CSOONLINE.com - PCI and Compliance http://www.csoonline.com/ en_us (c) Copyright 2012 CXO Media, Inc. All Rights Reserved. Mon, 13 Feb 2012 01:01:33 GMT 2012-02-13T01:01:33Z en_us (c) Copyright 2012 CXO Media, Inc. All Rights Reserved. Nation's nuclear power watchdog comes up short on FISMA compliance http://www.csoonline.com/article/696831/nation-s-nuclear-power-watchdog-comes-up-short-on-fisma-compliance-?source=rss_pci_and_compliance Majority of compliance gaps surround configuration and vulnerability management, an independent audit finds. But NRC has made important strides, too. Tue, 20 Dec 2011 05:00:00 GMT George V. Hulme http://www.csoonline.com/article/696831/nation-s-nuclear-power-watchdog-comes-up-short-on-fisma-compliance-?source=rss_pci_and_compliance 2011-12-20T05:00:00Z Small company, big security challenges http://www.csoonline.com/article/696245/small-company-big-security-challenges?source=rss_pci_and_compliance Startup Linkable Networks decided to meet PCI DSS Level 1 security requirements, with cloud-based infrastructure as an extra wrinkle. Here's a look inside the effort. Fri, 09 Dec 2011 05:00:00 GMT Bob Violino http://www.csoonline.com/article/696245/small-company-big-security-challenges?source=rss_pci_and_compliance 2011-12-09T05:00:00Z Why healthcare IT security is harder than the rest http://www.csoonline.com/article/693941/why-healthcare-it-security-is-harder-than-the-rest?source=rss_pci_and_compliance In this interview, security expert Gunnar Peterson explains why securing health care IT systems is quite different from other types of business IT infrastructure. Mon, 14 Nov 2011 05:00:00 GMT George V. Hulme http://www.csoonline.com/article/693941/why-healthcare-it-security-is-harder-than-the-rest?source=rss_pci_and_compliance 2011-11-14T05:00:00Z New SEC security breach rules no big game changer, experts say http://www.csoonline.com/article/691951/new-sec-security-breach-rules-no-big-game-changer-experts-say?source=rss_pci_and_compliance While the guidance is welcomed, don't expect a wave of new breach disclosures. Tue, 18 Oct 2011 04:00:00 GMT George V. Hulme http://www.csoonline.com/article/691951/new-sec-security-breach-rules-no-big-game-changer-experts-say?source=rss_pci_and_compliance 2011-10-18T04:00:00Z Data destruction: Why you need NAID http://www.csoonline.com/article/690857/data-destruction-why-you-need-naid?source=rss_pci_and_compliance Never heard of NAID? Ben Rothke says those four letters are important to your organization's ability to deliver security, privacy and compliance. Mon, 03 Oct 2011 04:00:00 GMT http://www.csoonline.com/article/690857/data-destruction-why-you-need-naid?source=rss_pci_and_compliance 2011-10-03T04:00:00Z SIEM: Dead or alive? http://www.csoonline.com/article/690291/siem-dead-or-alive-?source=rss_pci_and_compliance Security practitioners defend the value of SIEM after elQnetworks declares the technology dead. Thu, 22 Sep 2011 04:00:00 GMT http://www.csoonline.com/article/690291/siem-dead-or-alive-?source=rss_pci_and_compliance 2011-09-22T04:00:00Z Senator to businesses: Protect data or pay http://www.csoonline.com/article/689819/senator-to-businesses-protect-data-or-pay?source=rss_pci_and_compliance Senator Richard Blumenthal says his data breach legislation will deter data breaches. IT security experts have their doubts. Wed, 14 Sep 2011 04:00:00 GMT http://www.csoonline.com/article/689819/senator-to-businesses-protect-data-or-pay?source=rss_pci_and_compliance 2011-09-14T04:00:00Z Case study: Using remote access securely http://www.csoonline.com/article/689637/case-study-using-remote-access-securely?source=rss_pci_and_compliance Point-of-sale products vendor MICROS Systems services some of the most popular restaurant and hotel chains in the world. Their CISO explains how