<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Payment Card Security &#38; IT Controls Explained</title>
	<atom:link href="http://pcidss.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://pcidss.wordpress.com</link>
	<description>Card security effects everyone.  I will utilize this forum to communicate the ongoing efforts to safeguard this type of data.</description>
	<pubDate>Fri, 11 Jul 2008 08:12:37 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<language>en</language>
			<item>
		<title>Extra Extra:  FREE PCI TRAINING</title>
		<link>http://pcidss.wordpress.com/2008/07/11/extra-extra-free-pci-training/</link>
		<comments>http://pcidss.wordpress.com/2008/07/11/extra-extra-free-pci-training/#comments</comments>
		<pubDate>Fri, 11 Jul 2008 08:12:37 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[PCI DSS]]></category>

		<category><![CDATA[Payment Card Industry Data Security Standard]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=102</guid>
		<description><![CDATA[I am a strong believer in group &#8220;live&#8221; training experiences where I am in a room with individuals who have different perspectives, challenges, and questions.  Unfortunately, the real world keeps spinning and constant training is not always possible, so the web (yes&#8230; that which gives and takes) has online training.  For those unaware there are [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/07/11/extra-extra-free-pci-training/feed/</wfw:commentRss>
		</item>
		<item>
		<title>NEW Fraud Survey - Identify Impactful Internal controls</title>
		<link>http://pcidss.wordpress.com/2008/07/07/new-fraud-survey-identify-impactful-internal-controls/</link>
		<comments>http://pcidss.wordpress.com/2008/07/07/new-fraud-survey-identify-impactful-internal-controls/#comments</comments>
		<pubDate>Mon, 07 Jul 2008 12:54:20 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[ROI]]></category>

		<category><![CDATA[Risk Management]]></category>

		<category><![CDATA[audit]]></category>

		<category><![CDATA[regulations]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=101</guid>
		<description><![CDATA[In the mail I received an early copy of the &#8220;2008 Report to the Nation on Occupational Fraud and Abuse&#8221; from the Association of Certified Fraud Examiners.  The 2006 report has represented de facto standard for qualitative fraud calculations and risk mitigation efforts.  While there is no substitute for reading the full report I will [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/07/07/new-fraud-survey-identify-impactful-internal-controls/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Better Performance with IT Governance - when done properly</title>
		<link>http://pcidss.wordpress.com/2008/06/30/better-performance-with-it-governance-when-done-properly/</link>
		<comments>http://pcidss.wordpress.com/2008/06/30/better-performance-with-it-governance-when-done-properly/#comments</comments>
		<pubDate>Mon, 30 Jun 2008 08:29:27 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=100</guid>
		<description><![CDATA[Two reports crossed my desk recently and I wanted to highlight a few action items based on their findings.  The first is based on data provided by Deloitte that centered on financial institutions entitled &#8220;Growing Confidence (The smart way to manage governance, risk, and compliance)&#8220;.  The second is by the IT Policy Compliance Group that [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/30/better-performance-with-it-governance-when-done-properly/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Security Metrics in a Recession - A Better Mindset</title>
		<link>http://pcidss.wordpress.com/2008/06/25/security-metrics-in-a-recession-a-better-mindset/</link>
		<comments>http://pcidss.wordpress.com/2008/06/25/security-metrics-in-a-recession-a-better-mindset/#comments</comments>
		<pubDate>Wed, 25 Jun 2008 22:17:43 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[ROI]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=99</guid>
		<description><![CDATA[Business ebbs and flows in most industries and unless you are demonstrating true value it is hard to respond positively when management must make hard decisions.  If technology services are not demonstrating value - i.e, they are not in alignment with what the business needs or there is waste throughout the system perhaps a healthy [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/25/security-metrics-in-a-recession-a-better-mindset/feed/</wfw:commentRss>
		</item>
		<item>
		<title>HIPAA:  An update on guidelines and enforcement</title>
		<link>http://pcidss.wordpress.com/2008/06/23/hipaa-an-update-on-guidelines-and-enforcement/</link>
		<comments>http://pcidss.wordpress.com/2008/06/23/hipaa-an-update-on-guidelines-and-enforcement/#comments</comments>
		<pubDate>Mon, 23 Jun 2008 08:18:24 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=96</guid>
		<description><![CDATA[
A lot of individuals are as familiar with HIPAA as they are with PCI DSS.  The difference is quite extreme for the reason - People are aware of HIPAA due to the privacy statement they sign when they hit the doctor&#8217;s office.  They are aware of PCI DSS due to credit card breaches. [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/23/hipaa-an-update-on-guidelines-and-enforcement/feed/</wfw:commentRss>
	
