PCI Compliance: Understand and Implement Effective PCI Data Security Standard Compliance, Fourth Edition

  • 8h 37m
  • Anton A. Chuvakin, Branden R. Williams
  • Elsevier Science and Technology Books, Inc.
  • 2015

Identity theft and other confidential information theft have now topped the charts as the leading cybercrime. In particular, credit card data is preferred by cybercriminals. Is your payment processing secure and compliant? The new Fourth Edition of PCI Compliance has been revised to follow the new PCI DSS standard version 3.0, which is the official version beginning in January 2014. Also new to the Fourth Edition: additional case studies and clear guidelines and instructions for maintaining PCI compliance globally, including coverage of technologies such as NFC, P2PE, CNP/Mobile, and EMV. This is the first book to address the recent updates to PCI DSS. The real-world scenarios and hands-on guidance are also new approaches to this topic. All-new case studies and fraud studies have been added to the Fourth Edition.

Each chapter has how-to guidance to walk you through implementing concepts, and real-world scenarios to help you relate to the information and better grasp how it impacts your data. This book provides the information that you need in order to understand the current PCI Data Security standards and how to effectively implement security on network infrastructure in order to be compliant with the credit card industry guidelines, and help you protect sensitive and personally-identifiable information.

  • Completely updated to follow the most current PCI DSS standard, version 3.0
  • Packed with help to develop and implement an effective strategy to keep infrastructure compliant and secure
  • Includes coverage of new and emerging technologies such as NFC, P2PE, CNP/Mobile, and EMV
  • Both authors have broad information security backgrounds, including extensive PCI DSS experience

About the Authors

Branden R. Williams (CISSP, CISM, CPISA, CPISM) leads an information security practice in a Global Security Consulting group at a major security firm in Flower Mound, TX and teaches in the NSA Certified Information Assurance program at the University of Dallas's Graduate School of Management. Branden has been involved in information technology since 1994, and focused on information security since 1996. He started consulting on payment security in 2004, assessing companies against the Visa CISP and Mastercard SDP programs. He has a Bachelors of Business Administration in Marketing from the University of Texas, Arlington, and a Masters of Business Administration in Supply Chain Management and Market Logistics from the University of Dallas.

Dr. Anton Chuvakin is a recognized security expert in the field of log management and PCI DSS compliance. He is an author of the books "Security Warrior" and "PCI Compliance" and has contributed to many others, while also publishing dozens of papers on log management, correlation, data analysis, PCI DSS, and security management. His blog is one of the most popular in the industry.

Additionally, Anton teaches classes and presents at many security conferences across the world and he works on emerging security standards and serves on the advisory boards of several security start-ups. Currently, Anton is developing his security consulting practice, focusing on logging and PCI DSS compliance for security vendors and Fortune 500 organizations. Anton earned his Ph.D. from Stony Brook University.

In this Book

  • Foreword
  • About PCI DSS and This Book
  • Introduction to Fraud, Data Theft, and Related Regulatory Mandates
  • Why is PCI Here?
  • Determining and Reducing the PCI Scope
  • Building and Maintaining a Secure Network
  • Strong Access Controls
  • Protecting Cardholder Data
  • Using Wireless Networking
  • Vulnerability Management
  • Logging Events and Monitoring the Cardholder Data Environment
  • PCI DSS and Cloud Computing
  • Mobile
  • PCI for the Small Business
  • Managing a PCI DSS Project to Achieve Compliance
  • Don't Fear the Assessor
  • The Art of Compensating Control
  • You're Compliant, Now What?
  • Emerging Technology and Alternative Payment Schemes
  • Myths and Misconceptions of PCI DSS
SHOW MORE
FREE ACCESS

PEOPLE WHO VIEWED THIS ALSO VIEWED THESE

Rating 4.7 of 12 users Rating 4.7 of 12 users (12)
Rating 4.6 of 198 users Rating 4.6 of 198 users (198)
Rating 5.0 of 1 users Rating 5.0 of 1 users (1)