<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>CSOONLINE.com - PCI and Compliance</title>
    <link>http://www.csoonline.com/</link>
    <description />
    <language>en_US</language>
    <copyright>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</copyright>
    <pubDate>Fri, 25 Jul 2008 16:10:41 GMT</pubDate>
    <dc:date>2008-07-25T16:10:41Z</dc:date>
    <dc:language>en_US</dc:language>
    <dc:rights>(c) Copyright 2008 CXO Media, Inc. All Rights Reserved.</dc:rights>
    <item>
      <title>FUD Watch | Vendor Hype Escalates Over PCI Deadline</title>
      <link>http://www.csoonline.com/article/413963/FUD_Watch_Vendor_Hype_Escalates_Over_PCI_Deadline</link>
      <description>Monday is the day merchants must be in compliance with PCI DSS Requirement 6.6. That means the security vendor PR machine is in overdrive.</description>
      <pubDate>Fri, 27 Jun 2008 04:00:00 GMT</pubDate>
      <author>Bill Brenner</author>
      <guid>http://www.csoonline.com/article/413963/FUD_Watch_Vendor_Hype_Escalates_Over_PCI_Deadline</guid>
      <dc:date>2008-06-27T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Researchers: Notification Laws Not Lowering ID Theft</title>
      <link>http://www.csoonline.com/article/383313/Researchers_Notification_Laws_Not_Lowering_ID_Theft</link>
      <description>Over the past five years, 43 U.S. states have adopted data breach notification laws, but has all of this legislation actually cut down on identity theft? Not according to researchers at Carnegie Mellon University.</description>
      <pubDate>Thu, 05 Jun 2008 04:00:00 GMT</pubDate>
      <author>Robert McMillan</author>
      <guid>http://www.csoonline.com/article/383313/Researchers_Notification_Laws_Not_Lowering_ID_Theft</guid>
      <dc:date>2008-06-05T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Security Agency Calls For EU Laws on Breach Disclosure</title>
      <link>http://www.csoonline.com/article/376817/Security_Agency_Calls_For_EU_Laws_on_Breach_Disclosure</link>
      <description>A European Union-wide advisory body this week called for security breach disclosure regulations tougher than those in the U.S. as a step toward raising awareness of the seriousness of security threats.</description>
      <pubDate>Mon, 02 Jun 2008 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/376817/Security_Agency_Calls_For_EU_Laws_on_Breach_Disclosure</guid>
      <dc:date>2008-06-02T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Cyberattacks a Sarbanes-Oxley Issue?</title>
      <link>http://www.csoonline.com/article/330763/Cyberattacks_a_Sarbanes_Oxley_Issue_</link>
      <description>Kevin Coleman of Technolytics Institute says cyberattack concerns are starting to appear in SEC filings.</description>
      <pubDate>Thu, 10 Apr 2008 04:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/330763/Cyberattacks_a_Sarbanes_Oxley_Issue_</guid>
      <dc:date>2008-04-10T04:00:00Z</dc:date>
    </item>
    <item>
      <title>Threat Watch | Cold Boot: Should New Attack on Encrypted Disks Change the Way Lawmakers Approach Disclosure Legislation 'Safe Harbors'?</title>
      <link>http://www.csoonline.com/article/328918/Threat_Watch_Cold_Boot_Should_New_Attack_on_Encrypted_Disks_Change_the_Way_Lawmakers_Approach_Disclosure_Legislation_Safe_Harbors_</link>
      <description>Recent research from Princeton, McGraw Security Services illustrates how the lack of encryption specifications in legislation could put consumer data at risk.</description>
      <pubDate>Fri, 04 Apr 2008 04:00:00 GMT</pubDate>
      <author>Rick Cook</author>
      <guid>http://www.csoonline.com/article/328918/Threat_Watch_Cold_Boot_Should_New_Attack_on_Encrypted_Disks_Change_the_Way_Lawmakers_Approach_Disclosure_Legislation_Safe_Harbors_</guid>
      <dc:date>2008-04-04T04:00:00Z</dc:date>
    </item>
    <item>
      <title>The Complete Guide to Security Breach Disclosure</title>
      <link>http://www.csoonline.com/article/217082/The_Complete_Guide_to_Security_Breach_Disclosure</link>
      <description>Six-part set of articles takes 360-degree look at the implications of new laws that require organizations to notify people whose personal information has been compromised</description>
      <pubDate>Fri, 29 Feb 2008 05:00:00 GMT</pubDate>
      <author>Sarah D. Scalet</author>
      <guid>http://www.csoonline.com/article/217082/The_Complete_Guide_to_Security_Breach_Disclosure</guid>
      <dc:date>2008-02-29T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | User Education: How to Respond to a Data Breach Disclosure</title>
      <link>http://www.csoonline.com/article/217049/CSO_Disclosure_Series_User_Education_How_to_Respond_to_a_Data_Breach_Disclosure</link>
      <description>Just find out that your personal information has been compromised? Here&amp;#8217;s what to do.</description>
      <pubDate>Wed, 20 Feb 2008 05:00:00 GMT</pubDate>
      <author>Kathleen Carr</author>
      <guid>http://www.csoonline.com/article/217049/CSO_Disclosure_Series_User_Education_How_to_Respond_to_a_Data_Breach_Disclosure</guid>
      <dc:date>2008-02-20T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Interview: How to Make Guests Feel at Home (and Still Comply with PCI and Sarbanes Oxley Too)</title>
