官术网_书友最值得收藏!

PCI penetration testing guide

Things just got real for companies that need to comply with PCI requirements. Not only is PCI v3.2 mandated, the PCI Standards Security Council has issued guidance on using penetration testing as part of vulnerability-management programs.

In April 2016, the Payment Card Industry Security Standards Council (PCI SSC) released PCI Data Security Standard (PCI DSS) version 3.2. With the updates came clarification to requirements, additional guidance, and seven additional new requirements. 

To address issues related to cardholder data breaches and protect against existing exploits, PCI DSS v.3.2 includes various changes, most of which are specific to service providers. This includes new penetration testing requirements that now require segmentation testing for Service Providers to now be performed at least every six months or after any significant changes to segmentation controls/methods. In addition, there are several requirements to ensure that service providers are continuously monitoring and maintaining critical security controls throughout the year.

主站蜘蛛池模板: 桂东县| 仁布县| 曲阜市| 海淀区| 梨树县| 揭西县| 宽甸| 舟山市| 肥城市| 花垣县| 始兴县| 敦化市| 华安县| 博白县| 昂仁县| 二手房| 和龙市| 莱阳市| 西峡县| 遵义县| 怀柔区| 呼和浩特市| 邯郸县| 湖北省| 韩城市| 西乡县| 民勤县| 大化| 澜沧| 长武县| 右玉县| 洪雅县| 敦煌市| 进贤县| 买车| 交口县| 新建县| 金阳县| 温宿县| 云龙县| 金秀|