This is cache of http://www.rsa.com/blog/blog_entry.aspx?id=1219. Cache is the snapshot of article that we took when we index feed.
To see original page click here.
We are not affiliated with the authors of this article and not responsible for its content.
PCI Data Collection: Your CVV isn't special
2007-08-22 00:00:00 by Manju Mude in Speaking of Security, the RSA Blog and Podcast
 
There are so many regulations out there that ask you to secure, protect and encrypt data - but, in reality, doesn't it all truly boil down to managing your customer relationships and meeting your obligations to them, while keeping your competitive business edge? Some merchants have no choice but to collect and store card data for extended periods of time, for bookkeeping, transmission or customer service needs. Additionally, an extremely limited number of them may even have to collect CVV2 information, to ease the customer experience. PCI is very clear about forbidding the storage of PIN and CVV2 information and most merchants understand that this will cause serious problems in their audit results if they continue to collect this information...
 
 
 
 
 
 
TOP SEARCH
Expand / MinimizeClose Widget
  •  
RECENT SEARCH
Expand / Minimize
  •  
RELATED VIDEO
Expand / Minimize
SecurityRatty FAQ
Sergey Zarubin, 31yo
CISSP, CCSP
Moscow, Russia