Payment Card Industry (PCI) Data Security Standard Template for Report on Compliance for use with PCI DSS v3.0

Author(s):  
Ron Lepofsky
2021 ◽  
Vol 15 (2) ◽  
pp. 91-104
Author(s):  
Khairur Razikin ◽  
Agus Widodo

The use of technology in the era of the Industrial Revolution 4.0 is essential, marked by the use of technology in the economy and business. This situation makes many companies in the payment sector have to improve their information technology security systems. In Indonesia, Bank Indonesia and the Financial Services Authority (Otoritas Jasa Keuangan - OJK) are agencies that provide operational permits for companies by making Payment Card Industry-Data Security Standard (PCI-DSS) certification as one of the requirements for companies to obtain operating permits. However, not all companies can easily get PCI-DSS certification because many companies still do not meet the PCI-DSS requirements. The research offers a methodology for measuring the level of technology and information maturity using general cybersecurity requirements adopted from the cybersecurity frameworks of CIS, NIST, and Cobit. Then, the research also performs qualitative calculations based on interviews, observations, and data surveys conducted on switching companies that have been able to implement and obtain certification. PCI-DSS to produce practical cybersecurity measures, in general, can be used as a measure of the maturity of technology and information security. The results and discussion provide a model assessment tool on the procedures and requirements needed to obtain PCI-DSS certification. The maturity level value of PT XYZ is 4.0667 at maturity level 4, namely quantitatively managed, approaching level 5 as the highest level at maturity level.


10.12737/557 ◽  
2013 ◽  
Vol 2 (3) ◽  
pp. 57-60
Author(s):  
Слезко ◽  
Vyacheslav Slezko

In article it is spoken about the necessity related to creation of mechanism of optimal state funding for R&D. In this mechanism structure shall be included the systems of technical and economic audit of intellectual property objects. In accordance with part IV of the Russian Federation Civil code (art. 1225), it is possible to obtain the following two groups of intellectual property items as a result of R&D on the area of information technologies: the items of patent law and copyright law. It is possible to carry out the information technologies’ technical audit with application of COBIT [Control Objectives for Information and related Technology] and PCI DSS [Payment Card Industry Data Security Standard] standards. Economic audit during R&D in the area of information resources shall include the carrying out expert examinations on the costs of research and assessment of intellectual property items’ market value. All this shall lead to significant reduction of economic losses in the process of state financing related to research and development.


2006 ◽  
Vol 2006 (3) ◽  
pp. 16-19 ◽  
Author(s):  
Robert Rowlingson ◽  
Richard Winsborrow

2008 ◽  
Vol 16 (2) ◽  
pp. 67-79
Author(s):  
Kutay Kalkan ◽  
Francis KwansaS ◽  
Cihan Cobanoglu

2010 ◽  
Vol 12 (3) ◽  
pp. 287-303 ◽  
Author(s):  
Jing Liu ◽  
Yang Xiao ◽  
Hui Chen ◽  
Suat Ozdemir ◽  
Srinivas Dodle ◽  
...  

Sign in / Sign up

Export Citation Format

Share Document