Security standards for payment transactions

Security standards for payment transactions

Share post

The Payment Security Report 2023 coincides with the upcoming launch date of the Payment Card Industry Data Security Standard (PCI DSS) version 4.0 for payments. This update to the current PCI DSS standard is the largest change since 2004.

The changes to payments will impact all organizations that store, process or transmit cardholder data, from e-commerce to the public sector. Compliance with PCI DSS v4.0 is strongly recommended until March 31, 2024, when v3.2.1 will be phased out. The standard contains numerous updates and 64 new specifications. The PSR 2023 provides companies dealing with this new standard with the tools they need to address critical areas of security management to not only meet the deadline, but also ensure the long-term success of their company. This includes the role of PCI security integration into broader governance, risk management and compliance initiatives, as well as the tools required for modern program design.

“Compliance is often seen as adding complexity to the already difficult task of securing digital payments given the ever-evolving capabilities of threat actors,” said Kris Philipsen, managing director of cybersecurity consulting at Verizon. “Fortunately, there are highly effective methods to achieve payment security compliance outlined in the Verizon Payment Security Report that not only help make PCI DSS v4.0 outcomes highly predictable, but “It also enables companies to achieve significant performance improvements when designing security programs.”

PSR 2023 helps enterprise leaders develop and manage a PCI security compliance program, providing flexible models that organizations can use. The report also highlights key management methods to identify and overcome key obstacles and provides guidance to clarify the causes of underperformance of the security program.

Understanding PCI DSS

“PCI DSS v2024 will be phased out in March 3.2.1,” said Lance Johnson, Executive Director of PCI SSC. “The PCI Security Standards Council is committed to helping organizations understand the latest version of PCI DSS. To this end, the Council has created a PCI DSS v4.0 Resource Hub, which contains useful information to better understand the new standard. When organizations understand what PCI DSS v4.0 means for them, they can take the necessary steps to achieve a smooth and efficient transition.”

The five most important insights that companies should definitely know:

  • With further development PCI DSS requirements should also be adapted to security programs.
  • The success of data security and compliance is achieved by design – not by chance.
  • Modern management methods Simplify the complexities of program management and help organizations achieve more with less.
  • Organisations Should design security programs to focus on what matters most and overcome the most pressing obstaclesen.
  • An integrated program management plan can be applied to new processes and significantly improve existing processes.
More at Verizon.com

 


Via Verizon

Founded on June 30, 2000, Verizon Communications Inc. (NYSE and Nasdaq: VZ) is one of the world's leading providers of technology, communications, information and entertainment products and services. Headquartered in New York and with a global presence, Verizon generated revenue of $2022 billion in 136,8. The company provides voice, data and video services and solutions across its award-winning networks and platforms, meeting customers' needs for mobility, reliable network connectivity, security and control.

 

Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

BSI sets minimum standards for web browsers

The BSI has revised the minimum standard for web browsers for administration and published version 3.0. You can remember that ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more

DSPM product suite for Zero Trust Data Security

Data Security Posture Management – ​​DSPM for short – is crucial for companies to ensure cyber resilience against the multitude ➡ Read more