		<media:content url="http://pcidss.files.wordpress.com/2008/06/resolutionsbarchart.gif?w=260" medium="image" />
	</item>
		<item>
		<title>ABA Banking Journal Article on Project Management</title>
		<link>http://pcidss.wordpress.com/2008/06/19/aba-banking-journal-article-on-project-management/</link>
		<comments>http://pcidss.wordpress.com/2008/06/19/aba-banking-journal-article-on-project-management/#comments</comments>
		<pubDate>Thu, 19 Jun 2008 15:54:18 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=94</guid>
		<description><![CDATA[I have been fortunate to work directly on product development of software, widgets, and service businesses and the end result is a intense appreciation for project management techniques.  Projects have failed (lack of culture appreciation, scope creep) and others have succeeded (senior executive support, cost reduction ~ grid computing metrics, short term returns) for varying [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/19/aba-banking-journal-article-on-project-management/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Prevent Fraud and Increase Revenue by 6%</title>
		<link>http://pcidss.wordpress.com/2008/06/09/prevent-fraud-and-increase-revenue-by-6/</link>
		<comments>http://pcidss.wordpress.com/2008/06/09/prevent-fraud-and-increase-revenue-by-6/#comments</comments>
		<pubDate>Mon, 09 Jun 2008 08:58:42 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[fraud]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=93</guid>
		<description><![CDATA[The cost of fraud to an organization is approximately 6% of an organizations revenues each year.  This is an astounding figure calculated by the Association of Certified Fraud Examiners using a global survey, and supported by several other international and independent authorities.  A great means of reducing the damage of known and unknown damages to [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/09/prevent-fraud-and-increase-revenue-by-6/feed/</wfw:commentRss>
		</item>
		<item>
		<title>The western hemisphere ahead of AsiaPacific</title>
		<link>http://pcidss.wordpress.com/2008/06/04/the-western-hemisphere-ahead-of-asiapacific/</link>
		<comments>http://pcidss.wordpress.com/2008/06/04/the-western-hemisphere-ahead-of-asiapacific/#comments</comments>
		<pubDate>Wed, 04 Jun 2008 13:43:30 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<category><![CDATA[Sarbanes-Oxley]]></category>

		<category><![CDATA[regulations]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=92</guid>
		<description><![CDATA[&#8220;Medicine rarely tastes good. The introduction of Sarbanes Oxley was, for many, accompanied by significant distaste for the idea. In the longer term, it does appear that those institutions exposed to the rigours of more exacting compliance regimes have made more progress with developing integrated governance and controls frameworks.
Financial institutions in the western hemisphere are [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/04/the-western-hemisphere-ahead-of-asiapacific/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Integrating Enterprise Risk Management Structures, Roles</title>
		<link>http://pcidss.wordpress.com/2008/06/02/integrating-enterprise-risk-management-structures-roles/</link>
		<comments>http://pcidss.wordpress.com/2008/06/02/integrating-enterprise-risk-management-structures-roles/#comments</comments>
		<pubDate>Mon, 02 Jun 2008 08:35:35 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[Compliance]]></category>

		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[Risk Management]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=90</guid>
		<description><![CDATA[Structuring and maintaining a risk management process that is integrated can be daunting, and despite the tremendous amount of documentation surrounding the topic most organizations are still in the early years of maturity.  A common challenge that organizations face is the identification of roles.  The assignment of roles depends greatly on the structure and culture [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/06/02/integrating-enterprise-risk-management-structures-roles/feed/</wfw:commentRss>
	
		<media:content url="http://pcidss.files.wordpress.com/2008/05/picture-3.png?w=300" medium="image" />
	</item>
		<item>
		<title>The Greatest Free Security Tools, by James DeLuccia</title>
		<link>http://pcidss.wordpress.com/2008/05/30/the-greatest-free-security-tools-by-james-deluccia/</link>
		<comments>http://pcidss.wordpress.com/2008/05/30/the-greatest-free-security-tools-by-james-deluccia/#comments</comments>
		<pubDate>Fri, 30 May 2008 13:08:28 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
		
		<category><![CDATA[IT Controls]]></category>

		<category><![CDATA[Payment Card Industry Data Security Standard]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=89</guid>
		<description><![CDATA[Tyson Kpczynski of NetworkWorld has an article highlighting 6 free tools you shouldn&#8217;t live without for the security minded.  He highlights a few of the numerous available tools, but neglects a few foundation security applications.  He suggests the following tools (comments added):

Metasploit - a superb tool!  Necessary for everyone.  It provides the user with a [...]]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2008/05/30/the-greatest-free-security-tools-by-james-deluccia/feed/</wfw:commentRss>
<enclosure url="http://media.defcon.org/dc-15/video/Defcon15-Aaron_Peterson-Pen-Testing_Wi-fi.mp4" length="0" type="video/mp4" />
		</item>
	</channel>
</rss>