Utah Colocation PCI Security

Posted on : 25-03-2010 | By : fiberblog | In : Utah Colocation

0

For starters, PCI Compliance has been a mandatory requirement for service organizations since September of 2006, when the leading payment brands–American Express, Discover, MasterCard, Visa, and JCB International–founded the Payment Card Industry (PCI) Security Standards Council with the express purpose of establishing and promoting the global observance of certain, consistent data security measures. These measures are outlined in a comprehensive set of requirements called the PCI Data Security Standard (PCI DSS); such requirements include stringent mandates for security management, policies, procedures, network infrastructure, software design, and other security elements.

The specific requirements stated in the PCI DSS can be found on the official website of the PCI Security Standards Council as follows:

Build and Maintain a Secure Network
Requirement 1: Install and maintain a firewall configuration to protect cardholder data
Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters
Protect Cardholder Data
Requirement 3: Protect stored cardholder data
Security
Requirement 4: Encrypt transmission of cardholder data across open, public networks
Maintain a Vulnerability Management Program
Requirement 5: Use and regularly update anti-virus software
Requirement 6: Develop and maintain secure systems and applications
Implement Strong Access Control Measures
Security

Requirement 7: Restrict access to cardholder data by business need-to-know

Requirement 8: Assign a unique ID to each person with computer access
Regularly Monitor and Test Networks
Requirement 10: Track and monitor all access to network resources and cardholder data
Requirement 11: Regularly test security systems and processes
Maintain an Information Security Policy
Bio-Metric Scan
Requirement 12: Maintain a policy that addresses information security

The PCI DSS is foremost intended to help organizations that accept, process, and store sensitive payment account information protect that data from intrusion. As a fully PCI compliant facility, Fibernet understands that the PCI DSS may be subject to modifications as new security risks arise and we are committed to enhancing the listed protocol as needed, while continuing to promote PCI compliance wherever it applies.

Fibernet is a 100% PCI Compliant Data Center that has been around for 15 years.  If you would like more information on how we can help you to become 100% PCI compliant please contact us at 801.223.9939. or Chat Live

Write a comment