creditcard swipe


                            

creditcard and key
Monthly NewsLetter
Issue: January 2011
About
Welcome to the monthly edition of our Compliance, Security and GRC Newsletter.  This is informational news comprising the latest on compliance related topics and other IT Security & Governance updates that impact our clients, friends and other interested parties.

The ControlCase GRC Solution

Please feel free to submit suggestions for topics or provide an article that you would like to share with other newsletter recipients for future editions, by contacting us at contact@controlcase.com.

In This Issue
Card Payment Security for Hotels
Managed Compliance Services in Review
Recently in the News...
PCI DSS 2.0 Analysis, Implications and Next Steps
Quick Links
Join our emailing list!
creditcard swipe

Card Payment Security Issues for Hotel Industry - Mumbai India Event

On 18 January 2011, Mumbai Police and India Payment Card Risk Council (IPCRC) will be jointly sponsoring an important event and workshop to raise awareness on "Card Payment Security Issues in the Hotel Industry".  The need for this topic is especially important given the boom in India economy and the resulting rise in business for the hotel industry from domestic and international visitors.  Events like this have long provided timely guidance to management when faced with the challenge of securing their organizations and protecting their guests against card frauds. 

Seating is limited so please contact Mr. Sunpreet Sacher at sunpreet.sacher@icicibank.com or Tel: +91 9004975552 for more information.  Please provide your organization's name; participants name; designation; Email ID; contact cell & land-line number.
 

Managed Compliance Services in Review
In this global Internet-driven economy, companies must have effective information security
and compliance programs to operate safely and securely. Due to the effort and complexity of both
security and compliance, many organizations lack the personnel and resources to efficiently achieve
both and are constantly struggling to "do the right thing."  ControlCase has bundled high touch security activities such as internal vulnerability and penetration, application security, card data scanning, and firewall security to create Managed Compliance Services that assist organizations to remain secure and compliant with industry regulations in a manner that allows them to focus on core business requirements.  Click here for more information on Managed Compliance Services.
Recently in the News....
The following articles highlight accomplishments, challenges and issues that affect our industry:

2011 Card Skimming Fraud Threats

Criminals are now using cryptographic technology to protect the card information that they steal, and that's posing challenges for detection and law enforcement via 2011 Card Skimming Fraud Threats.

The GRC Market in Projected to Grow 20%, Driven More By Breadth Than Maturity

On the heels of Forrester's GRC Market Overview last month, the Governance, Risk, And Compliance Predictions: 2011 And Beyond provides insight into market drivers.

Healthcare Providers Receive FTC Red Flags Exemption from Congress

On December 7, the House by voice vote joined the Senate in passage of S.3987, the Red Flag Program Clarification Act of 2010.  On November 30, 2010, the Senate passed this legislation by unanimous consent.  The bill has been cleared to the White House for signature.

Click here for additional articles............
PCI DSS 2.0 Analysis, Implications and Next Steps
By Parin Lapasia (QSA, CISA, CISSP) and Hugh Kominars (QSA, CISA, CISM), ControlCase LLC

Payment Card Industry (PCI) Data Security Standard (DSS) Version 2.0 includes numerous clarifications and enhancements that will likely impact how organizations become or maintain compliance with the standard in the coming year.  Additional emphasis is placed on understanding and confirming third-party/vendor compliance, evidence of an effective risk assessment program, and finding and removing cardholder data. It is never to early to start planning for PCI 2.0 compliance.

Click here to download the full article.

Please let us know any suggestions you may have. Also, please feel free to forward this to other people who would find this newsletter useful.

Sincerely,

ControlCase Team