Author: David Bruce
Common Criteria for Information Technology Security Evaluation (CC) is an international agreement that provides a set of standards, testing processes, and documentation standards that is widely recognized as the leading standard for defined software security standards. The Canadian Centre for Cyber Security performs evaluations on common IT products and releases a report called “Common Criteria […]… Read More
The post Common Criteria Certification: What Is It, and What Does It Mean for Tripwire Enterprise? appeared first on The State of Security.
The new PCI DSS Standard, version 4.0, contains all the steps, best practices, and explanations required for full compliance. In fact, even an organization that does not process cardholder data could follow the PCI Standard to implement a robust cybersecurity program for any of its important data. In our series about how the new standard […]… Read More
The post PCI 4.0: The wider meanings of the new Standard appeared first on The State of Security.
As we continue our review of the 12 Requirements of PCI DSS version 4.0, one has to stop and consider, is it possible to have a favorite section of a standard? After all, most guidance documents, as well as regulations are seen as tedious distractions from the importance of getting the job done. However, depending […]… Read More
The post What you need to know about PCI 4.0: Requirements 10, 11 and 12 appeared first on The State of Security.
In Part 1 of this series, we reviewed the first four sections of the new PCI standards. As we continue our examination of PCI DSS version 4.0, we will consider what organizations will need to do in order to successfully transition and satisfy this update. Requirements 5 through 9 are organized under two categories: Maintain […]… Read More
The post What you need to know about PCI 4.0: Requirements 5, 6, 7, 8 and 9 appeared first on The State of Security.
The Payment Card Industry Security Standards Council has released its first update to their Data Security Standard (PCI DSS) since 2018. The new standard, version 4.0, is set to generally go into effect by 2024, but there are suggested updates that are not going to be required until a year after that. This, of course, […]… Read More
The post What you need to know about PCI 4.0: Requirements 1, 2, 3 and 4. appeared first on The State of Security.
The Payment Card Industry Data Security Standard (PCI DSS) is a benchmark with tenure in the industry, with the first version being introduced in 2004. The PCI DSS was unique when it was introduced because of its prescriptive nature and its focus on protecting cardholder data. Cybersecurity is a changing landscape, and prescriptive standards must […]… Read More
The post PCI DSS 4.0 is Here: What you Need to Consider appeared first on The State of Security.