<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Payment Card Security &#38; IT Controls Explained</title>
	<atom:link href="http://pcidss.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://pcidss.wordpress.com</link>
	<description>Card security effects everyone.  I will utilize this forum to communicate the ongoing efforts to safeguard this type of data.</description>
	<lastBuildDate>Thu, 02 Jul 2009 12:00:35 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<image>
		<url>http://www.gravatar.com/blavatar/dea04d321dd6d73d3835656d2ada6027?s=96&#038;d=http://s.wordpress.com/i/buttonw-com.png</url>
		<title>Payment Card Security &#38; IT Controls Explained</title>
		<link>http://pcidss.wordpress.com</link>
	</image>
			<item>
		<title>Building a crash-proof internet, Off-the-Internet Processes</title>
		<link>http://pcidss.wordpress.com/2009/07/02/building-a-crash-proof-internet-off-the-internet-processes/</link>
		<comments>http://pcidss.wordpress.com/2009/07/02/building-a-crash-proof-internet-off-the-internet-processes/#comments</comments>
		<pubDate>Thu, 02 Jul 2009 12:00:35 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[grid computing]]></category>
		<category><![CDATA[iran]]></category>
		<category><![CDATA[it compliance and controls]]></category>
		<category><![CDATA[oii]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[regulation]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[uptime]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=182</guid>
		<description><![CDATA[Interesting article in NewScientist speaking towards the challenges of building a crash proof internet.  Bennett Daviss provides accurate information regarding the challenges of the internet, and how it has become a mission critical part of our lives &#8211; personal and professional.  The Internet is not guaranteed to be up and unless conscious effort is taken [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=182&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/07/02/building-a-crash-proof-internet-off-the-internet-processes/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Audits of the future must enrich and enforce your IT Strategy</title>
		<link>http://pcidss.wordpress.com/2009/06/25/audits-of-the-future-must-enrich-and-enforce-your-it-strategy/</link>
		<comments>http://pcidss.wordpress.com/2009/06/25/audits-of-the-future-must-enrich-and-enforce-your-it-strategy/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 13:04:47 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[ffiec]]></category>
		<category><![CDATA[it compliance and controls]]></category>
		<category><![CDATA[IT Controls]]></category>
		<category><![CDATA[onsite audit]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[regulatory]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[tizor]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=180</guid>
		<description><![CDATA[Yesterday I presented with Prat Moghe, the founder of Tizor, on the challenges faced by businesses.  A broad topic, but we were primarily focused on the database administrators and those charged with the controls in place.  While we go into great detail on the difficulties of manually evaluating controls in a checkbox manner, and I [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=180&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/06/25/audits-of-the-future-must-enrich-and-enforce-your-it-strategy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Federal Court fines Payment Processor for poor Business Practices</title>
		<link>http://pcidss.wordpress.com/2009/06/22/federal-court-fines-payment-processor-for-poor-business-practices/</link>
		<comments>http://pcidss.wordpress.com/2009/06/22/federal-court-fines-payment-processor-for-poor-business-practices/#comments</comments>
		<pubDate>Mon, 22 Jun 2009 15:40:35 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[IT Controls]]></category>
		<category><![CDATA[Institute of Internal Auditors]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[fines]]></category>
		<category><![CDATA[ftc]]></category>
		<category><![CDATA[merchant]]></category>
		<category><![CDATA[payment processor]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[sas 70]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=178</guid>
		<description><![CDATA[Proper business practices are a necessity in business, and when dealing with other people&#8217;s money it is paramount.  The FTC, again, has charged a fine against a business for not doing proper due diligence on new accounts within their operations.  ChoicePoint, now owned wholly by Lexis-Nexis, was previously found guilty of such practices in their [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=178&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/06/22/federal-court-fines-payment-processor-for-poor-business-practices/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>QSA Liability &#8211; CardSystems and court precedence</title>
		<link>http://pcidss.wordpress.com/2009/06/02/qsa-liability-cardsystems-and-court-precedence/</link>
		<comments>http://pcidss.wordpress.com/2009/06/02/qsa-liability-cardsystems-and-court-precedence/#comments</comments>
		<pubDate>Tue, 02 Jun 2009 17:33:37 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[acquirer]]></category>
		<category><![CDATA[audits]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[court]]></category>
		<category><![CDATA[fines]]></category>
		<category><![CDATA[merrick]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[penalties]]></category>
		<category><![CDATA[savvis]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=174</guid>
		<description><![CDATA[The recent news of RBS WorldPay and Heartland in recent news highlights the importance of quality audit efforts by the firms attesting to the security adherence of each organization.  Quality is important, and as every QSA is required to accept liability and indemnify the Card Brands prior to delivering any work an entire business can [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=174&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/06/02/qsa-liability-cardsystems-and-court-precedence/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Twitter, PCI DSS posts&#8230;</title>
		<link>http://pcidss.wordpress.com/2009/05/26/twitter-pci-dss-posts/</link>
		<comments>http://pcidss.wordpress.com/2009/05/26/twitter-pci-dss-posts/#comments</comments>
		<pubDate>Tue, 26 May 2009 14:17:42 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[IT Controls]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=171</guid>
		<description><![CDATA[In preparation for a PCI DSS training seminar I am hosting this month I uncovered a few nuggets within the PCI DSS universe that ALWAYS draws questions and concerns.  Catch my 140 character contributions below.  If you are not using Twitter or another search aggregator to identify updates and vulnerabilities you are working too hard [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=171&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/05/26/twitter-pci-dss-posts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>

