In Depth
Where PCI DSS Still Falls Short (and How to Make it Better)
Former CISO and Symantec strategic consulting director Ariel Silverstone goes through PCI DSS line by line and offers suggestions to make it more effective
By Ariel Silverstone, CISSP
While the PCI DSS is certainly a major step in the right direction, it is still anemic. I believe it needs to be clarified, broken into technical and non-technical parts, and generally be better discussed and reviewed before. I applaud the PCI contributors for their efforts. I am sure we all desire for PCI DSS to can become the tool we want -- a practical and useful Standard in payment industry protection. Let us have a real debate, and not wait for September 2010 to introduce a new version.
Ariel Silverstone is a former director of strategic consulting at Symantec and CISO at Temple University.
PCI DSS
Security Directions: A Virtual Conference
Available On Demand Sept. 30 - Dec. 30
Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.
Protecting PII: How to Work with IT to Manage Risk
Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.



