PCI DSS a Practical Guide to Implementation
Home > Computing and Information Technology > Computer security > PCI DSS a Practical Guide to Implementation
PCI DSS a Practical Guide to Implementation

PCI DSS a Practical Guide to Implementation


     0     
5
4
3
2
1



Out of Stock


Notify me when this book is in stock
X
About the Book

PCI DSS: A Practical Guide to Implementation is written by Steve Wright, a consultant and lecturer with extensive experience in the design and implementation of security architecture and information security governance frameworks, including PCI DSS. Steve has successfully executed information security projects for several UK government agencies and has completed many consulting engagements for global corporations in sectors including business process outsourcing, manufacturing, telecoms, IT and healthcare. He currently manages a successful security management practice and is active as a lecturer and trainer on Information Risk Management and many British Computer Society ISEB courses. Not only does this book do the above, it also functions as a key support reference for those who are involved in the PCI compliance process in their day-to-day activities. If you are looking for a concise, straightforward and reliable reference to PCI DSS compliance, then this is the book you need. There is a large amount of information on the PCI DSS freely available, but it does not necessarily answer the fundamental questions you have. This is where this book excels, it covers most the ins and outs of PCI compliance.

Table of Contents:
BACKGROUND What is PCI? Why PCI? How does PCI compliance work? Getting started with PCI A prioritised approach to compliance The approach of this book CHAPTER 1: STEP 1 - ESTABLISHING THE PCI PROJECT What is the project initiation workshop objective? What are the workshop deliverables? CHAPTER 2: STEP 2 - DETERMINE THE SCOPE Scoping the PCI target environment The approach used to determine the exact scope CHAPTER 3: STEP 3 - REVIEW THE INFORMATION SECURITY POLICY CHAPTER 4: STEP 4 - CONDUCT GAP ANALYSIS Gap analysis objectives Gap analysis approach PCI gap analysis reporting and security improvement plan CHAPTER 5: STEP 5 - CONDUCT RISK ANALYSIS78 The goal of the risk management process The benefits of risk management The elements of the risk management process CHAPTER 6: STEP 6 - ESTABLISH THE BASELINE Build and maintain a secure network Protect cardholder data Maintain a vulnerability management programme Implement strong access control measures Regularly monitor and test networks Maintain an information security policy CHAPTER 7: STEP 7 - AUDITING Initiation of the audit (objectives and scope) Auditor preparation Conduct the audit Report the findings Agree follow-up action and clearance of any findings CHAPTER 8: STEP 8 - REMEDIATION PLANNING CHAPTER 9: STEP 9 - MAINTAINING AND DEMONSTRATING COMPLIANCE Validation requirements How to meet these requirements Using log management information for PCI compliance Regular monitoring and testing Arriving where you want to be: PCI compliant Demonstrating compliance - ROC CHAPTER 10: PCI DSS AND ISO27001 PCI and ISO27001 - the comparisons APPENDIX 1 - PROJECT CHECKLIST APPENDIX 2 - PCI DSS PROJECT PLAN APPENDIX 3 - BIBLIOGRAPHY AND SOURCE APPENDIX 4 - FURTHER USEFUL INFORMATION APPENDIX 5 - PCI DSS MAPPING TO ISO27001 ITG RESOURCES

About the Author :
Steve Wright is a 'security' subject matter expert in the area of information security and governance with years of experience in design and implementation of security architecture and information security governance frameworks. He also founded the UK ISO27002 information security knowledge portal - www.ISO27002.Info. Steve has successfully executed information security projects for a number of United Kingdom government agencies and has also provided information security consulting to a large number of government supporting organisations. In the commercial sector he has completed many consulting engagements for global clients, including business process and outsourcing providers, manufacturing, telecoms and IT providers, financial services and healthcare sectors. He is currently responsible for managing a successful security practice at PricewaterhouseCoopers (Risk Assurance Services). Steve has dual expertise as a hybrid technical and business information security consultant with a pragmatic and holistic approach to the management of information security.


