Home » Security » Information security
Information Security in the Payment Process
Source: www.shift4.com
Topic: Information security
Sort Desciption: Copyright 2006. All rights reserved. 1 EXECUTIVE SUMMARY "Information Security" has become a growing concern for all businesses. In the Payment Services Industry, in particular, the security of ...
Content Inside: Information Security In The Payment Process The History and Requirements Surrounding PCI DSS Authored by: Dr. Heather Mark, Ph.D., CISSP February 2006 ©Copyright 2006. All rights reserved. 1 EXECUTIVE SUMMARY "Information Security" has become a growing concern for all businesses. In the Payment Services Industry, in particular, the security of customer information has taken on extreme importance. Yet despite all the attention it garners, there is still a great deal of confusion about the concept. Many businesses approach information security by implementing only those measures that are required for compliance with the Payment Card Industry Data Security Standard (PCI). The popular misconception holds that a company that is compliant with the PCI standards must also inherently be secure. Such an approach may be shortsighted and not adequate to sufficiently protect the companys sensitive information and computer resources. This paper will define information security and contrast the definition with that of compliance. A discussion of the Card Association data security programs, the Payment Card Industry Data Security Standards and the Payment Application Best Pr ...