No thanks, stay here.  

  We notice you are visiting from a U.S. Internet provider. Switch to our U.S. website.

Industry News

PCI SSC: New version of PCI DSS will focus on guidance, not major changes

By Joseph Trigliari

27/01/2010 - Rumors have been swirling in the merchant services industry about what will and will not be included in the next version of the PCI DSS.

Bob Russo, general manager of the PCI Security Standards Council - the organisation responsible for issuing and overseeing the PCI DSS - has just provided some clarification on the new version of the regulations, due to be released in mid-October.

Russo told SearchSecurity.com that the new version of the PCI DSS will contain clarifications but will not include major changes.

"There won't be any surprises," Russo told the news provider. "We're more likely to see guidance documents."

Russo noted that the PCI SSC has focused on guiding merchants through the proliferation of new security technology offerings, such as end-to-end encryption and tokenization. The council has enlisted the help of several special interest groups - such as a report from PricewaterhouseCoopers - to provide research on these emerging technologies.

"Unfortunately there are so many different technologies that merchants may have started down the path with that we need to be careful and study them before prescribing them in the standard," Russo told SearchSecurity.com.

The PCI SSC is now in the third stage of the PCI DSS revision process, which involves reviewing feedback from payment processing industry leaders.ADNFCR-2514-ID-19582481-ADNFCR

Related News - Security and Fraud

Banks get creative to promote overdraft protection

29/07/2010

New regulations born of the financial reform bill may help cut costs for consumers who use point-of-sale terminals, yet banks are still searching for a way to recoup their potential losses.

Full Article

Tokenization can eliminate PCI compliance worries

27/07/2010

Retailers, payment processing companies and others are learning how to implement and accommodate new security practices to protect consumers and lessen their PCI compliance burden.

Full Article

Chip-and-pin technology has reduced fraud, but not interest rates

26/07/2010

With the introduction of credit card chip technology, consumers charging purchases at credit card machines were promised savings in interest rate charges, but have not seen them yet.

Full Article

Consumers have trouble reading credit card agreements

23/07/2010

Credit card customers have no problems using point-of-sale terminals, but when it comes to reading their account paperwork, that is a whole other issue.

Full Article