I had followed theses 9 steps for build my compliance in this last year. I think it’s a good approach for big processor and all PSP. Establishing the PCI Project (Actors, budget…). Determine the scope (CDE). Review the information Security Policy (ISP or PSSI for french people). Conduct Gap Analysis. Conduct Risk Analysis. Establish the…
Monthly Archives: July 2014
PCI DSS
3 Myths about PCI DSS
by Marc-Frederic Gomez •
The potential scope of your compliant CardHolderData Environment (Known CDE) may seem dating. A small merchant or a big processor have different level about security processes, documentations or time to secure this area. I have check lot of myths about PCI on my different experiences. In first, I will share with you 3 myths. Don’t listen any…
PCI DSS
PCI DSS Prioritized Approach to Compliance
by Marc-Frederic Gomez •
In my experience, the final consideration before getting started need to be regarding a more prioritized approach to achieving my PCI Compliance. The PCI Standards Council have come under pressure to help entities prioritize their approach to PCI and as such the table with six security milestones that will help merchants and other entities incrementally…
PCI DSS
PCI Security Standards Coucil
by Marc-Frederic Gomez •
The Payment Card Industry (PCI) Security Standards Council website isn(t a a security Website per se, but it is full of very useful and helpful security information related to the most far-reaching and comprehensive Industry security standards today. PCI DSS is applicable on any organization that process, transmit or stores payment cards data. So it’s…