|
|
|
White Papers for Federal Financial Institutions Examination Council (FFIEC)PCI Data ProtectionTizor With the severity of recent data breaches, anxiety in the security and compliance community has reached a new high. Questions are being asked about what it means to be PCI compliant, particularly in the context of protecting data from data breaches. This white paper describes two PCI requirements for cardholder data protection: data auditing and data encryption. As mandated by PCI 10, data auditing should provide for detailed monitoring of all access to the card holder as well as alerting on potential data theft. As mandated by PCI 3, data encryption should be used to render cardholder data unreadable to anyone who is not authorized.
|
|
|
Privacy Policy | Terms & Conditions | Support | Directory Links | Contact Us | Site Map | Home Copyright © 2007-2008 ComplianceHome.com. A SUPREMUS GROUP venture. All rights reserved. |