Moving towards PCI DSS 3.0 compliance: A case study of credit card data security audit in an online payment company

Author(s):  
Muhammad R. Shihab ◽  
Febriana Misdianti
2018 ◽  
pp. 1093-1124
Author(s):  
Amrita Nanda ◽  
Priyal Popat ◽  
Deepak Vimalkumar

PCI Data Security Standard is increasingly becoming one of the major compliance requirements all organizations are concerned about. This chapter taking a holistic approach, provides an overview of various components of PCI DSS. We discuss various versions of PCI DSS and the industries affected by this standard, the scope and requirements to comply and hesitation on part of most companies to imbibe it. We also look at the high-profile credit card breaches which have occurred recently and their impact on concerned industries. Additionally, we focus on the challenges faced by financial institutions to effectively meet PCI DSS requirements. Based on our analysis of different requirements of PCI DSS, challenges faced by organizations and recent security breaches of companies which were PCI DSS complaint at the time of breach, we propose recommendations to help organizations secure their cardholder data beyond the achieved compliance in place.


Author(s):  
Amrita Nanda ◽  
Priyal Popat ◽  
Deepak Vimalkumar

PCI Data Security Standard is increasingly becoming one of the major compliance requirements all organizations are concerned about. This chapter taking a holistic approach, provides an overview of various components of PCI DSS. We discuss various versions of PCI DSS and the industries affected by this standard, the scope and requirements to comply and hesitation on part of most companies to imbibe it. We also look at the high-profile credit card breaches which have occurred recently and their impact on concerned industries. Additionally, we focus on the challenges faced by financial institutions to effectively meet PCI DSS requirements. Based on our analysis of different requirements of PCI DSS, challenges faced by organizations and recent security breaches of companies which were PCI DSS complaint at the time of breach, we propose recommendations to help organizations secure their cardholder data beyond the achieved compliance in place.


2018 ◽  
Vol 34 (3) ◽  
pp. 671-694 ◽  
Author(s):  
Debolina Ghatak ◽  
Bimal Roy

Abstract Privacy protection and data security have recently received a substantial amount of attention due to the increasing need to protect various sensitive information like credit card data and medical data. There are various ways to protect data. Here, we address ways that may as well retain its statistical uses to some extent. One such way is to mask a data with additive or multiplicative noise and revert to certain desired parameters of the original distribution from the knowledge of the noise distribution and masked data. In this article, we discuss the estimation of any desired quantile of a quantitative data set masked with additive noise. We also propose a method to choose appropriate parameters for the noise distribution and discuss advantages of this method over some existing methods.


2018 ◽  
Vol 30 (3) ◽  
pp. 3-22
Author(s):  
Won-Seop Shim ◽  
Seung-Mook Choi ◽  
Chang-Sup Shim

Sign in / Sign up

Export Citation Format

Share Document