Timeline for PCI DSS 4.0: The First Requirement and Best Practices for Network Security Controls

PCI DSS featured

PCI DSS compliance is verifying that your systems, those that handle personal and cardholder information, meet all the expectations of the 12 requirements of the standard. These requirements describe security and privacy controls to protect against modern threats and vulnerabilities and call for both attention to implementing controls and maintaining long-term best practices. 

The best way to understand expectations under PCI DSS is to walk through the requirements and what they say about security. Here, we’ll touch on the first requirement: Install and maintain security controls.

Read More

Timeline for PCI DSS 4.0 Compliance – First Steps

PCI DSS 4.0 prep featured

As we’ve been writing, PCI DSS 4.0 is upon us. We’ve discussed some of the broader changes around the newer versions, but we have yet to dig deeper into the timeline for version 4.0.

This article will discuss the preliminary steps you can take to prepare for the update. With a focus on understanding your IT infrastructure and the impact of the regulations on how you can use it, you can start to get your feet wet with the new standards and some of the curveballs they might throw at you. 


Read More

How Are Small Businesses Addressing PCI DSS 4.0?

PCI DSS 4.0 featured

PCI DSS 4.0 is public and rolling out. Fortunately for most organizations, adopting the new requirements isn’t an all-or-nothing proposition as of July 2022. However, it’s quickly becoming apparent that businesses large and small must address the new PCI standards sooner, rather than later. This presents a few challenges and opportunities for small businesses. 

Here we’ll discuss what’s coming down the pipeline for PCI DSS as it relates to small businesses that may handle consumer credit information. While the standard is the same no matter the business size, the impact of the new standards will hit differently for SMBs. 


Read More