creditcard swipe


                            

creditcard and key
Monthly NewsLetter
Issue: August 2010
About

Many of you have recently been added to our Compliance, Security and GRC NewsLetter mailing list. This is informational news comprising the latest on Compliance related topics and other IT Security & Governance updates that we will be providing to all of you periodically. If you have a good article to share for future editions , please email to contact@controlcase.com
 
Four internal and ASV scans mandatory for PCI DSS recertification
 
This is a notification to reiterate that it is mandatory to have four quarterly internal and external (ASV) scans for PCI DSS recertifications. If the scans are not done on schedule, this will cause delay in recertification till all four scans are completed on quarterly basis for the annual cycle.
 
Please contact the Managed Services team at mcs@controlcase.com should you require any further information or clearification.
In This Issue
- Four internal and ASV scans mandatory for PCI DSS recertification
- ControlCase is empanelled by CERT-In
- Moving Privacy from 'In Place' to 'Enhanced'
- PCI DSS 2.0 and PA-DSS 2.0 Summary of Changes
Quick Links
Join our emailing list!
creditcard swipe
ControlCase is empanelled by CERT-In
 
ControlCase is empanelled by CERT-In for providing information Security Auditing Service.  CERT-In (Indian Computer Emergency Response Team) is the National Incident Response Centre for major computer security incidents in its constituency.
 
CERT-In also enlightens its constituents about the security awareness and best practices for various systems & networks by publishing advisories, guidelines and other technical documents. 
Moving Privacy from 'In Place' to 'Enhanced'
 
Privacy has become one of the most demanding business issues faced by organizations today.  Most organizations who have addressed privacy to date have at least put Privacy GRC In Place; that is, most have done something to manage privacy.
 
Investment in Privacy GRC should be focused on evolving from In Place to Enhanced. This is even more critical for organizations with multiple business units, in multiple countries or jurisdictions, or with multiple regulators. [Whitepaper]
PCI DSS 2.0 and PA-DSS 2.0 Summary of Changes
 
The PCI Standards Council has released a summary of changes of what's to come in October, when the next major releases, versions 2.0 of PCI DSS and PA-DSS is to be released. Changes to PCI DSS 2.0 and PA-DSS 2.0 are relatively straightforward and do not introduce significant changes.  The new specifications will feature more clarification than change. 
 
The updated standards are to be issued in final form on October 28, 2010, after they have been discussed at the Council's European Community Meeting in Barcelona and are to be in effect from January 1, 2011. [Summary of Changes]
Please let us know any suggestions you may have. Also, please feel free to forward this to other people who would find this newsletter useful.
 
Sincerely,
 
ControlCase Team