No thanks, stay here.  

  We notice you are visiting from a U.S. Internet provider. Switch to our U.S. website.

Industry News

PCI SSC's Bob Russo urges merchants to 'live, breath, eat, sleep, not PCI, but security'

By Kristen Lawrence

15/03/2010 - Although the PCI Security Standards Council is currently evaluating new payment processing technology for potential inclusion in the new PCI DSS to be released in October, none of the technologies will be a silver bullet for compliance, reported PCI SSC general manager Bob Russo.

In an interview with Bank Info Security's editorial director Tom Field, conducted at the IT security-based RSA Conference held the first week of March in San Francisco, Russo reiterated the council's party line, which is that businesses should prioritize security instead of compliance.

"If you are secure, compliance comes along as a byproduct; so that's a good thing," he told Field. "You need to understand that this needs to be built into your DNA and that you need to do this on a daily basis. You need to live, breath, eat, sleep, not PCI, but security, and if you let your guard down for one second that is when things happen."

Awareness of this point was raised as a result of the massive payment processing breaches of Heartland Payment Systems and various other high-profile companies in 2008, in which the companies claimed that they were PCI compliant yet suffered breaches anyway.ADNFCR-2514-ID-19670388-ADNFCR

Related News - Security and Fraud

Study: PCI compliance a no-brainer among Level Four merchants

10/01/2012

A recent survey by research firm Gartner found nearly one-fifth of retailers and credit card processing services are not compliant with Payment Card Industry Data Security Standards.

Full Article

Tracking spending can be made easy with credit cards

06/12/2011

Many people feel that plastic payment processing options can lead to overspending, but a recent article published by Forbes explains that making payments with credit cards is actually a great way to control costs and track expenses.

Full Article

Keeping business bank accounts safe and secure

11/10/2011

The internet has provided consumers with many new and convenient ways to access their account information, but these advances have also created the need for thorough security measures.

Full Article

Personalized payment chips get fraud prevention upgrade

10/10/2011

Payment chips made by Fiserv will now be further personalized using the Europay MasterCard Visa (EMV) standards, a global credit card payments technology that helps prevent fraud from lost, stolen or counterfeit cards.

Full Article