PCI compliance : implementing effective PCI data security standards / Tony Bradley, technical editor.
- Format:
-
- Contributor:
-
- Language:
- English
- Subjects (All):
-
- Physical Description:
- 1 online resource (353 p.)
- Edition:
- 1st edition
- Other Title:
- Payment card industry compliance
- Place of Publication:
- Burlington, Mass. : Syngress, c2007.
- Language Note:
- English
- System Details:
- text file
- Summary:
- Identity theft has been steadily rising in recent years, and credit card data is one of the number one targets for identity theft. With a few pieces of key information. Organized crime has made malware development and computer networking attacks more professional and better defenses are necessary to protect against attack. The credit card industry established the PCI Data Security standards to provide a baseline expectancy for how vendors, or any entity that handles credit card transactions or data, should protect data to ensure it is not stolen or compromised. This book will provide the infor
- Contents:
-
- Front Cover; PCI Compliance: Implementing Effective PCI Data Security Standards; Copyright Page; Contents; Chapter 1. About PCI and This Book; Introduction; Chapter 2. Introduction to Fraud, ID Theft, and Regulatory Mandates; Chapter 3. Why PCI Is Important; Introduction; What is PCI?; Overview of PCI Requirements; Risks and Consequences; Benefits of Compliance; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 4. Building & Maintaining a Secure Network; Introduction; Installing and Maintaining a Firewall Configuration
- Choosing an Intrusion Detection or Intrusion Prevention SystemAntivirus Solutions; System Defaults and Other Security Parameters; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 5. Protect Cardholder Data; Protecting Cardholder Data; PCI Requirement 3: Protect Stored Cardholder Data; PCI Requirement 4-Encrypt Transmission of Cardholder Data Across Open, Public Networks; Using Compensating Controls; Mapping Out a Strategy; The Absolute Essentials; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 6. Logging Access & Events Chapter; Introduction to Logging
- Logging in PCI Requirement 10Logging in PCI - All Other Requirements; Tools for Logging in PCI; Case Studies; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 7. Strong Access Control; Introduction; Principles of Access Control; Authentication and Authorization; PCI and Access Control; Configuring Systems to Enforce PCI Compliance; Physical Security; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 8. Vulnerability Management; Introduction; Vulnerability Management in PCI; Requirement 5 Walkthrough; Requirement 6 Walkthrough; Requirement 11 Walkthrough
- Common PCI Vulnerability Management MistakesCase Studies; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 9. Monitoring and Testing; Introduction; Monitoring Your PCI DSS Environment; Auditing Network and Data Access; TestingYour Monitoring Systems and Processes; Solutions Fast Track; Frequently Asked Questions; Chapter 10. How to Plan a Project to Meet Compliance; Introduction; Justifying a Business Case for Compliance; Bringing All the Players to the Table; Helping to Budget Time and Resources; How to Inform/Train Staff on Issues; Where to Start: The First Steps; Summary
- Solutions Fast TrackFrequently Asked Questions; Chapter 11. Responsibilities; Introduction; Whose Responsibility Is It?; Incident Response; Business Continuity; Summary; Frequently Asked Questions; Chapter 12. Planning to Fail Your First Audit; Introduction; Remember, Auditors Are There to Help You; Dealing With Auditor's Mistakes; Planning for Remediation; Planning For Your Retest; Summary; Solutions Fast Track; Frequently Asked Questions; Chapter 13. You're Compliant, Now What; Introduction; Security is a PROCESS, Not an Event; Plan for Periodic Review and Training, Don't Stop Now!
- PCI Self-Audit
- Notes:
- Includes index.
- ISBN:
-
- 9786611112660
- 9781281112668
- 1281112666
- 9780080556383
- 0080556388
- OCLC:
- 476126406
The Penn Libraries is committed to describing library materials using current, accurate, and responsible language. If you discover outdated or inaccurate language, please fill out this feedback form to report it and suggest alternative language.