Search -
PCI DSS A practical guide to implementation (2nd edition)
PCI DSS A practical guide to implementation - 2nd edition Author:Steve Wright The majority of data breaches still occur because basic controls are not in place, or because those that were present were not consistently implemented across an organisation. If obvious weaknesses are left exposed, chances are the attacker will exploit them. As the cybercrime market evolves, attackers, targets, and techniques do as well. As sup... more »ply has increased and prices have fallen, the value associated with stolen credit card data has dropped; the big money is now in stealing personal identification number (PIN) information together with associated credit and debit accounts. Payment Card Industry Data Security Standard (PCI DSS) compliance is ever more prevalent after an explosion of attacks targeting PIN data. The objective of this newly revised practical guide is to offer a straightforward approach to the implementation process. It provides a roadmap, helping organisations to navigate the broad and sometimes confusing PCI DSS v1.2, and shows them how to build and maintain a sustainable PCI compliance programme. Although the guide starts with sections on why and what is PCI, it is not intended to replace the 'publicly available' PCI information. This book looks to serve those who have been given the responsibility of PCI, and does not attempt to provide all the answers. It should be read, absorbed and digested only with a good helping of other PCI 'publicly available' information. In other words, it will help an organisation, or individual, get started, and hopefully furnish the reader with enough of the fundamental basics to create, design and build the organisation's own PCI compliance framework.« less