Secure Payments, PCI DSS, Regulatory Compliance Blog

Archive for the ‘PCI DSS’ Category

DHS Looking for 1,000 CyberSecurity Experts! Happy CSAM!!

Friday, October 2nd, 2009 Posted in PCI DSS | No Comments »

An article on CNN says that the Department of Homeland Security is looking for 1,000 cybersecurity experts over the next 3 years.  The head of the DHS announced this at the start of "National Cybersecurity Awareness Month."  If you have mad ...

Thanks to our Readers

Friday, October 2nd, 2009 Posted in PCI DSS | No Comments »

I want to extend a big "thank you!" to all of our readers and especially those that take the time to read and then post relevant and valuable comments on the topics.  This blog is put forth as one source ...

Call for writers!

Friday, October 2nd, 2009 Posted in PCI DSS | No Comments »

If you have something to say about security in the payment card industry, now is your chance to be heard!  We are looking for writers to contribute to Secure Payments Magazine.  We really are looking for an international perspective so ...

Secure Payments Articles Archived

Monday, September 28th, 2009 Posted in PCI DSS | No Comments »

All Secure Payments articles will now be archived as .PDFs within the Society of Payment Security Professional's site. Currently articles from Q1 and Q2 are online with Q3 coming soon.  If you have not had a chance to check out ...

The Compliance Spectrum…Reducing PCI DSS Scope

Wednesday, September 23rd, 2009 Posted in PCI DSS | 7 Comments »

This is an article from the 2nd Quarter of Secure Payments. Recently people have been asking about how I can state that the use of end-to-end encryption, tokenization, data vault technologies, and point to point encryption can reduce the ...

You can hate ‘em…but you better respect ‘em…

Tuesday, September 22nd, 2009 Posted in PCI DSS | No Comments »

[caption id="attachment_1241" align="alignleft" width="205" caption="Long ago..."][/caption] During my time in the military I learned a few things that have served me will in my position as a business owner, a payment card security practitioner, and a person.  One of the things ...

PCI SSC Seeks standard for End to End Encryption? (UPDATE)

Tuesday, September 22nd, 2009 Posted in PCI DSS | 5 Comments »

UPDATE:  I just spoke with Pieter Penning of PWC. I was unaware that it was his group that was conducting the end to end analysis for the PCI SSC.  I had assumed (we all know what they say about assuming ...

Update to End to End (originally published Aug 27th, 2009)

Tuesday, September 22nd, 2009 Posted in PCI DSS | No Comments »

UPDATE: I just spoke with Pieter Penning of PWC. I was unaware that it was his group that was conducting the end to end analysis for the PCI SSC.  I had assumed (we all know what they say about ...

Voluptuary or Hotspur?

Tuesday, September 15th, 2009 Posted in PCI DSS | No Comments »

While a few days past 9/11, I thought it fitting to provide a quote from one of the great Americans, Teddy Roosevelt.  Known informally as The Man in the Arena, it is an excerpt of a larger speech called Citizen ...

Monday Morning Coaching, Rational Actors, Recon, & Risk?

Sunday, September 13th, 2009 Posted in PCI DSS | 3 Comments »

Anyone who knows me well knows that I am a diehard college football fan.  Nothing makes me happier than a Saturday of good college football.  While I am an Auburn alum, I will happily watch any conference and any team ...