Educause Security Discussion mailing list archives

Re: PCI DSS 3.0 Training Requirements


From: Mike Cunningham <mike.cunningham () PCT EDU>
Date: Fri, 18 Mar 2016 16:07:52 +0000

SAN Securing The Human


Mike Cunningham
VP of Information Technology Services/CIO
Pennsylvania College of Technology



From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Burke, 
Ian R.
Sent: Friday, March 18, 2016 11:28 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] PCI DSS 3.0 Training Requirements

We are wondering what other institutions are doing to meet the training requirements put forward by the PCI standards 
in Req. 12. We have been working with a homegrown solution but are finding it difficult to maintain. We are considering 
replacing it with a purchased, hosted solution but are concerned about the ROI. Have other schools found a method for 
streamlining the homegrown process or found solid ROI from a purchased solution? Thanks.

Ian

Ian Burke
Information Security Administrator
Information Security - ITS
http://go.middlebury.edu/infosec
Middlebury College


Current thread: