BankInfoSecurity.com - Information Security News, Regulations, & Education

Bank Information Security Webinars

PCI 2010: Trends and Technologies

"The webinar did a great job of discussing all the key points!"

PCI 2010: Trends and Technologies

Quick Overview

Credit Eligible
As a BankInfoSecurity.com annual member, this content can be used toward your membership credits and transcript tracking. Click For More Info

What is the future of the Payment Card Industry Data Security Standard (PCI)?

In 2009, PCI was discussed in the context of the Heartland Payment Systems and RBS WorldPay data breaches - is the standard adequate, and what does compliance mean?

In 2010, the talk will be about the next-generation PCI standard - the emerging technologies and applications that will enhance the security of payment card transactions.

Join a panel of PCI experts to hear:

  • The state of PCI today;
  • How emerging technologies such as tokenization and end-to-end encryption fit into the PCI evolution;
  • What is being done to ensure efficient, effective payments security for merchants and financial institutions.
digg del.icio.us reddit
Share
 

Background

In November of 2008, payments processor RBS WorldPay was hacked, and fraudsters gained access to as many as 1.5 million consumer accounts.

Then, on Inauguration Day 2009, Heartland Payment Systems (HPY) disclosed that it had been breached, exposing an estimated 130 million credit and debit card holders to potential fraud in what is the largest data compromises ever reported.

Heartland maintained it was compliant with the Payment Card Industry Data Security Standard (PCI DSS). But Visa subsequently removed Heartland and RBS WorldPay from its list of PCI compliant vendors until they could be re-assessed for compliance. Visa's public stance: "We've never seen anyone who was breached that was PCI compliant."

The RBS WorldPay and Heartland security breaches raised serious questions about organizations achieving PCI compliance, but still suffering such incidents: How does one attain and sustain PCI compliance?

In April the Congressional Subcommittee on Emerging Threats, Cybersecurity, Science and Technology even convened a special hearing entitled: "Do The Payment Card Industry Data Standards Reduce Cybercrime?"

The mantra within the PCI community is: Compliance is not a one-time achievement. It's an ongoing condition that must be continually tested and maintained.

And in the wake of these very public breaches, the payment card industry has rallied to examine what's necessary to enhance the PCI standard. In September 2009, the PCI Security Standards Council convened a community meeting in Las Vegas, unveiling new research that suggests PCI's future could be shaped by emerging technologies such as end-to-end encryption and tokenization.

Emerging technologies and market trends are the focus of this webinar, as panelists each offer their unique perspective on the future of PCI, then convene for an open discussion about how they see the standard evolving in 2010.

 

Presented By

Craig Tieken, VP of Merchant Product Management, First Data

Craig Tieken, vice president of merchant product management, oversees First Data's suite of credit acceptance, debit acceptance, Fleet Card acceptance and ATM reseller product offerings. Tieken has been with First Data since mid-1991, when he joined as a Merchant Services client executive helping merchant customers understand how to use the First Data product suite to grow their merchant business. Since then, he has held increasingly senior roles in First Data corporate conversions, financial institutions, platform consolidations and merchant product management. For the past five years, Tieken has held the position of VP of product management, adding an increasing number of core acquiring products to First Data's portfolio.


Tom Field, Editorial Director

Tom Field is an award-winning journalist with over 20 years experience in newspapers, magazines, books, events and electronic media. A veteran community journalist with extensive business/technology and international reporting experience, he has written news, sports, features, fiction and analysis for publications ranging from Editor & Publisher to Yankee Magazine, and he has held editorial management positions at weekly and daily newspapers, as well as a global business/technology magazine. An accomplished public speaker, Field has developed and moderated scores of podcasts, webcasts, roundtables and conferences, and he has appeared on C-SPAN, The History Channel and Travel Channel television programs.


Derek E. Brink, CISSP, Vice President & Research Director, IT Security - Aberdeen

Derek Brink joined Aberdeen as a senior high-tech executive experienced in strategy development and execution, corporate / business development, and product management / product marketing. He is a results-oriented leader with a proven track record of driving growth through new and enhanced product offerings, in companies ranging from start-up to Fortune 500. He brings a unique blend of analytical / technical background, combined with excellent communication skills and extensive information security industry expertise.


Anton Chuvakian

Dr. Anton Chuvakin is a recognized security expert in the field of log management and PCI DSS compliance. He is an author of books "Security Warrior" and "PCI Compliance" and a contributor to "Know Your Enemy II", "Information Security Management Handbook" and others. Anton has published dozens of papers on log management, correlation, data analysis, PCI DSS, and security management.


 

Other Webinars By Topic

S Scheduled Webinars   OD On Demand Webinars
Click on a topic below to view webinars in that topic.
ACH (2)

ATM (1)





BITS (1)





Check (2)







FACTA (2)

FFIEC (5)




FinCEN (2)

Fraud (31)



HR (9)

















PCI DSS (15)
















Wire (1)