Book description
Gain a broad understanding of how PCI DSS is structured and obtain a high-level view of the contents and context of each of the 12 top-level requirements. The guidance provided in this book will help you effectively apply PCI DSS in your business environments, enhance your payment card defensive posture, and reduce the opportunities for criminals to compromise your network or steal sensitive data assets.
Applying lessons learned from history, military experiences (including multiple deployments into hostile areas), numerous PCI QSA assignments, and corporate cybersecurity and InfoSec roles, author Jim Seaman helps you understand the complexities of the payment card industry data security standard as you protect cardholder data. You will learn how to align the standard with your business IT systems or operations that store, process, and/or transmit sensitive data. This book will help you develop a business cybersecurity and InfoSec strategy through the correct interpretation, implementation, and maintenance of PCI DSS.
What You Will Learn
- Be aware of recent data privacy regulatory changes and the release of PCI DSS v4.0
- Improve the defense of consumer payment card data to safeguard the reputation of your business and make it more difficult for criminals to breach security
- Be familiar with the goals and requirements related to the structure and interdependencies of PCI DSS
- Know the potential avenues of attack associated with business payment operations
- Make PCI DSS an integral component of your business operations
- Understand the benefits of enhancing your security culture
- See how the implementation of PCI DSS causes a positive ripple effect across your business
Who This Book Is For
Business leaders, information security (InfoSec) practitioners, chief information security managers, cybersecurity practitioners, risk managers, IT operations managers, business owners, military enthusiasts, and IT auditors
Table of contents
- Cover
- Front Matter
- 1. An Evolving Regulatory Perspective
- 2. The Evolution of PCI DSS
- 3. Data Life Support System
- 4. An Integrated Cyber/InfoSec Strategy
- 5. The Importance of Risk Management
- 6. Risk Management vs. Compliance – The Differentiator
- 7. PCI DSS Applicability
- 8. De-scoping the Scoping Risk
- 9. An Introduction to the PCI DSS Controls Framework
- 10. Payment Channel Attack Vectors
- 11. Compliance – A Team Effort
- 12. PIE FARM – A Project Managed Approach to PCI DSS
- 13. Proactive Defense
- 14. People, People, People
- 15. The Ripple Effect
- 16. Cometh the Year, Month, Day, Hour
- 17. Quick Fire Round – Five Commonly Asked Questions
- Back Matter
Product information
- Title: PCI DSS: An Integrated Data Security Standard Guide
- Author(s):
- Release date: May 2020
- Publisher(s): Apress
- ISBN: 9781484258088
You might also like
book
PCI DSS: A pocket guide, sixth edition
This pocket guide is perfect as a quick reference for PCI professionals, or as a handy …
book
PCI DSS: A Practical Guide to implementing and maintaining compliance, Third Edition
A concise, easy to follow reference to PCI DSS compliance This practical guide gives you a …
book
PCI Compliance, 4th Edition
Identity theft and other confidential information theft have now topped the charts as the leading cybercrime. …
book
Managing Risk and Information Security: Protect to Enable, Second Edition
Examine the evolving enterprise security landscape and discover how to manage and survive risk. While based …