Tuesday, June 18, 2013
  • Resource Center
  • Support
  • Contact Us
  • Products
    • SpyLogix Enterprise
      1. SpyLogix Platform
      2. SpyLogix Modules
        • Active Directory
        • Windows Server
        • User Security
        • FIM 2010
        • CA IdentityMinder
        • CA SiteMinder
        • LDAP Directories
        • VMware vSphere
        • IBM System z and i
        • Module SDK
      3. SpyLogix Architecture
    • SpyLogix for Microsoft
      1. Active Directory
      2. Windows Server
      3. User Security
      4. FIM 2010
    • IDx Identity Assurance
      1. IDx Voice Self Service Password Reset
  • Solutions
    • SpyLogix Key Benefits
    • Cloud Solutions
    • IT GRC Solutions
    • Microsoft Solutions
    • Government Solutions
    • Identity Assurance Solutions
    • Information Security Solutions
    • 360° visibility for CA Technologies
  • Partners
    • Overview
    • System Integrators
    • Cloud Service Partners
    • Technology Partners
    • Become an IdentityLogix Partner
  • Services
    • Overview
    • Training
    • Support
  • News/Events
    • Events
    • Webinars
    • Press Releases
    • In The News
  • Company
    • About Us
    • Careers
    • Support
    • Contact Us
  • Blog
onthebeachblog3
Viewing entries tagged PCI 2.0 Subscribe to feed
Michael A. Hlebasko

PCI Data Security Controls

by Michael A. Hlebasko
Michael A. Hlebasko
Michael focuses on maintaining IdentityLogix as an innovative software company o
User is currently offline
Thursday, 19 July 2012 Category PCI 0 Comments

When it comes to protected information security under PCI DSS, consistent purview over log data is the guidance. But it’s known that this objective is not as easy as it sounds. Organizations managing PCI data are supposed to review log data and periodically schedule an assessment to be completed by an outside party. However with today’s economy, and so much being asked of IT staff, I wonder if periodic review of sensitive data risk controls to comply with PCI DSS is adequate.
 

Continue Reading >>>

Tags: Continuous Monitoring, Audit, Remediate, Compliance, risk assessment, Report, PCI DSS, CAESARS, NISTIR 7756, PCI 1.2, PCI 2.0
Read More Hits: 21007
Rate this blog entry
1 vote
Steven Phipps

Utilities Overcoming Continuous Regulatory Constraints & Industry Standards

by Steven Phipps
Steven Phipps
Vice President of Professional Services, 15 years of governance, risk, & compli
User is currently offline
Thursday, 26 April 2012 Category GRC 0 Comments

Participating and reviewing smart meter / smart grid programs have allowed us to evangelize the need for utilities to established a continuous near real-time enterprise-wide platform. The economics of today is forcing executives to overcome the regulatory issues and utilities standards of upgrading the current grid to resolve:

    1. Limited energy storage
    2. Central power generation
    3. One-way binary demand response
    4. Limited real-time data
    5. Reactive outage management systems

smart-grid situational awareness1

Continue reading >>>

Tags: PCI 2.0, NERC-CIP, ISO 27002, AMI, NIST 800-53, Asset Management, Continuous Control Monitoring, Utilities, Energy, Regulatory, Smart Meter, Smart Grid
Read More Hits: 23884
Rate this blog entry
4 votes
Steven Phipps

PCI 2.0 from PCI 1.2 Compliances Challenges to Organizations

by Steven Phipps
Steven Phipps
Vice President of Professional Services, 15 years of governance, risk, & compli
User is currently offline
Friday, 20 April 2012 Category PCI 0 Comments

Organizations must track and monitor all access to cardholder data and related network resources – in stores, regional offices, headquarters, and other remote access.

Yes, it is well documented that the three (3) tenets for adhering to PCI DSS 2.0 are as follows:

    1. Assess - Identifying cardholder data, taking an inventory of your IT assets and business processes for payment card processing, and analyzing them for vulnerabilities that could expose cardholder data.
    2. Remediate - Fixing vulnerabilities and not storing cardholder data unless you need it.
    3. Report - Compiling and submitting required remediation validation records (if applicable), and submitting compliance reports to the acquiring bank and card.
PCI DSS 2.0 Monitoring

Continue reading >>>

Tags: Continuous Monitoring, Audit, Remediate, Compliance, risk assessment, Report, PCI DSS, CAESARS, NISTIR 7756, PCI 1.2, PCI 2.0
Read More Hits: 31211
Rate this blog entry
7 votes
Member Login

Categories

GRC
9 post(s)
IT GRC
2 post(s)
PCI
2 post(s)
Code
1 post(s)

Bloggers

Michael A. Hlebasko
Michael A. Hlebasko
1 post(s)
"Michael focuses on maintaining IdentityLogix as an..."
http://identitylogix.com
Gary Sheehan
Gary Sheehan
1 post(s)
"Gary is the Director of GRC Services for Advanced ..."
http://gsheehan@asmgi.com
Blaise Boscaccy
Blaise Boscaccy
1 post(s)
"IdentityLogix VP of Product Development"
Steven Phipps
Steven Phipps
11 post(s)
"Vice President of Professional Services, 15 years ..."

Join Us

Tag Cloud

transmission Continuous Control Monitoring Remediate IEC 61850 Energy distribution PDM plugin AMI .NET ISO38500 IT GRC eGRC code C Sharp Smart Grid Utilities CIP NIST 800-53 TOU CAESARS Smart Grid AMI-HAN Assess risk assessment COBIT Compliance Report M2C PCI 2.0 CBM Audit Smart Meter MDMS AHM zigbee PCI DSS Asset Management Continuous Monitoring Monitor GRC DMS NERC-CIP real-time PCI 1.2 PCI NISTIR 7628 NISTIR 7756 Regulatory CCM ISO 27002 C# OMS
  • Solutions
  • Products
  • Partners
  • News & Events
  • Company
  • Legal Notice
  • Privacy Policy
  • Contact Us
© Copyright 2010, IdentityLogix, All Rights Reserved.

Login

  • Forgot your password?
  • Forgot your username?