the PCI compliance market

The Payment Card Industry Data Security Standards were recently updated to version 2.0, and the transition to the new PCI compliance regulations has put an unusually large spotlight on the PCI DSS.According to a recent TechTarget report, this emphasis on PCI standards has clarified a few key industry trends that are impacting how businesses secure payment card data.One of those trends has to do with time. The PCI DSS 2.0 will have a three-year life cycle, giving companies plenty of time to deploy Read more [...]

Encryption becoming popular for PCI compliance

PCI compliance dictates companies maintain their IT infrastructure within certain parameters to ensure consumer payment card data remains safe. While it is possible to achieve these standards through advanced security infrastructure alone, data encryption is a growing trend in the PCI compliance market.Encryption is one way to combat many of the risks associated with data loss. According to a recent survey performed by the Ponemon Institute, encryption is quickly becoming one of the most popular Read more [...]

Applying technologies to achieve PCI compliance

The Payment Card Industry Data Security Standards are becoming more powerful in the global marketplace. Recently, these critical compliance regulations were updated to a new version that addresses the changing technological climate.According to a recent IT Business Edge report, reaching new PCI compliance standards will not be easy, but there are a few technologies that businesses can enlist in their data loss prevention strategies.Point-to-point encryption is one of the strategies cited by the report Read more [...]

Managing security on multiple channels

For businesses and retailers striving to reach PCI compliance standards, it can be easy to miss some critical security practices that are becoming necessary in a technological marketplace dependent on a diverse range of channels.According to a recent Retail Info Systems News report, merchants are increasingly moving their services into new channels, such as mobile commerce, and failing to adapt their security solutions appropriately.The report said maintaining security similar to PCI compliant levels Read more [...]