FREE MEMBERSHIP - Create your personalized Bitpipe Service!  Members: Sign in 
Search Bitpipe: 
  Search Help
Judgment Day
sponsored by Information Security Magazine
Posted:  06 Dec 2006
Published:  01 Dec 2006
Format:  HTML
Length:  8  Page(s)
Type:  Journal Article

ABSTRACT:

Roger Nebel has seen plenty of payment card industry security violations in his day, but one retail client's transgressions were the worst.

The trouble started with the retailer's checkout counter machines, where customers swipe their credit cards, recalls Nebel, director of strategic security for Washington D.C.-based FTI Consulting. The client used two versions of the point-of-sale system in various locations--an older version that didn't encrypt cardholder data, and a newer version that did.

Then, the retailer's POS device vendor used a well-known Web-based program to remotely manage several systems with a common user ID and password. Meanwhile, the client failed to log activity on the systems, there was no security monitoring in general, and several sites lacked adequate antivirus software.
 
View This Now
 
AUTHOR: 

Bill Brenner


BROWSE RELATED RESOURCES:
Compliance Audits | Compliance Best Practices | Credit Cards | Data Encryption | Payment Card Industry | Payment Card Industry Data Security Standard | Payment Card Industry Data Security Standard Compliance | Retail Trade Industry
View All Resources sponsored by Information Security Magazine

Home | About Us | Contact Us | Advertise with Us | Partner with Us | Site Index
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines

Definitions: A B C D E F G H I J K L M N O P Q R S T U V W X Y Z Other   TechTarget - The Most Targeted IT Media
TechTarget Corporate Web Site  |   Media Kits  |   Site Map




All Rights Reserved, Copyright 2000 - 2007, TechTarget | Read our Privacy Statement