官术网_书友最值得收藏!

PCI penetration testing guide

Things just got real for companies that need to comply with PCI requirements. Not only is PCI v3.2 mandated, the PCI Standards Security Council has issued guidance on using penetration testing as part of vulnerability-management programs.

In April 2016, the Payment Card Industry Security Standards Council (PCI SSC) released PCI Data Security Standard (PCI DSS) version 3.2. With the updates came clarification to requirements, additional guidance, and seven additional new requirements. 

To address issues related to cardholder data breaches and protect against existing exploits, PCI DSS v.3.2 includes various changes, most of which are specific to service providers. This includes new penetration testing requirements that now require segmentation testing for Service Providers to now be performed at least every six months or after any significant changes to segmentation controls/methods. In addition, there are several requirements to ensure that service providers are continuously monitoring and maintaining critical security controls throughout the year.

主站蜘蛛池模板: 新郑市| 双城市| 鹤峰县| 四川省| 临沭县| 新绛县| 察雅县| 潮安县| 长沙市| 沙坪坝区| 虎林市| 沂水县| 班戈县| 藁城市| 潞城市| 株洲市| 亳州市| 明光市| 湖南省| 武隆县| 崇仁县| 宜丰县| 都昌县| 偃师市| 大宁县| 额尔古纳市| 东辽县| 东台市| 克东县| 双柏县| 平江县| 鄂尔多斯市| 海兴县| 金阳县| 南宫市| 雷波县| 浦东新区| 安龙县| 海林市| 桂林市| 资讯 |