they support clients remotely without opening them up for a headline-making breach Mon, 12 Sep 2011 04:00:00 GMT Joan Goodchild http://www.csoonline.com/article/689637/case-study-using-remote-access-securely?source=rss_pci_and_compliance 2011-09-12T04:00:00Z Nine (and a half) signs your vulnerability management program is failing http://www.csoonline.com/article/688083/nine-and-a-half-signs-your-vulnerability-management-program-is-failing?source=rss_pci_and_compliance What are the common indications that an organization's vulnerability management program is not functioning properly? Gary McCully of SecureState presents methods and suggestions for rooting them out and addressing the problems Tue, 16 Aug 2011 04:00:00 GMT http://www.csoonline.com/article/688083/nine-and-a-half-signs-your-vulnerability-management-program-is-failing?source=rss_pci_and_compliance 2011-08-16T04:00:00Z Creating a cloud SLA from diagnostic data http://www.csoonline.com/article/687197/creating-a-cloud-sla-from-diagnostic-data?source=rss_pci_and_compliance Where do you start in order to have a successful port of applications into a private/public cloud? Greg Machler provides tips on creating a Service Level Agreement from the collection of diagnostic data Thu, 04 Aug 2011 04:00:00 GMT http://www.csoonline.com/article/687197/creating-a-cloud-sla-from-diagnostic-data?source=rss_pci_and_compliance 2011-08-04T04:00:00Z Google Building Postini Features Into Apps http://www.csoonline.com/article/686264/google-building-postini-features-into-apps?source=rss_pci_and_compliance Google has started to move e-mail security features from its Postini service directly into its Google Apps collaboration and communication suite. Fri, 15 Jul 2011 04:00:00 GMT http://www.csoonline.com/article/686264/google-building-postini-features-into-apps?source=rss_pci_and_compliance 2011-07-15T04:00:00Z Mobile payments and PCI DSS compliance: Some, but not much, clarity (yet) http://www.csoonline.com/article/685564/mobile-payments-and-pci-dss-compliance-some-but-not-much-clarity-yet-?source=rss_pci_and_compliance Those hoping for mobile payments PCI compliance answers will have to wait a bit longer, the security council says. Tue, 05 Jul 2011 04:00:00 GMT http://www.csoonline.com/article/685564/mobile-payments-and-pci-dss-compliance-some-but-not-much-clarity-yet-?source=rss_pci_and_compliance 2011-07-05T04:00:00Z New scoring systems for software security: CWSS and CWRAF http://www.csoonline.com/article/685225/new-scoring-systems-for-software-security-cwss-and-cwraf?source=rss_pci_and_compliance Companies get a framework to evaluate software vulnerabilities, as the consequences of failing to patch flaws become clearer. Tue, 28 Jun 2011 04:00:00 GMT http://www.csoonline.com/article/685225/new-scoring-systems-for-software-security-cwss-and-cwraf?source=rss_pci_and_compliance 2011-06-28T04:00:00Z They're baaack! National data breach notification bills resurface http://www.csoonline.com/article/685125/they-re-baaack-national-data-breach-notification-bills-resurface?source=rss_pci_and_compliance Following a string of high-profile data breaches, lawmakers push (again) for federal data breach disclosure. Mon, 27 Jun 2011 04:00:00 GMT http://www.csoonline.com/article/685125/they-re-baaack-national-data-breach-notification-bills-resurface?source=rss_pci_and_compliance 2011-06-27T04:00:00Z Security concerns dominate cloud confab http://www.csoonline.com/article/684013/security-concerns-dominate-cloud-confab?source=rss_pci_and_compliance Vendors participating at the gathering acknowledged that security is still a major stumbling block to cloud adoption. Thu, 09 Jun 2011 04:00:00 GMT http://www.csoonline.com/article/684013/security-concerns-dominate-cloud-confab?source=rss_pci_and_compliance 2011-06-09T04:00:00Z