Search the Library
 
Home >

Security

>

PCI Compliance


Results 1 - 25 of 105 matches Sort Results By : Published Date | Title | Company name
The Perils of Cross-Site Scripting (XSS)
By : Breach Security, Inc. Published Date: Jun 17, 2009
Cross-site Scripting (XSS) attacks are universally seen as the #1 security vulnerability facing web applications. Don’t wait another today to learn how protect your organization – download the white paper by Ryan Barnett, Director of Application Security at Breach Security.

Download Now
Breach Security, Inc.
Understanding Tokenization and End-to-End Encryption
By : Voltage Security Published Date: Jun 16, 2009
In this webcast you’ll hear an analysis of how these approaches compare as well as what to consider from the perspective of complexity, auditing, cost and overall risk factors. Learn more today!

Download Now
Voltage Security
Six Ways to Reduce PCI DSS Audit Scope by Tokenizing Cardholder Data
By : nuBridges, Inc. Published Date: Jun 16, 2009
Enterprises are seeking ways to simplify and reduce the scope of the Payment Card Industry’s Data Security Standard (PCI DSS) compliance by shrinking the footprint where cardholder data is located throughout their organization. By reducing the scope, these enterprises can dramatically lower the cost and anxiety of PCI DSS compliance and significantly increase the chance of audit success. Learn more today!

Download Now
nuBridges, Inc.
PCI DSS Compliance in the UNIX/Linux Datacenter Environment
By : Symark International, Inc. Published Date: May 20, 2009
This whitepaper discusses how creating a secure access control infrastructure in heterogeneous Unix/Linux environments supports the Payment Card Industry Data Security Standard (PCI DSS).  Symark PowerBroker controls access to systems and cardholder data, and creates comprehensive logs and audit trails.  Various tables show PowerBroker’s functionality mapped to the PCI DSS requirements.
Download Now
Symark International, Inc.
Solution Brief - Firewall Operations Management for Juniper Networks
By : Tufin Software Technologies Ltd. Published Date: May 13, 2009
Learn how Tufin's SecureTrack provides complete visibility of all firewall operations. With powerful change tracking, risk analysis and security optimization capabilities, SecureTrack enables Juniper Networks' firewall teams to increase network security and automate day-to-day tasks. Download today!

Download Now
Tufin Software Technologies Ltd.
Top Ten Insider Threats and How To Prevent Them
By : Prism Microsystems Published Date: Apr 24, 2009
This Whitepaper discusses the top ten insider activities you have to monitor to make sure your employees are not violating security policy or opening up easy routes for insider abuse. Implementing these recommendations is fast, cost effective and will help prevent costly insider hacks and data leakage from impacting your business.
Download Now
Prism Microsystems
A Focus on Security Yields Compliance for Free
By : Thales Published Date: Apr 21, 2009
Many senior executives are realizing that weak or no information security will result in substantial financial losses, while compliance costs are high and threaten to go higher. Yet, compliance with a law or regulation does not equate to security.

Download Now
Thales
Demystifying Compliance
By : Splunk Inc. Published Date: Apr 14, 2009
Compliance is high on the IT agenda today, yet no one seems to have a clear picture of what it really involves. Inconsistent interpretation by different auditors, regulators and vendors means what worked in one year's audit could fail in the next. This whitepaper is designed to help Demystify Compliance as it relates to IT and give you some simple recipes for analyzing your own environment in the light of specific mandates.
Download Now
Splunk Inc.
Forrester Research and Passlogix present: GRC with eSSO
By : Passlogix Published Date: Mar 31, 2009
During this presentation Forrester Research Senior Analyst Andras Cser discuss how enterprise single sign-on can help organize with their governance, regulatory and compliance audits.
Download Now
Passlogix
Beyond PCI Checklists: Securing Cardholder Data with Tripwire's Enhanced File Integrity Monitoring
By : Tripwire Published Date: Mar 30, 2009
How do organizations pass their PCI DSS audits yet still suffer security breaches? Paying attention to PCI DSS checklists only partially secures the cardholder environment. Learn the next steps for fully securing your data.
Download Now
Tripwire
Web Application Threats are Evolving: Are Your Security Efforts Keeping Pace? Today, Web
By : VeriSign Inc Published Date: Mar 18, 2009
Web Application Threats Are Evolving. Are Your Security Efforts Keeping Pace? Today, Web application security threats are not only becoming more abundant than ever, but also more difficult to detect, and more complex to solve. Many organizations are responding to these unique vulnerabilities with traditional network security approaches. However, sophisticated Web applications threats require a more sophisticated security strategy. What’s worked in the past won’t necessarily work today; and what’s more, Web application security requires a comprehensive solution, not simply a series of a la carte provisions. For detailed steps toward improving your Web application security strategy, download the VeriSign® Enterprise Security Services white paper, Best Practices That Improve Web Application Security.
Download Now
VeriSign Inc
Tufin Whitepaper - Firewall Operations Management
By : Tufin Software Technologies Ltd. Published Date: Mar 08, 2009
This white paper takes a closer look at firewall operations management and how your company can reduce risk, lower costs, and achieve its strategic security objectives. Learn more today!

