3 min read
PCI DSS May Require Pulling Up Your SOX (or ISO)
Executives and managers in organizations preparing for their first onsite PCI security assessment may feel confident that having passed a SOX audit...
3 min read
Executives and managers in organizations preparing for their first onsite PCI security assessment may feel confident that having passed a SOX audit...
5 min read
PCI DSS v3.2 is due for an update this year - but what will that look like? In this article, we peer into our crystal ball to make some predictions...
5 min read
PCI DSS is all about scope. Getting scope right or wrong is perhaps the single most critical factor determining the ultimate success or failure of...
2 min read
Last month we wrote this article about issues arising from the addition of new BIN ranges and the lack of clear guidance specifically with 16-digit...
1 min read
Many Canadians traveling to the US have experienced the frustration of running into a form of address verification. This is a common extra check...
7 min read
Now is the time to stop using 64-bit block length ciphers such as 3DES (TDEA) and Blowfish in general purpose applications of cryptography. In 2016,...
10 min read
Compliance simplification, what most people call “scope reduction”, can have huge benefits in terms of saving time, effort, headaches, and money....
4 min read
On May 1st a critical new and possibly unprecedented vulnerability was announced. The flaw in Intel's Active Management Technology (AMT) firmware...
2 min read
Barely a year after NIST approved Format-Preserving Encryption (FPE) based on AES they've issued a news release that one of the approved modes has...