<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Compliance Software &#187; software</title>
	<atom:link href="http://compliancesoftware.org/tag/software/feed/" rel="self" type="application/rss+xml" />
	<link>http://compliancesoftware.org</link>
	<description>Regulatory Compliance Software - News Information and Links</description>
	<lastBuildDate>Mon, 21 May 2012 13:30:05 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>PA-DSS ‘Guidance’ for Mobile Apps Likely to Come This Year, PCI Council Says</title>
		<link>http://compliancesoftware.org/2011/01/26/pa-dss-%e2%80%98guidance%e2%80%99-for-mobile-apps-likely-to-come-this-year-pci-council-says/</link>
		<comments>http://compliancesoftware.org/2011/01/26/pa-dss-%e2%80%98guidance%e2%80%99-for-mobile-apps-likely-to-come-this-year-pci-council-says/#comments</comments>
		<pubDate>Wed, 26 Jan 2011 18:24:24 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[PCI]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1283</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2011/01/26/pa-dss-%e2%80%98guidance%e2%80%99-for-mobile-apps-likely-to-come-this-year-pci-council-says/" title="PA-DSS ‘Guidance’ for Mobile Apps Likely to Come This Year, PCI Council Says"></a>Top officials with the Wakefield, Mass.-based organization tell Digital Transactions News the Council is working on what it calls a “technology evaluation” to craft new validation procedures that more clearly suit the software used by mobile merchants via .]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2011/01/26/pa-dss-%e2%80%98guidance%e2%80%99-for-mobile-apps-likely-to-come-this-year-pci-council-says/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Report claims 80% of web apps will fail a PCI DSS audit</title>
		<link>http://compliancesoftware.org/2010/09/28/report-claims-80-of-web-apps-will-fail-a-pci-dss-audit/</link>
		<comments>http://compliancesoftware.org/2010/09/28/report-claims-80-of-web-apps-will-fail-a-pci-dss-audit/#comments</comments>
		<pubDate>Wed, 29 Sep 2010 00:40:57 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[PCI]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1151</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/09/28/report-claims-80-of-web-apps-will-fail-a-pci-dss-audit/" title="Report claims 80% of web apps will fail a PCI DSS audit"></a>Research released today makes the damning assertion that, with more than half of all software failing to meet acceptable security levels, 80% of all web applications are at risk of failing a PCI audit. via Infosecurity (UK) &#8211; Report claims &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/09/28/report-claims-80-of-web-apps-will-fail-a-pci-dss-audit/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/09/28/report-claims-80-of-web-apps-will-fail-a-pci-dss-audit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Privacy software: Who are the early leaders? &#8211; software, security, privacy, ControlCase, Consult2Comply, brinQa, Avior Computing, Archer, applications, Agiliance &#8211; Security &amp; Email &#8211; PC World Business</title>
		<link>http://compliancesoftware.org/2010/08/26/privacy-software-who-are-the-early-leaders-software-security-privacy-controlcase-consult2comply-brinqa-avior-computing-archer-applications-agiliance-security-email-pc-world-business/</link>
		<comments>http://compliancesoftware.org/2010/08/26/privacy-software-who-are-the-early-leaders-software-security-privacy-controlcase-consult2comply-brinqa-avior-computing-archer-applications-agiliance-security-email-pc-world-business/#comments</comments>
		<pubDate>Thu, 26 Aug 2010 18:54:19 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[governance]]></category>
		<category><![CDATA[grc]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1117</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/08/26/privacy-software-who-are-the-early-leaders-software-security-privacy-controlcase-consult2comply-brinqa-avior-computing-archer-applications-agiliance-security-email-pc-world-business/" title="Privacy software: Who are the early leaders? - software, security, privacy, ControlCase, Consult2Comply, brinQa, Avior Computing, Archer, applications, Agiliance - Security &amp; Email - PC World Business"></a>Together they form what I&#8217;d call the &#8220;privacy GRC&#8221; market, where GRC stands for &#8220;governance, risk and compliance.&#8221; GRC makes up most of what privacy people do. It&#8217;s not a big market. To put things into perspective, Gartner is only &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/08/26/privacy-software-who-are-the-early-leaders-software-security-privacy-controlcase-consult2comply-brinqa-avior-computing-archer-applications-agiliance-security-email-pc-world-business/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/08/26/privacy-software-who-are-the-early-leaders-software-security-privacy-controlcase-consult2comply-brinqa-avior-computing-archer-applications-agiliance-security-email-pc-world-business/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows DLL load hijacking exploits go wild</title>
		<link>http://compliancesoftware.org/2010/08/25/windows-dll-load-hijacking-exploits-go-wild/</link>
		<comments>http://compliancesoftware.org/2010/08/25/windows-dll-load-hijacking-exploits-go-wild/#comments</comments>
		<pubDate>Thu, 26 Aug 2010 02:24:21 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[Data Security]]></category>
		<category><![CDATA[pan]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1115</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/08/25/windows-dll-load-hijacking-exploits-go-wild/" title="Windows DLL load hijacking exploits go wild"></a>Less than 24 hours after Microsoft said it couldn&#8217;t patch Windows to fix a systemic problem, attack code appeared Tuesday to exploit the company&#8217;s software. Also on Tuesday, a security firm that&#8217;s been researching the issue for the last nine &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/08/25/windows-dll-load-hijacking-exploits-go-wild/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/08/25/windows-dll-load-hijacking-exploits-go-wild/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Do You Have What It Takes To Pass Your Payment Card Industry Audit? #PCI</title>
		<link>http://compliancesoftware.org/2010/06/17/do-you-have-what-it-takes-to-pass-your-payment-card-industry-audit-pci/</link>
		<comments>http://compliancesoftware.org/2010/06/17/do-you-have-what-it-takes-to-pass-your-payment-card-industry-audit-pci/#comments</comments>
		<pubDate>Thu, 17 Jun 2010 14:41:22 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[PCI]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[card]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[industry]]></category>
		<category><![CDATA[pan]]></category>
		<category><![CDATA[payment]]></category>
		<category><![CDATA[payment card industry]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1050</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/06/17/do-you-have-what-it-takes-to-pass-your-payment-card-industry-audit-pci/" title="Do You Have What It Takes To Pass Your Payment Card Industry Audit? #PCI"></a>With every company reliant on software to run its business, an alarming rise in data breach incidents across industries, but especially credit card processing, means application security is becoming an increasingly critical part of any organisation’s overall IT security strategy. &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/06/17/do-you-have-what-it-takes-to-pass-your-payment-card-industry-audit-pci/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/06/17/do-you-have-what-it-takes-to-pass-your-payment-card-industry-audit-pci/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Lawsuit Brewing Against Popular POS Software Provider and Reseller</title>
		<link>http://compliancesoftware.org/2010/06/02/lawsuit-brewing-against-popular-pos-software-provider-and-reseller/</link>
		<comments>http://compliancesoftware.org/2010/06/02/lawsuit-brewing-against-popular-pos-software-provider-and-reseller/#comments</comments>
		<pubDate>Thu, 03 Jun 2010 02:04:08 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[industry]]></category>
		<category><![CDATA[laws]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=1031</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/06/02/lawsuit-brewing-against-popular-pos-software-provider-and-reseller/" title="Lawsuit Brewing Against Popular POS Software Provider and Reseller"></a>With evidence mounting of flagrant abuses of PCI-DSS security standards, two attorneys are on the verge of announcing the official filing of a national lawsuit against one of the hospitality industry’s biggest point-of-sale (POS) technology providers and one of its &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/06/02/lawsuit-brewing-against-popular-pos-software-provider-and-reseller/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/06/02/lawsuit-brewing-against-popular-pos-software-provider-and-reseller/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>OWASP Top10 2010 Released</title>
		<link>http://compliancesoftware.org/2010/04/21/owasp-top10-2010-released/</link>
		<comments>http://compliancesoftware.org/2010/04/21/owasp-top10-2010-released/#comments</comments>
		<pubDate>Thu, 22 Apr 2010 00:12:06 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[Other Regulations]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[manager]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=979</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/04/21/owasp-top10-2010-released/" title="OWASP Top10 2010 Released"></a>Today, OWASP has released an updated report capturing the top ten risks associated with the use of web applications in an enterprise. This colorful 22 page report is packed with examples and details that explain these risks to software developers, &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/04/21/owasp-top10-2010-released/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/04/21/owasp-top10-2010-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CloudAudit targets automated risk assessment, management</title>
		<link>http://compliancesoftware.org/2010/04/06/cloudaudit-targets-automated-risk-assessment-management/</link>
		<comments>http://compliancesoftware.org/2010/04/06/cloudaudit-targets-automated-risk-assessment-management/#comments</comments>
		<pubDate>Wed, 07 Apr 2010 03:10:32 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[management]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=963</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/04/06/cloudaudit-targets-automated-risk-assessment-management/" title="CloudAudit targets automated risk assessment, management"></a>CloudAudit, launched in January 2010, brings together cloud computing providers, integrators and consultants in an effort to create a common interface and namespace. The volunteer initiative aims to help with an automated risk assessment and audit of Software-as-a-Service (SaaS), Platform-as-a-Service &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/04/06/cloudaudit-targets-automated-risk-assessment-management/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/04/06/cloudaudit-targets-automated-risk-assessment-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Internal data breaches a rarity</title>
		<link>http://compliancesoftware.org/2010/02/01/internal-data-breaches-a-rarity/</link>
		<comments>http://compliancesoftware.org/2010/02/01/internal-data-breaches-a-rarity/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 15:17:20 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[PCI]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[card]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[payment]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=856</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2010/02/01/internal-data-breaches-a-rarity/" title="Internal data breaches a rarity"></a>In 85 percent of the cases, 7Safe found that the compromised information was payment and card data, and the main attack route was through the sort of unsophisticated SQL injection attacks databases are supposed to be able to resist. Shared &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2010/02/01/internal-data-breaches-a-rarity/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2010/02/01/internal-data-breaches-a-rarity/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NIST Updates Automated Computer Security Validation Guidelines</title>
		<link>http://compliancesoftware.org/2009/12/16/nist-updates-automated-computer-security-validation-guidelines/</link>
		<comments>http://compliancesoftware.org/2009/12/16/nist-updates-automated-computer-security-validation-guidelines/#comments</comments>
		<pubDate>Wed, 16 Dec 2009 14:20:03 +0000</pubDate>
		<dc:creator>compliancesoftware</dc:creator>
				<category><![CDATA[FISMA]]></category>
		<category><![CDATA[laws]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://compliancesoftware.org/?p=798</guid>
		<description><![CDATA[<a href="http://compliancesoftware.org/2009/12/16/nist-updates-automated-computer-security-validation-guidelines/" title="NIST Updates Automated Computer Security Validation Guidelines"></a>The National Institute of Standards and Technology (NIST) has issued a draft publication for public comment that describes changes to the Security Content Automation Protocol (SCAP). SCAP is a suite of specifications that use the eXtensible Markup Language (XML) to &#8230;<p class="read-more"><a href="http://compliancesoftware.org/2009/12/16/nist-updates-automated-computer-security-validation-guidelines/">Read more &#187;</a></p>]]></description>
		<wfw:commentRss>http://compliancesoftware.org/2009/12/16/nist-updates-automated-computer-security-validation-guidelines/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

