0%

Book Description

PCI Compliance: Understand and Implement Effective PCI Data Security Standard Compliance, Second Edition, discusses not only how to apply PCI in a practical and cost-effective way but more importantly why. The book explains what the Payment Card Industry Data Security Standard (PCI DSS) is and why it is here to stay; how it applies to information technology (IT) and information security professionals and their organization; how to deal with PCI assessors; and how to plan and manage PCI DSS project. It also describes the technologies referenced by PCI DSS and how PCI DSS relates to laws, frameworks, and regulations.
This book is for IT managers and company managers who need to understand how PCI DSS applies to their organizations. It is for the small- and medium-size businesses that do not have an IT department to delegate to. It is for large organizations whose PCI DSS project scope is immense. It is also for all organizations that need to grasp the concepts of PCI DSS and how to implement an effective security framework that is also compliant.
  • Completely updated to follow the PCI DSS standard 1.2.1
  • Packed with help to develop and implement an effective security strategy to keep infrastructure compliant and secure
  • Both authors have broad information security backgrounds, including extensive PCI DSS experience

Table of Contents

  1. Cover image
  2. Table of Contents
  3. Front Matter
  4. Copyright
  5. Foreword
  6. Acknowledgments
  7. About the Authors
  8. Chapter 1. About PCI and This Book
  9. Chapter 2. Introduction to Fraud, ID Theft, and Regulatory Mandates
  10. Chapter 3. Why Is PCI Here?
  11. Chapter 4. Building and Maintaining a Secure Network
  12. Chapter 5. Strong Access Controls
  13. Chapter 6. Protecting Cardholder Data
  14. Chapter 7. Using Wireless Networking
  15. Chapter 8. Vulnerability Management
  16. Chapter 9. Logging Events and Monitoring the Cardholder Data Environment
  17. Chapter 10. Managing a PCI DSS Project to Achieve Compliance
  18. Chapter 11. Don't Fear the Assessor
  19. Chapter 12. The Art of Compensating Control
  20. Chapter 13. You're Compliant, Now What?
  21. Chapter 14. PCI and Other Laws, Mandates, and Frameworks
  22. Chapter 15. Myths and Misconceptions of PCI DSS
  23. Index