Boldon James

 
 
man with red card
 

Payment Card Industry Data Security Standard

What is it?

The Payment Card Industry Data Security Standard is a worldwide information security standard created to help organisations that process card payments prevent credit card fraud through increased controls around data. The standard applies to all organisations that hold, process, or exchange cardholder information from any card branded with the logo of one of the card brands.


Organisations are required to:

  • Build and Maintain a Secure Network
  • Protect Cardholder Data
  • Maintain a Vulnerability Management Program
  • Implement Strong Access Control Measures
  • Regularly Monitor and Test Networks
  • Maintain an Information Security Policy

What's the risk?

  • Non-compliant companies who maintain a relationship with one or more of the card brands, either directly or through an acquirer, risk losing their ability to process credit card payments and being audited and/or fined up to £100,000
  • Card brands are getting stricter on PCI compliance - in October 2009 Visa increased its fine for a data breach at a Level-4 merchant from £2,500 to £10,000.

How can Boldon James help?

Boldon James Information Classification products support compliance with Payment Card Industry Data Security Standards by:

  • Clearly identify PCI-related information to assist or help enforce DLP
  • Assisting with Enterprise search should an audit be required
  • Identifying and triggering encryption, where required

PCI-related information may not always be held in forms that are easily searchable by traditional DLP solutions - for example, an operator in a call centre logs a support call regarding an issue with an application and sends a screenshot to the helpdesk to illustrate the problem. The screenshot contains a customer's address and credit card details, so is not picked up by the majority of DLP solutions, as they are not able to scan for text in a picture. By using labelling, the operator could mark the email as PCI-related and thus ensure the information is handled appropriately.

More Information

For more information, download our Whitepaper : 'Information Classification - Delivering Security and Business Value'.

Section title Simply complete the short form below to receive the whitepaper. All fields are mandatory.
 
 
Keep Up To Date

Keep Up To Date

Find and follow Boldon James on Social Media