BreachExchange mailing list archives

Does PCI DSS Expose Risk Or Create It?


From: security curmudgeon <jericho () attrition org>
Date: Sat, 13 Jun 2009 01:17:31 +0000 (UTC)


http://information-security-resources.com/2009/06/08/does-pci-dss-expose-risk-or-create-it/

Does PCI DSS Expose Risk Or Create It?
June 8, 2009
By Ed Rarick, PCI Evangelist at Tripwire

I have read many opinions on who is to blame for cardholder breaches, and 
many of those opinions are thoughtful and make a lot of sense.

But to throw the Card Brands under the bus for trying to get merchants and 
acquiring banks to pay attention to the security of cardholder data makes 
no sense to me. And to have that opinion coming from a member of the U.S. 
House of Representatives takes the cake.

[..]
_______________________________________________
Dataloss Mailing List (dataloss () datalossdb org)

Get business, compliance, IT and security staff on the same page with
CREDANT Technologies: The Shortcut Guide to Understanding Data Protection
from Four Critical Perspectives. The eBook begins with considerations
important to executives and business leaders.
http://www.credant.com/campaigns/ebook-chpt-one-web.php


Current thread: