• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • Security Vendors Form PCI Alliance

    February 13, 2007 Alex Woodie

    Compared to the mysterious and daunting nature of Sarbanes-Oxley, the technical steps that companies must take to comply with the Payment Card Industry (PCI) data security standard are crystal clear. Just the same, questions on PCI remain. As of last month, thanks to the creation of the PCI Security Vendor Alliance, there’s an organization dedicated to providing answers.

    In 2005, the card payment industry started implementing minimum security guidelines that companies must follow to ensure the safety of sensitive data included in credit, debit, gift, and point of sale (POS) transactions. A vendor that failed to adopt the guidelines–first implemented by Visa with its Cardholder Information Security Program (CISP) and later adopted industry-wide via PCI–would face fines ranging into the hundreds of thousands of dollars, and eventually banishment from the electronic payment network for continued negligence.

    Luckily for systems administrators, the PCI group outlined relatively clear technical goals for achieving compliance, including having basic network security such as a firewall and antivirus software, encrypting data in transit, implementing tight user-access controls, and tracking and monitoring mechanisms.

    However, there’s still a lack of awareness of PCI, says Jon Oltsik, a senior analyst with the Enterprise Strategy Group, an IT analyst group focused on storage issues. “Even with all the press on data security breaches and the corporate and personal costs that accrue from them, there is still only limited awareness of the PCI data security standards,” Oltsik says.

    That’s where the PCI SVA comes in. The group was founded by eight security software companies last month to educate technology users about PCI, and to spread the PCI gospel to technology and solution providers as well.

    The eight co-founders–including ConfigureSoft, Cyber-Ark, Modulo Security, Proginet, Protegrity, Reflex Security, SafeNet, and Verisign–say they plan to create a series of case studies, seminars, return-on-investment analyses, and white papers showing how organizations may achieve compliance with the PCI DSS requirements efficiently and on-budget.

    Two things that the PCI SVA will not do is certify security products or services, or certify companies PCI remediation activities. Any product certification for the PCI’s Data Security Standard (DSS) is handled by the PCI Security Standards Council itself, whereas the final determination of compliance is made by the individual credit card brands or by certified auditors.

    For more information about the PCI SVA, including an application form for vendors wishing to join the group, go to www.pcialliance.org.



                         Post this story to del.icio.us
                   Post this story to Digg
        Post this story to Slashdot

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    Midrange Dynamics North America

    With MDRapid, you can drastically reduce application downtime from hours to minutes. Deploying database changes quickly, even for multi-million and multi-billion record files, MDRapid is easy to integrate into day-to-day operations, allowing change and innovation to be continuous while reducing major business risks.

    Learn more.

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Sponsored Links

    Bytware:  StandGuard Network Security 3.0, the next generation of System i security
    nuBridges:  Leading provider of secure FTP on the iSeries
    COMMON:  Join us at the 2007 conference, April 29 – May 3, in Anaheim, California

    Books on Sale at the IT Jungle Store: 30 Percent Off for 30 Days

    The System i Pocket RPG & RPG IV Guide: List Price, $69.95; Sale Price, $49.00
    The iSeries Pocket Database Guide: List Price, $59.00; Sale Price, $41.00
    The iSeries Pocket Developers' Guide: List Price, $59.00; Sale Price, $41.00
    The iSeries Pocket SQL Guide: List Price, $59.00; Sale Price, $41.00
    The iSeries Pocket Query Guide: List Price, $49.00; Sale Price, $34.00
    The iSeries Pocket WebFacing Primer: List Price, $39.00; Sale Price, $27.00
    Migrating to WebSphere Express for iSeries: List Price, $49.00; Sale Price, $34.00
    iSeries Express Web Implementer's Guide: List Price, $59.00; Sale Price, $41.00
    Getting Started with WebSphere Development Studio for iSeries: List Price, $79.95; Sale Price, $56.00
    Getting Started With WebSphere Development Studio Client for iSeries: List Price, $89.00; Sale Price, $62.00
    Getting Started with WebSphere Express for iSeries: List Price, $49.00; Sale Price, $34.00
    WebFacing Application Design and Development Guide: List Price, $55.00; Sale Price, $38.00
    Can the AS/400 Survive IBM?: List Price, $49.00; Sale Price, $34.00
    The All-Everything Machine: List Price, $29.95; Sale Price, $21.00
    Chip Wars: List Price, $29.95; Sale Price, $21.00

    IBM X-Force Says For-Profit Cyber Attacks to Increase in 2007 Be Content with Content Assist

    Leave a Reply Cancel reply

Volume 7, Number 6 -- February 13, 2007
THIS ISSUE SPONSORED BY:

LANSA
Vision Solutions
LXI
SafeData
RJS Software Systems

Table of Contents

  • Lawson Brings Former Intentia ERP Suite Closer to Landmark
  • iSeries Web Adventures Call with iSafari
  • Valid Tech Assimilates Biometric Authentication Into the Enterprise
  • Gumbo’s Dumpster Dives Into i5/OS Spool Files
  • Security Vendors Form PCI Alliance
  • nuBridges Adds Invoice Management Capabilities to Existing Products
  • Table Tennis Giant Finds Extol the Right Fit for B2B
  • WorksRight Boosts Canadian Postal Code Processing
  • Agilon to Resell Linoma’s Transfer Anywhere Tool
  • XAware Updates Integration Software

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Meet The Next Gen Of IBMers Helping To Build IBM i
  • Looks Like IBM Is Building A Linux-Like PASE For IBM i After All
  • Will Independent IBM i Clouds Survive PowerVS?
  • Now, IBM Is Jacking Up Hardware Maintenance Prices
  • IBM i PTF Guide, Volume 27, Number 24
  • Big Blue Raises IBM i License Transfer Fees, Other Prices
  • Keep The IBM i Youth Movement Going With More Training, Better Tools
  • Remain Begins Migrating DevOps Tools To VS Code
  • IBM Readies LTO-10 Tape Drives And Libraries
  • IBM i PTF Guide, Volume 27, Number 23

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle