PCI DSS Resources

This page tries to capture the sites and links that can help organisations gather the information they need to understand the Payment Card Industry Data Security Standard.

Recent PCI DSS Documents

PCI (DSS, PA, SSC) Reference sites and documents

PCI SSC QIR Program

Tokenization

PA DSS

Point to Point Encryption (P2PE) Resources

Webinars

Links to the card issuers data security pages

    Visa International Pages

Call Recording and PCI

PCI Blogs

Industry Sites

If you see a broken link, noticed something missing or think something should be added please tell me.

.

  1. #1 by Preet on 08/06/2012 - 5:18 pm

    Cloud computing, vizrtaliuation, and other technologies are perfectly acceptable as long as your systems are properly configured and satisfy the PCI DSS requirements. It’s not about the technology it’s about the configuration, written agreements, and scope.Thank you for the link to PCIAnswers.com!

  2. #2 by Raj Gna on 25/01/2012 - 4:25 am

    Hi Brian

    I am going to develop a PCI DSS Complaince project which will be helpful for the Banks to control their merchants who handles the Credit cards. My project takes care of

    - Merchant’s SAQ Compliance
    - Merchant’s PCI Level
    -Merchant’s scan status and scan
    -Merchant Validation
    -Acquirer (Banks) can view all the merchant details
    - and few more options

    My question is: To develop a project, should I get any confirmation from PCI DSS Organisation? Please clarify my doubt. If anyone answer my question, I will be grateful to you

    Regards
    Raj Gna
    Email: littlegroup555@gmail.com

  1. PCI Security Standards Council publishes card production security requirements | Brian Pennington
  2. Sometimes it is a good idea to have in-house skills | Brian Pennington
  3. Merchant sues VISA. Biting the hand that feeds you? | Brian Pennington
  4. Lack of guidance on BYOD raises data protection concerns | Brian Pennington
  5. PCI SSC releases guidance for merchants on mobile payment acceptance security « Brian Pennington
  6. PCI SSC releases PCI DSS Cloud Computing Guidelines « Brian Pennington
  7. PCI SSC releases its PCI DSS E-commerce Security Guidelines « Brian Pennington
  8. PCI SSC releases its Best practices to help prevent card data compromise at ATMs « Brian Pennington
  9. Want to be PCI DSS compliant? Here are 5 mistakes to avoid. « Brian Pennington
  10. Want to be PCI DSS compliant? Here are 5 mistakes to avoid. « Brian Pennington
  11. PCI SSC’s insights on mobile, encryption and payment security following the North American community meeting « Brian Pennington
  12. Feedback requested from PCI community on best practices to help prevent card data compromise at ATMs « Brian Pennington
  13. PCI Security Standards Council releases best practices for mobile software developers « Brian Pennington
  14. The average cost of a breach event is $7.2 million or $214 per compromised record « Brian Pennington
  15. PCI Security Standard Council releases summary of feedback on PCI standards « Brian Pennington
  16. 65% of businesses do not protect their customers’ private data « Brian Pennington
  17. PCI Security Standards Council’s Qualified Integrators and Resellers program is now live « Brian Pennington
  18. The Information Commissioner’s 5 Tips on how to better protect personal information « Brian Pennington
  19. PCI Security Standards Council Internal Security Assessor (ISA) training now available as an eLearning course « Brian Pennington
  20. Criminal logic; follow the money and find easy targets « Brian Pennington
  21. PCI Security Standards Council releases Point-to-Point encryption (p2pe) resources « Brian Pennington
  22. PCI Security Standards Council releases Point-to-Point encryption (p2pe) resources « Brian Pennington
  23. Database security and SIEM are the top Risk and Compliance converns « Brian Pennington
  24. Guidance for merchants on how to securely accept mobile payments « Brian Pennington
  25. 76% of Credit Card Breaches result from third party system support, development and/or maintenance. | The World According to…
  26. PCI Security Standards Council announces qualified integrators and resellers certification program « Brian Pennington
  27. PCI Point-to-Point Encryption Solution Requirements and Testing Procedures v1.1 « Brian Pennington
  28. The PCI SSC has opened its registration for the 2012 PCI Community Meetings « Brian Pennington
  29. 2012 Application Security Gap Study: A Survey of IT Security & Developers « Brian Pennington
  30. PCI Security Standards Council pushing for feedback as window starts to close « Brian Pennington
  31. Verizon 2012 Data Breach Investigation Report – a summary « Brian Pennington
  32. UK Card Fraud losses fall because of technology and risk awareness « Brian Pennington
  33. 03/26/2012: Facebook, PCI Security Standards Council (PCI SSC), AcceptEmail | SociallyPay
  34. PCI Security Standards Council continues focus on mobile payment acceptance security « Brian Pennington
  35. Page not found « Brian Pennington
  36. PCI SSC announces formal training in Europe (London) « Brian Pennington
  37. PCI Security Standards Council invites payments community to input on PIN Transaction Security « Brian Pennington
  38. PayPal, Payments and PCI « Brian Pennington
  39. Security is still the biggest technology challenge for retailers « Brian Pennington
  40. Eight Ways to Reduce PCI DSS Audit Scope by Tokenizing Cardholder Data « Brian Pennington
  41. Tokenization for Dummies a Free eBook « Brian Pennington
  42. Last chance to review your PCI readiness before the holiday season « Brian Pennington
  43. Only 21% of merchants were compliant and other startling PCI DSS facts from the coal face « Brian Pennington
  44. Merchants are more concerned about their brand than PCI fines « Brian Pennington
  45. PCI DSS – updated guidelines for WiFi and new guidance on Bluetooth « Brian Pennington
  46. 25% of Mobile Network Operators are not PCI DSS Compliant « Brian Pennington
  47. PCI Compliance Risks for Small Merchants and where they are failing « Brian Pennington
  48. Call Centre Security and PCI Compliance « Brian Pennington
  49. Comparison Of Cost Of Ownership Between In-House And Managed Pay « Brian Pennington
  50. Benefits of PCI Compliance – direct and indirect « Brian Pennington
  51. Eight must-fix flaws prior to an application penetration test | Brian Pennington

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.

Join 984 other followers

%d bloggers like this: