 |
 |
 |
 |
|
More on Audit and compliance planning
|
 |
 |
 |

How to choose an external compliance auditor
TIP - Headed for a PCI DSS, HIPAA or Sarbanes-Oxley audit? Picking the right auditor is a key decision; select one who becomes a business partner, ally and educator.
( Oct 15, 2009 )
|
 |
 |
 |
 |

PCI DSS: Writing an information security policy
TIP - The final set of PCI requirements relates to maintaining a security policy, and also addresses awareness training, personnel screening and managing service provider relationships.
( Oct 05, 2009 )
|
 |
 |
 |
 |

PCI DSS requirement: Monitoring and testing security
TIP - The fifth focus area of PCI-DSS requires regular monitoring of systems and activity, as well regular testing of controls.
( Sep 24, 2009 )
|
 |
 |
 |
 |

PCI DSS requirement: Implement strong access control ...
TIP - The fourth focus area of PCI DSS governs how organizations enable and restrict access to cardholder data and limit physical access to cardholder data.
( Aug 06, 2009 )
|
 |
 |
 |
 |

Avoid compliance mistakes as you outsource
ARTICLE - Providers may be required to be compliant with PCI, but that doesn't liberate merchants from liability in the event of a breach.
( Jul 06, 2009 )
|
 |
 |
|
 |
|
 |
 |
|