Network World
Thursday, July 24, 2008
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Community

Credit Card Crackdown

If you take credit cards in your business, even a handful a year, the Payment Card Industry (PCI) became your business partner with their new regulations. Worse, states are starting to make new laws guaranteed to hammer small businesses as an example to look like they're doing something, rather than really addressing the credit card data loss problem.

Jesper Jurcenoks of NetVigilance again anchored the Security Experts panel during ITEC Kansas City this week. He just returned from a PCI conference in Toronto, and related some chilling stories. Minnesota is, at least so far, the first state to pass a new law about PCI compliance, but other states are working on theirs. This law will kill any small business accused of a credit card data leak that hasn't spent the money on a PCI audit.

The bad news? If you lose credit card data, and can't demonstrate PCI compliance, Minnesota says your company is responsible for all charges made with the credit card number(s) taken. Even if you take a handful of credit card orders per year, and write the numbers down on a sticky note, you fall under PCI jurisdiction. If someone uses the number found on a sticky note, you're on the hook, at least in Minnesota.

If you have had a PCI audit, then the credit card company and the company who processed the stolen number get responsibility. Big companies will still lose credit card data, but they will have internal and probably external audits "proving" they're compliant with PCI, no matter how bad their actual security.

Once again, a small company will become the example. Don't let it be you. More on this soon.

Reply

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <i> <b> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <blockquote> <br /> <br> <p>
  • Lines and paragraphs break automatically.
  • You can use BBCode tags in the text.
  • Web page addresses and e-mail addresses turn into links automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

Latest software headlines from Network World:

Basic to-do apps for iPhone and iPod touch

Acrobat 9 Pro

Microsoft: Make an Xbox 360 game and get paid

Report: Beware of 'chaos' SharePoint can create

Cast Iron adds data-cleansing to integration appliance

  1   2   3   4   5   6   7   8   9  10  next 

Advertisement: