November 18, 2009 3:44 PM
Posted by: Charles Denyer
charles denyer,
merchants,
payment card industry data security standards (PCI DSS),
pci dss compliant,
pciassessment.org,
service providersThe Payment Card Industry Data Security Standards (PCI DSS) provisions call for both merchants and service providers to become PCI DSS compliant. Though the term "merchant" is easily understood, the term "service provider" has created some...
September 28, 2009 12:35 AM
Posted by: Charles Denyer
data centers,
PCI DSS,
pci dss readiness assessment,
pciassessment.org,
penetration testing,
qsa,
quarterly scanning,
two factor authenticationPayment Card Industry Data Security Standards (PCI DSS) compliance for data centers is here to stay, thus your facility should be prepared to undergo the PCI DSS assessment in a cost-effective and efficient manner. Here are some tips for PCI DSS compliance...
May 26, 2009 6:22 PM
Posted by: Charles Denyer
charles denyer,
payment card industry data security standards,
PCI DSS,
PCI DSS Level 1 compliance,
pci qsa,
pciassessment.org,
policies and procedures,
requirement 12Payment Card Industry Data Security Standards (PCI DSS) Level 1 compliance can be a very arduous, time-consuming and costly undertaking for any organization. However, there are a number of proactive steps that should be put in place for helping ensure an...
May 9, 2009 9:49 PM
Posted by: Charles Denyer
charles denyer,
payment card industry data security standards,
PCI DSS,
PCI DSS Self Assessment Questionnaire,
pciassessment.org,
qualified security assessorPCI DSS Self Assessment questionnaires are used for the large and growing number of merchants who must comply with the Payment Card Industry Data Security Standards (PCI DSS). In short, compliance can be obtained by conducting a "Self Assessment". What's important to note, however, is that there...
January 28, 2009 1:03 PM
Posted by: Charles Denyer
cpa,
payment card industry data security standards (PCI DSS),
PCI DSS,
pci dss report on compliance (ROC),
pciassessment.org,
qsa,
sas70.us.comAs an accountant and a PCI Qualified Security Assessor (QSA), i'm seeing more and more auditors essentially provide audit and fieldwork services for both a SAS 70 and a PCI DSS assessment at the same time, then issue a PCI DSS Report on Compliance (ROC)...
December 31, 2008 11:25 PM
Posted by: Charles Denyer
asv,
payment card industry data security standards,
PCI DSS,
pciassessment.org,
qsa,
SAS 70,
sas 70 type ii audit,
sas70.us.comAs an auditor, I am constantly approached by my clients desperately wanting to know if efficiencies can be obtained within the audit and assessment process for companies undergoing both a SAS70 audit and a PCI DSS...