In Depth

Where PCI DSS Still Falls Short (and How to Make it Better)

Former CISO and Symantec strategic consulting director Ariel Silverstone goes through PCI DSS line by line and offers suggestions to make it more effective

By Ariel Silverstone, CISSP

Page 5

While the PCI DSS is certainly a major step in the right direction, it is still anemic. I believe it needs to be clarified, broken into technical and non-technical parts, and generally be better discussed and reviewed before. I applaud the PCI contributors for their efforts. I am sure we all desire for PCI DSS to can become the tool we want -- a practical and useful Standard in payment industry protection. Let us have a real debate, and not wait for September 2010 to introduce a new version.

Ariel Silverstone is a former director of strategic consulting at Symantec and CISO at Temple University.

PCI DSS

RESOURCE CENTER
Loading...
VIRTUAL CONFERENCE
Security Directions: A Virtual Conference

Security Directions Available On Demand Sept. 30 - Dec. 30

Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.

» Register Now

WEBCAST
Protecting PII: How to Work with IT to Manage Risk

Compuware Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.

» View this Webcast

Featured Sponsors