PCI Security Standards Council set to kill off SSL in PCI DSS/PA-DSS 3.1 updates | blog,pci,cryptography | Control Gap
The PCI council has released an announcement that they are preparing an updated version of the...
1 min read
David Gamey
:
Aug 26, 2016 12:00:00 AM
Recently, Control Gap posted an article performing a detailed analysis of the recent changes in the DSS due to 3.2. We do this because the high-level change summaries published by the PCI Security Standards Council provide only a starting point for in-depth investigation. Our detailed analysis provides a useful next step that can help organizations to more fully understand the impact of changes to their environment.
PCI PA-DSS is a supporting standard that aligns with PCI DSS. It has typically moved in lock step with the DSS. So when the DSS changes, so does the PA-DSS. This article looks at the recent changes in detail.
While the PA-DSS may be primarily of interest to vendors of payment applications, it also affects any organization that implements or operates these applications. This article will be of use not only to payment application vendors, but also to those who implement and operate payment applications.
In addition to over one thousand changed words, 2 new requirements, and 1 numbering change, there were:
There are several other significant differences between PCI DSS V3.1 and PCI DSS V3.2. To see a quick overview of the rest of the changes, read our Change Analysis Brief. If you would like to know every word that changed, read our Change Analysis Document.
The PCI council has released an announcement that they are preparing an updated version of the...
To accept credit cards in Canada, businesses need to be PCI compliant. Becoming PCI compliant...
The PCI Security Standards Councils confirmed last week that the updated version of PCI DSS...