PCI's Five Toughest Requirements
In an article titled 'Guide to passing PCI's five toughest requirements" on SearchSecurity, Craig Norris writes about some survey results from VeriSign that identify the toughest requirements of the PCI-DSS standard for organizations to comply with.
At the top of the list is the most basic one: protecting stored data. There's a separate article titled "Strategies for success -- PCI DSS Requirement 3: Protecting stored data" that has tips for ensuring compliance with that particular requirement and which notes: "one of the biggest problems with this requirement is that merchants must accurately know where credit card data flows from its inception, where it traverses the network and resides, and what its "state" is along the way."







Add your comment... (note that all comments are reviewed before they're published)