Download Now
Tufin Software Technologies Ltd.
The Resources for PCI Compliance
By : nCircle Published Date: Mar 06, 2009
All payment card network members, including traditional and Internet organizations, banks and payment processors, are required to comply with the Payment Card Industry (PCI) Data Security Standard.   nCircle provides a range of PCI compliance solutions for companies of all sizes. From quarterly PCI scanning to file integrity monitoring, nCircle provides a unified foundation for an organization’s security and compliance preparation and auditing, encompassing 11 of the 12 PCI requirements as well as many other regulations including SOX, HIPAA, NERC.  This resource guide will provide information to help you get started with you PCI compliance efforts.

Download Now
nCircle
Meeting the Payment Card Industry Data Security Standard
By : Prism Microsystems Published Date: Mar 05, 2009
The Payment Card Industry Data Security Standard mandates requirements to protect card holder data. Requirements cover network security, data protection, vulnerability management, access control, monitoring and testing, and information security. This paper discusses the specific requirements and solutions affecting network administrators.
Download Now
Prism Microsystems
Top Five SIM Pitfalls: Ensuring Successful Security Information Management
By : SecureWorks, Inc. Published Date: Mar 02, 2009

 

To satisfy regulatory requirements and better protect their networks, many organizations are turning to Security Information Management (SIM) tools. By collecting, correlating and reporting security events from firewalls, IDS/IPS devices, servers and other data sources across the network, SIM technology enables defense-in-depth. Properly implemented and managed, SIM technology improves security operations by providing:

Faster identification and response to real threats

Elimination of false positive alerts

Assessment and prioritization of risk

High level metrics for strategic decisions

For organizations subject to regulations such as PCI, GLBA, FFIEC, HIPAA, SOX, FISMA, NERC CIP and others, SIM technology addresses key compliance requirements for monitoring and auditing logs. SIM also delivers automated compliance reporting that can be used to monitor compliance status and demonstrate control effectiveness to auditors.

However, implementing and managing SIM technology is not an easy task. Many organizations have struggled with SIM projects due to unanticipated risks and challenges. This has resulted in wasted resources, weaker operational security and negative audit findings.

This paper was designed to help Security, IT and Compliance professionals in deploying Security Information Management (SIM) tools. It explores the pitfalls that have led to failed projects for other and provides organizations in need of SIM with guidance for ensuring a successful SIM Project.  

 


Download Now
SecureWorks, Inc.
Ogren Group Security Business Analysis: EC Suite
By : Lumension, Inc. Published Date: Feb 24, 2009
The Ogren Group found that EC Suite, a major processor of credit card transactions for e-commerce organizations, saved considerable time and effort in their IT and security operations as a direct result of their preventive security measures and procedures using Lumension solutions.
Download Now
Lumension, Inc.
Symark PowerBroker: Root Access Risk Control for the Enterprise
By : Symark International, Inc. Published Date: Jan 16, 2009
Compliance efforts and security concerns have driven businesses to make substantial investments in threat control. Too often, however, these efforts pay far too little heed to the risks posed by poorly controlled access to administrative privilege in IT, which can have a hugely disproportionate impact on the business.
Download Now
Symark International, Inc.
The Good, Bad and Necessary:The Complete Guide to PCI 6.6 Success
By : Breach Security, Inc. Published Date: Jan 12, 2009
It seems that IT administrators and security professionals are always receiving notification of new rules, regulations and compliance codes that fall under their purview. And just when the necessary adjustments have been made, priorities shifted and new technology purchased, the rules are changed - yet again.
Download Now
Breach Security, Inc.
Anatomy of a Web Hack - SQL Injection Explained
By : Breach Security, Inc. Published Date: Jan 12, 2009
While there are many types of attacks against your organization, none are as simple or as potentially destructive as what is known as a SQL injection. This attack is used to manipulate your organizations web applications to extract sensitive information straight out of your corporate databases and is one of the more popular attacks employed in identity theft incidents.
Download Now
Breach Security, Inc.
Vulnerability Management Buyer's Checklist - Key Questions to Ask Before You Select a VM Solution
By : Qualys Published Date: Jan 06, 2009
Choosing a solution for Vulnerability Management (VM) is a critical step toward protecting your organization’s network and data. Without proven, automated technology for precise detection and remediation, no network can withstand the daily onslaught of new vulnerabilities that threaten security.

