No thanks, stay here.  

  We notice you are visiting from a U.S. Internet provider. Switch to our U.S. website.

Industry News

Cloud computing and payment processing security: Not mutually exclusive after all?

By Joseph Trigliari

19/03/2010 - With cloud computing becoming a more and more popular and attractive IT model for organizations, one serious concern that has arisen is what the implications are for PCI compliance and overall payment processing security.

Many payment processing industry experts maintain that the cloud computing and PCI compliance are mutually exclusive, at least now while there are no set guidelines or requirements governing cloud computing security.

However, PCI expert Walt Conway thinks PCI compliance may be possible in the cloud.

"When you look at the cloud, keep your security expectations realistic," he wrote in an article for StorefrontBacktalk.com. "Don't expect 100 percent security. You don't have 100 percent security anywhere, so don't expect it in the cloud. What you want is the same, hopefully very high, level of security you have now or maybe a little higher."

Some things that organisations moving into the cloud must consider, he writes, are the security of the cloud provider, the new scope of PCI compliance, and the notification and data availability procedures should any client sharing the organisation's cloud experience a breach or subpoena of their data.

The question of PCI compliance in the cloud is only going to become an even larger concern as cloud computing grows in popularity - a recent survey from Mimecast, for example, found that 70 percent of IT decision makers surveyed who already use cloud services plan to increase their cloud investments in the near future.ADNFCR-2514-ID-19680316-ADNFCR

Related News - Security and Fraud

Banks get creative to promote overdraft protection

29/07/2010

New regulations born of the financial reform bill may help cut costs for consumers who use point-of-sale terminals, yet banks are still searching for a way to recoup their potential losses.

Full Article

Tokenization can eliminate PCI compliance worries

27/07/2010

Retailers, payment processing companies and others are learning how to implement and accommodate new security practices to protect consumers and lessen their PCI compliance burden.

Full Article

Chip-and-pin technology has reduced fraud, but not interest rates

26/07/2010

With the introduction of credit card chip technology, consumers charging purchases at credit card machines were promised savings in interest rate charges, but have not seen them yet.

Full Article

Consumers have trouble reading credit card agreements

23/07/2010

Credit card customers have no problems using point-of-sale terminals, but when it comes to reading their account paperwork, that is a whole other issue.

Full Article