		<media:content url="http://search.twitter.com/images/search/expanding.gif?1242860246" medium="image" />

		<media:content url="http://search.twitter.com/images/search/expanding.gif?1242860246" medium="image" />

		<media:content url="http://search.twitter.com/images/search/expanding.gif?1242860246" medium="image" />
	</item>
		<item>
		<title>RSA Conference Session &#8211; Beyond PCI DSS, final thoughts</title>
		<link>http://pcidss.wordpress.com/2009/05/04/rsa-conference-session-beyond-pci-dss-final-thoughts/</link>
		<comments>http://pcidss.wordpress.com/2009/05/04/rsa-conference-session-beyond-pci-dss-final-thoughts/#comments</comments>
		<pubDate>Mon, 04 May 2009 13:12:42 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[rsac]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=167</guid>
		<description><![CDATA[RSA 2009 is finished; the vendors have packed up; the speakers have shuffled out of the lounge, and what remains is a compendium of excellent thoughts captured in real-time on blogs and Twitter alike.  For Twitter search for #RSA or #RSAC and for blogs, well hit Google or simply start here.  Business wise &#8211; the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=167&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/05/04/rsa-conference-session-beyond-pci-dss-final-thoughts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Verizon Data Breach Report 2009: Exposed</title>
		<link>http://pcidss.wordpress.com/2009/04/23/verizon-data-breach-report-2009-exposed/</link>
		<comments>http://pcidss.wordpress.com/2009/04/23/verizon-data-breach-report-2009-exposed/#comments</comments>
		<pubDate>Thu, 23 Apr 2009 13:38:48 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[analysis]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[statistics]]></category>
		<category><![CDATA[verizon]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=164</guid>
		<description><![CDATA[The fine folks at Verizon Incident Response last week put out their fine, annual, report on evidence and trends based on their forensic efforts.  This year they focus the statistics on approximately 90 caseloads that they served over the calendar year.  The report is quite good and at a short 52 pages a worthwhile read [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=164&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/04/23/verizon-data-breach-report-2009-exposed/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Malware Controlled Systems are Pervasive</title>
		<link>http://pcidss.wordpress.com/2009/03/30/malware-controlled-systems-are-pervasive/</link>
		<comments>http://pcidss.wordpress.com/2009/03/30/malware-controlled-systems-are-pervasive/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 18:39:28 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[ghostnet]]></category>
		<category><![CDATA[it compliance and controls]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=161</guid>
		<description><![CDATA[
Consistently and dangerously the number of computer systems in the world infected with malicious software is growing in both the quantity and the employment chosen by those that control these software packages.   This alone is making the public internet an extremely dangerous and unstable environment to conduct business.  These infected systems threaten [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=161&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/03/30/malware-controlled-systems-are-pervasive/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>

		<media:content url="http://pcidss.files.wordpress.com/2009/03/picture-5.png?w=300" medium="image">
			<media:title type="html">picture-5</media:title>
		</media:content>
	</item>
		<item>
		<title>Passwords of 8,000 (700) Comcast Customers Exposed</title>
		<link>http://pcidss.wordpress.com/2009/03/16/passwords-of-8000-comcast-customers-exposed/</link>
		<comments>http://pcidss.wordpress.com/2009/03/16/passwords-of-8000-comcast-customers-exposed/#comments</comments>
		<pubDate>Mon, 16 Mar 2009 23:14:40 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=156</guid>
		<description><![CDATA[Update:  3/17/09 &#8211; Comcast posted a comment to this article informing on the state of the &#8220;public&#8221; account information.  Great news for Comcast customers, but it does stir questions regarding the other usernames and passwords &#8211; where are they valid?  Regardless &#8211; Comcast gets kudos for attacking this problem both internally with security precautions and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=156&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/03/16/passwords-of-8000-comcast-customers-exposed/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
		<item>
		<title>Devolution, Forrester, Synergies, and reducing TOC</title>
		<link>http://pcidss.wordpress.com/2009/02/26/devolution-forrester-synergies-and-reducing-toc/</link>
		<comments>http://pcidss.wordpress.com/2009/02/26/devolution-forrester-synergies-and-reducing-toc/#comments</comments>
		<pubDate>Thu, 26 Feb 2009 14:15:27 +0000</pubDate>
		<dc:creator>pcidss</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[budget]]></category>
		<category><![CDATA[dlp]]></category>
		<category><![CDATA[fisma]]></category>
		<category><![CDATA[hipaa]]></category>
		<category><![CDATA[it compliance and controls]]></category>
		<category><![CDATA[pci]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[sox]]></category>

		<guid isPermaLink="false">http://pcidss.wordpress.com/?p=154</guid>
		<description><![CDATA[Devolution was pitched yesterday by Forrester Researcher Andrew Jaquith &#8211; on a Webcast entitled &#8220;Effective Data Security: No Forklift Required&#8221;.  I quite enjoyed the presentation and thought the concepts were timely and consistent with what have been needed in the market.  In fact, I spoke on this last year at the RSA Conference [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=pcidss.wordpress.com&blog=274743&post=154&subd=pcidss&ref=&feed=1" />]]></description>
		<wfw:commentRss>http://pcidss.wordpress.com/2009/02/26/devolution-forrester-synergies-and-reducing-toc/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/2995ac525e21c6c648e2454d926c073f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">pcidss</media:title>
		</media:content>
	</item>
	</channel>
</rss>