Lawsuit: A Heartland Manager Resigned Because Of PCI Compliance Issues

Heartland relationship managers were told that PCI compliance was not a big deal. One of Heartland’s relationship managers resigned on or around April 23, 2009, in part because of Heartland’s statements regarding its PCI compliance
via StorefrontBacktalk » Blog Archive » Lawsuit: A Heartland Manager Resigned Because Of PCI Compliance Issues.

Federal Taskforce To Focus On Cybersecurity Metrics — Cybersecurity — InformationWeek

FISMA metrics need to be rationalized to focus on outcomes over compliance,” Kundra wrote in a blog post announcing the move. “Doing so will enable new and actionable insight into agencies #FISMA
via Federal Taskforce To Focus On Cybersecurity Metrics — Cybersecurity — InformationWeek.

Upwards of 55% of credit card fraud comes from the hospitality industry #PCI

Upwards of 55% of credit card fraud comes from the hospitality industry (The PCI Compliance Process for Hotels, American Hotel & Lodging Association).
via PCI Compliance – Why spas, hotels and resorts can no longer ignore it! – By Fauzi Zamir, COO, ResortSuite :: Hotel News Resource.

PCI-DSS – I am certified, therefore I am secure #PCI

Interesting article …
PCI has done a LOT to further security in an industry where information security was never considered a topic worth mentioning. I can remember 5-7 years back when retailers were all about razor-thin margins (they still are – that hasn’t changed) and security to them meant physical security – guards, sensors, cameras – [...]

The Two Scenarios Coming From The PWC PCI Report

The consultants at PWC began with an analysis of 12 security technologies that emerged from 160 interviews with industry players, and then narrowed the list for their “deep dive” investigation to several that they concluded had the best potential to be automated, could be integrated with existing infrastructures and could have a meaningful potential impact [...]

Cyber Defense: Size Doesn’t Matter – FISMA

I just received an “F” on the most recent FISMA report, so I had a lot of work to do there to get into compliance with that mandate. Also saw a whole lot of people working very hard, trying to improve security. I think it was a matter of just needing some direction, some coordination, [...]

Mixed PCI DSS compliance puts consumers at risk | 23 Sep 2009 | ComputerWeekly.com

Some 79% of US and multinational companies surveyed said they had lost credit card information, yet only 29% use PCI DSS as part of their security strategy.
Over half (55%) said they focus on protecting only credit card data and do not attempt to secure other sensitive customer information, the survey showed.
via Mixed PCI DSS compliance [...]

Spurs aiming for the goal of PCI card security compliance – 15 Sep 2009 – Computing

Premier League football club Tottenham Hotspur has a critical short-term goal to achieve – other than trying to remain near the top of the table.
The club is racing against an October deadline to roll out compliance with the payment card industry’s data security standard (PCI DSS).
Spurs processes 700,000 credit card transactions a year, and a [...]

CMS HIPAA Security Review: Encryption & Employee Background Checks Mandatory, MT Providers Next Under The Microscope?

The first batch of government reviews of covered entities (CEs) for compliance with the security rule revealed a host of deficiencies, ranging from failure to conduct even an initial risk assessment to inconsistent employee training, according to a summary of findings and recommended corrective actions recently released by CMS.
via The XY Files in an MT [...]

Solution Providers’ Input Sought for #PCI Security Standard Update – Security

Solution providers who have been frustrated by the PCI DSS now have the chance to voice their positions and request changes. The PCI Security Standards Council is currently soliciting feedback as it prepares to update the standard.
Stakeholders in the compliance process have through the end of October to offer feedback and critiques, with some of [...]