MCSE, CCNA, CCNP, Security+, Network+, A+ Certification
Cramsession Library

Help | Advanced Search
What's New?
What's Popular?
MCSE, CCNA, CCNP, Security+, Network+,A+ CertificationMCSE, CCNA, CCNP, Security+, Network+, A+ Certification
MCSE, CCNA, CCNP, Security+, Network+, A+ Certification
Judgment Day
sponsored by Information Security Magazine
Posted:  06 Dec 2006
Published:  01 Dec 2006
Format:  HTML
Length:  8  Page(s)
Type:  Journal Article
Language:  English

Get this Document
E-mail this to a colleague!
ABSTRACT:

Roger Nebel has seen plenty of payment card industry security violations in his day, but one retail client's transgressions were the worst.

The trouble started with the retailer's checkout counter machines, where customers swipe their credit cards, recalls Nebel, director of strategic security for Washington D.C.-based FTI Consulting. The client used two versions of the point-of-sale system in various locations--an older version that didn't encrypt cardholder data, and a newer version that did.

Then, the retailer's POS device vendor used a well-known Web-based program to remotely manage several systems with a common user ID and password. Meanwhile, the client failed to log activity on the systems, there was no security monitoring in general, and several sites lacked adequate antivirus software.
Get this now!
AUTHOR: 

Bill Brenner


BROWSE RELATED RESOURCES:

Compliance Audits | Compliance Best Practices | Credit Cards | Data Encryption | Payment Card Industry | Payment Card Industry Data Security Standard | Payment Card Industry Data Security Standard Compliance | Retail Trade Industry
View All Resources sponsored by Information Security Magazine

Library Home | Advertise with Us


MCSE, CCNA, CCNP, Security+, Network+, A+ CertificationMCSE, CCNA, CCNP, Security+, Network+, A+ Certification
  CramSession. All Rights Reserved.     HOME   ADVERTISE   CORPORATE INFO   HELP