Best Sellers


Product Details
  • ISBN-13: 9781849280242
  • Binding: Digital (delivered electronically)
  • No of Pages: 188
  • ISBN-10: 184928024X
  • Edition: Revised edition


Similar Products

Add Photo
Add Photo

Customer Reviews

REVIEWS      0     
Click Here To Be The First to Review this Product
PCI DSS a Practical Guide to Implementation
-
PCI DSS a Practical Guide to Implementation
Writing guidlines
We want to publish your review, so please:
  • keep your review on the product. Review's that defame author's character will be rejected.
  • Keep your review focused on the product.
  • Avoid writing about customer service. contact us instead if you have issue requiring immediate attention.
  • Refrain from mentioning competitors or the specific price you paid for the product.
  • Do not include any personally identifiable information, such as full names.

PCI DSS a Practical Guide to Implementation

Required fields are marked with *

Review Title*
Review
    Add Photo Add up to 6 photos
    Would you recommend this product to a friend?
    Tag this Book Read more
    Does your review contain spoilers?
    What type of reader best describes you?
    I agree to the terms & conditions
    You may receive emails regarding this submission. Any emails will include the ability to opt-out of future communications.

    CUSTOMER RATINGS AND REVIEWS AND QUESTIONS AND ANSWERS TERMS OF USE

    These Terms of Use govern your conduct associated with the Customer Ratings and Reviews and/or Questions and Answers service offered by Bookswagon (the "CRR Service").


    By submitting any content to Bookswagon, you guarantee that:
    • You are the sole author and owner of the intellectual property rights in the content;
    • All "moral rights" that you may have in such content have been voluntarily waived by you;
    • All content that you post is accurate;
    • You are at least 13 years old;
    • Use of the content you supply does not violate these Terms of Use and will not cause injury to any person or entity.
    You further agree that you may not submit any content:
    • That is known by you to be false, inaccurate or misleading;
    • That infringes any third party's copyright, patent, trademark, trade secret or other proprietary rights or rights of publicity or privacy;
    • That violates any law, statute, ordinance or regulation (including, but not limited to, those governing, consumer protection, unfair competition, anti-discrimination or false advertising);
    • That is, or may reasonably be considered to be, defamatory, libelous, hateful, racially or religiously biased or offensive, unlawfully threatening or unlawfully harassing to any individual, partnership or corporation;
    • For which you were compensated or granted any consideration by any unapproved third party;
    • That includes any information that references other websites, addresses, email addresses, contact information or phone numbers;
    • That contains any computer viruses, worms or other potentially damaging computer programs or files.
    You agree to indemnify and hold Bookswagon (and its officers, directors, agents, subsidiaries, joint ventures, employees and third-party service providers, including but not limited to Bazaarvoice, Inc.), harmless from all claims, demands, and damages (actual and consequential) of every kind and nature, known and unknown including reasonable attorneys' fees, arising out of a breach of your representations and warranties set forth above, or your violation of any law or the rights of a third party.


    For any content that you submit, you grant Bookswagon a perpetual, irrevocable, royalty-free, transferable right and license to use, copy, modify, delete in its entirety, adapt, publish, translate, create derivative works from and/or sell, transfer, and/or distribute such content and/or incorporate such content into any form, medium or technology throughout the world without compensation to you. Additionally,  Bookswagon may transfer or share any personal information that you submit with its third-party service providers, including but not limited to Bazaarvoice, Inc. in accordance with  Privacy Policy


    All content that you submit may be used at Bookswagon's sole discretion. Bookswagon reserves the right to change, condense, withhold publication, remove or delete any content on Bookswagon's website that Bookswagon deems, in its sole discretion, to violate the content guidelines or any other provision of these Terms of Use.  Bookswagon does not guarantee that you will have any recourse through Bookswagon to edit or delete any content you have submitted. Ratings and written comments are generally posted within two to four business days. However, Bookswagon reserves the right to remove or to refuse to post any submission to the extent authorized by law. You acknowledge that you, not Bookswagon, are responsible for the contents of your submission. None of the content that you submit shall be subject to any obligation of confidence on the part of Bookswagon, its agents, subsidiaries, affiliates, partners or third party service providers (including but not limited to Bazaarvoice, Inc.)and their respective directors, officers and employees.

    Accept

    New Arrivals


    Inspired by your browsing history


    Your review has been submitted!

    You've already reviewed this product!