No thanks, stay here.  

  We notice you are visiting from a U.S. Internet provider. Switch to our U.S. website.

Industry News

Report: PCI audit-inspired security overhauls unsustainable, risky

By Joseph Trigliari

19/02/2010 - A number of organisations, when faced with a PCI compliance audit, spend enormous amounts of time and energy to put controls in place and hit all the points on the checklist. Yet many do not - and cannot - sustain these measures, leaving them to spend all that time and energy over again for the next audit.

Not only is this a more expensive way to address payment processing security, but it also leaves the organisation more vulnerable, said a recent whitepaper from Computerworld in partnership with security and compliance firm Tripwire.

Instead, said the report, payment processing security measures should be ongoing - something that will fulfill PCI DSS requirements in the process.

"There shouldn't be a heroic effort to comply with standards. Security, by definition, involves safeguarding confidential information, protecting against fraud, ensuring systems are available so you can generate revenue, and making sure there are no errors in the stack," said Gene Kim, co-founder and CTO of Tripwire. "When you do all these things, you inherently wind up fulfilling the intent of all major regulatory and industry compliance regulations."

Bob Russo, general manager of the PCI Security Standards Council, has historically been an advocate of this position, advising merchants that they should prioritise security, not compliance. ADNFCR-2514-ID-19627398-ADNFCR

Related News - Security and Fraud

Study: PCI compliance a no-brainer among Level Four merchants

10/01/2012

A recent survey by research firm Gartner found nearly one-fifth of retailers and credit card processing services are not compliant with Payment Card Industry Data Security Standards.

Full Article

Tracking spending can be made easy with credit cards

06/12/2011

Many people feel that plastic payment processing options can lead to overspending, but a recent article published by Forbes explains that making payments with credit cards is actually a great way to control costs and track expenses.

Full Article

Keeping business bank accounts safe and secure

11/10/2011

The internet has provided consumers with many new and convenient ways to access their account information, but these advances have also created the need for thorough security measures.

Full Article

Personalized payment chips get fraud prevention upgrade

10/10/2011

Payment chips made by Fiserv will now be further personalized using the Europay MasterCard Visa (EMV) standards, a global credit card payments technology that helps prevent fraud from lost, stolen or counterfeit cards.

Full Article