Download Now
Qualys
Security Beyond the Windows Event Log - Monitoring Ten Critical Conditions
By : Prism Microsystems Published Date: Nov 05, 2008
This technical white paper describes the ten most critical security conditions that are not monitored by the Windows Operating System or logged in the Event Log. These conditions are critical for any enterprise large or small.
Download Now
Prism Microsystems
The Need for Disk Encryption and Advanced Password Protection in Healthcare
By : Data Guard Systems, Inc Published Date: Oct 30, 2008
The data security challenges in the healthcare industry have never been as challenging as they are today. Not only must healthcare providers comply with HIPAA regulations concerning patient privacy and electronic data security, they must also guard against identity theft as well more complex scenarios of insurance data theft, medical identity theft and the adulteration of health records.
Download Now
Data Guard Systems, Inc
Keep Your Customer Data Safe: A Guide to Securing Web Applications
By : Veracode Published Date: Oct 17, 2008
With over 75% of new attacks targeted directly at the application layer and many high profile web attacks covered by the media, web application security has become top of mind for IT security managers. While the need for web security and web services security is certainly understood, the methods and approaches for web application security testing can seem daunting.
In this whitepaper learn how to secure web applications using web application security testing and understand the different approaches that leading organizations take to address website security.


Download Now
Veracode
Ensure Customer Confidence: PCI Guide for Merchants and Service Providers
By : Veracode Published Date: Oct 17, 2008
The PCI Data Security Standard (PCI DSS) delineates requirements that vendors must meet in order to conduct business transactions using payment cards. New PCI requirements that specifically focus on application security became mandatory in June 2008. With their own brands at risk, merchants and service providers must secure their applications from potential vulnerabilities to comply with PCI standards.  This whitepaper helps Merchants and Service Providers understand and meet PCI DSS requirements.
Download Now
Veracode
OCC Bulletin 2008-16: A Blueprint for Compliance
By : Veracode Published Date: Oct 17, 2008
The recent issuance of the OCC Bulletin 2008-16 alerted financial institutions to the risks posed by insecure.  Historically, banks have lacked an effective and cost-efficient manner to analyze the security of software.  Security testing has been limited to manual analysis by consultants, using internal teams with source code tools or trusting software vendors to test their own code.  None of these approaches scale to cover entire application portfolios, and can add significant time and costs to projects.  This whitepaper outlines how these limitations can be overcome by following five best practices that institutions can use to secure their applications.
Download Now
Veracode
 
Results 1 - 25 of 105 matches Sort Results By : Published Date | Title | Company name
Home >

Security

>

PCI Compliance

<< Start < Previous 1 2 3 4 5 Next > End >>

More Security Topics

Access Control

,

Anti Spam

,

Anti Spyware

,

Anti Virus

,

Application Security

,

Auditing

,

Authentication

,

Biometrics

,

Business Continuity

,

Compliance

,

DDoS

,

Disaster Recovery

,

Email Security

,

Encryption

,

Firewalls

,

Hacker Detection

,

High Availability

,

Identity Management

,

Internet Security

,

Intrusion Detection

,

Intrusion Prevention

,

IPSec

,

Network Security Appliance

,

Password Management

,

Patch Management

,

Phishing

,

PKI

,

Policy Based Management

,

Security Management

,

Security Policies

,

Single Sign On

,

SSL

,

Secure Instant Messaging

,

Web Service Security

,

PCI Compliance

,

Vulnerability Management

SUBSCRIBE FORM
Receive an email alert whenever new research is added into:
PCI Compliance
Enter your email below:

RELATED TOPICS
Access Control
143 Documents
Application Security
86 Documents
Auditing
97 Documents
Compliance
310 Documents
Hacker Detection
74 Documents
High Availability
86 Documents
Internet Security
150 Documents
Network Security Appliance
34 Documents
Phishing
23 Documents
Security
532 Documents
Security Management
253 Documents
Single Sign On
35 Documents

Search the Library
White Papers powered by
   PCI Compliance Technology
   Learn about White Paper Lead Generation opportunities

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions