-
Jul 201114
You want to be sure that your anti-virus/anti-malware scanner is actually doing its job. But how do you know if it is actually doing its job?
Continue reading "Is your Anti-Virus program working properly?" »
-
Nov 20103
Back in July, in response to a number of queries, I wrote about what level of protection is required to meet PCI compliance requirements when other elements of cardholder data are stored with the PAN.
Continue reading "Clarification on cardholder data and protections" »
-
Oct 201024
PA DSS requires vendors to ensure that the chain of trust is maintained for all installation and update files. These are primarily laid out in 7.2.a and 7.2.b PA-DSS 1.2 document. What this means is that customers should be able to verify that the files that they install/update are actually from you (authentication) and that they have not been modified (integrity).
Continue reading "Chain of trust for installation & update files" »

