Similar Searches

  • Bob Russo Comments on PCI and Recent Breaches (September 1, 2009)

    The recent breaches and indictments have generated a lot of comments about PCI, many of them unfavorable. On one side are those that say they were "certified" as PCI compliant, but got breached anyway; therefore PCI is worthless.

  • Citrix to Participate in Keynote Panel Discussion at Forrester's (September 10, 2009)

    Citrix Systems, Inc., today announced Citrix CIO and Corporate Vice President Paul Martine will participate in a keynote panel discussion at Forrester's Security Forum 2009, titled “Successful Approaches to Addressing Consumerization: A Panel ... Panelists will also discuss how consumer-grade hardware

  • Your Policies, Follow-up (March 9, 2010)

    There is a great post at Security Catalyst on why you need a privacy policy. It covers a lot of territory and compliments my previous posts (part 1, part 2, and part 3).

  • Choosing a QSA…How Do YOU Do It? (August 26, 2009)

    Nearly all schools validate their PCI compliance using a Self-Assessment Questionnaire (SAQ). Nevertheless, many schools also hire a QSA to help them in the process, either with training, conducting a PCI gap analysis, designing a compensating control, or just

  • New PCI Column (December 15, 2009)

    Those of you who know me know that I have written a number of articles for publication in addition to this Higher Ed PCI blog. This is to let you know that I have started writing a weekly (eek!)

Related News

  • Bob Russo Comments on PCI and Recent Breaches (September 1, 2009)

    The recent breaches and indictments have generated a lot of comments about PCI, many of them unfavorable. On one side are those that say they were "certified" as PCI compliant, but got breached anyway; therefore PCI is worthless.

  • Citrix to Participate in Keynote Panel Discussion at Forrester's (September 10, 2009)

    Citrix Systems, Inc., today announced Citrix CIO and Corporate Vice President Paul Martine will participate in a keynote panel discussion at Forrester's Security Forum 2009, titled “Successful Approaches to Addressing Consumerization: A Panel ... Panelists will also discuss how consumer-grade hardware

  • Your Policies, Follow-up (March 9, 2010)

    There is a great post at Security Catalyst on why you need a privacy policy. It covers a lot of territory and compliments my previous posts (part 1, part 2, and part 3).

  • Choosing a QSA…How Do YOU Do It? (August 26, 2009)

    Nearly all schools validate their PCI compliance using a Self-Assessment Questionnaire (SAQ). Nevertheless, many schools also hire a QSA to help them in the process, either with training, conducting a PCI gap analysis, designing a compensating control, or just

  • New PCI Column (December 15, 2009)

    Those of you who know me know that I have written a number of articles for publication in addition to this Higher Ed PCI blog. This is to let you know that I have started writing a weekly (eek!)

A Discussion You Might Want to Follow

What can PCI DSS do, and what can it not? What role may it have played or should it have played in the recent breaches?There is a discussion going on at StorefrontBacktalk that you may want to read...and be sure to read the comments. It deals with the recent breaches and the questions above. Another great take on the indictments and security is at Mike Dahn's blog (which also has a number of links). Continue reading...


Write a Comment

Copyright © 2010 The Security Blog. All rights reserved.