      <link>http://www.csoonline.com/article/217040/Interview_How_to_Make_Guests_Feel_at_Home_and_Still_Comply_with_PCI_and_Sarbanes_Oxley_Too_</link>
      <description>The head of information security for the company that owns the Grand Ole Opry gives a snapshot of his road to compliance</description>
      <pubDate>Fri, 15 Feb 2008 05:00:00 GMT</pubDate>
      <author>Katherine Walsh</author>
      <guid>http://www.csoonline.com/article/217040/Interview_How_to_Make_Guests_Feel_at_Home_and_Still_Comply_with_PCI_and_Sarbanes_Oxley_Too_</guid>
      <dc:date>2008-02-15T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | Data Breach Notification Laws, State By State</title>
      <link>http://www.csoonline.com/article/221322/CSO_Disclosure_Series_Data_Breach_Notification_Laws_State_By_State</link>
      <description>Five years after California's landmark SB 1386, our interactive map shows you which 38 states have passed laws requiring companies to notify consumers whose personal information has been compromised. Part of an in-depth series about disclosing security breaches.</description>
      <pubDate>Tue, 12 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/221322/CSO_Disclosure_Series_Data_Breach_Notification_Laws_State_By_State</guid>
      <dc:date>2008-02-12T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | What's Next with Disclosure Legislation?</title>
      <link>http://www.csoonline.com/article/217027/CSO_Disclosure_Series_What_s_Next_with_Disclosure_Legislation_</link>
      <description>An interview with lawyer and breach notification expert Tanya Forsheit on why the United States still doesn&amp;#8217;t have a federal breach notification law. Part of an in-depth series about disclosing breaches</description>
      <pubDate>Mon, 11 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/217027/CSO_Disclosure_Series_What_s_Next_with_Disclosure_Legislation_</guid>
      <dc:date>2008-02-11T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | The Dos and Don'ts of Disclosure Letters</title>
      <link>http://www.csoonline.com/article/217018/CSO_Disclosure_Series_The_Dos_and_Don_ts_of_Disclosure_Letters</link>
      <description>One security breach, two letters, 11 lessons in the art of telling customers you screwed up. Two PR pros deconstruct the messages that Monster.com and USAJOBS were really giving to customers whose personal information had been disclosed. Part of an in-depth series about disclosing breaches.</description>
      <pubDate>Wed, 06 Feb 2008 05:00:00 GMT</pubDate>
      <author>Scott Berinato</author>
      <guid>http://www.csoonline.com/article/217018/CSO_Disclosure_Series_The_Dos_and_Don_ts_of_Disclosure_Letters</guid>
      <dc:date>2008-02-06T05:00:00Z</dc:date>
    </item>
    <item>
      <title>CSO Disclosure Series | What California's New Medical Disclosure Law Means for the Rest of Us</title>
      <link>http://www.csoonline.com/article/217010/CSO_Disclosure_Series_What_California_s_New_Medical_Disclosure_Law_Means_for_the_Rest_of_Us</link>
      <description>New state law AB 1298, aimed at reducing instances of medical identity theft, could prompt similar legislation elsewhere, but experts are still unsure whether out-of-state companies with information about Californians must comply</description>
      <pubDate>Mon, 04 Feb 2008 05:00:00 GMT</pubDate>
      <author>Katherine Walsh</author>
      <guid>http://www.csoonline.com/article/217010/CSO_Disclosure_Series_What_California_s_New_Medical_Disclosure_Law_Means_for_the_Rest_of_Us</guid>
      <dc:date>2008-02-04T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Industry View: Calculating the True Cost of PCI Non-Compliance</title>
      <link>http://www.csoonline.com/article/216939/Industry_View_Calculating_the_True_Cost_of_PCI_Non_Compliance</link>
      <description>Symark&amp;#8217;s Ellen Libenson does the math.</description>
      <pubDate>Mon, 07 Jan 2008 05:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/216939/Industry_View_Calculating_the_True_Cost_of_PCI_Non_Compliance</guid>
      <dc:date>2008-01-07T05:00:00Z</dc:date>
    </item>
    <item>
      <title>Improve Your Network Security Posture</title>
      <link>http://www.csoonline.com/article/221319/Improve_Your_Network_Security_Posture</link>
      <description>Five overlooked categories of network compliance risk, and how to address them</description>
      <pubDate>Thu, 20 Dec 2007 05:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/221319/Improve_Your_Network_Security_Posture</guid>
      <dc:date>2007-12-20T05:00:00Z</dc:date>
    </item>
    <item>
      <title>What I Learned From the Top Five Security Events of 2007</title>
      <link>http://www.csoonline.com/article/216853/What_I_Learned_From_the_Top_Five_Security_Events_of_</link>
      <description>Prat Moghe of Tizor Systems draws five key lessons from five data breaches.</description>
      <pubDate>Mon, 03 Dec 2007 05:00:00 GMT</pubDate>
      <guid>http://www.csoonline.com/article/216853/What_I_Learned_From_the_Top_Five_Security_Events_of_</guid>
      <dc:date>2007-12-03T05:00:00Z</dc:date>
    </item>
  </channel>
</rss>

