Questions tagged [pci-compliance]

The Payment Card Industry Data Security Standard (PCI DSS) is a set of requirements designed to ensure that ALL companies that process, store or transmit credit card information maintain a secure environment.

Merchants and software vendors must be certified by PCI and report their compliance with the industry standard for consumer security. If any customer of an organization ever pays the organization/merchant directly using a credit card or debit card, then the PCI DSS requirements apply.

The Standard can be found on the PCI SSC's Website:
https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml

Related Tags

322 questions
-1
votes
1 answer

Pci- dss section 10

There are plenty of log reporting tool but I am having trouble on choosing. Can anyone advice me a tool for audit-log monitoring?
Barny
  • 383
  • 1
  • 3
  • 13
-2
votes
1 answer

PCI Compliance for Developers

I am not sure if this is the correct forum or not but I've been tasked with determining our PCI requirements, we being a group of developers who will create/maintain code that handles PCI data. We will not STORE the data or execute transactions, we…
Half_Duplex
  • 5,102
  • 5
  • 42
  • 58
-2
votes
1 answer

Is PCI Compliance is needed in Cordova Mobile App if I use Mobile Payment Gateway?

I want to implement the payment solution in my Cordova-Ionic Mobile App for iOS and Android. I am planning to use any third party Payment Gateways like Paypal SDK, Braintree etc or method that will redirect to the Gateway website. So do I want to…
Tony
  • 123
  • 1
  • 2
  • 8
-2
votes
1 answer

PCI compliance apache versions

We are working with current version of Apache 2.4. 6 available in a Centos 7 repos. Installed with yum. and we are dealing with the PCI compliance and the report says: IP Address: x Host: x Path: THREAT REFERENCE Summary: vulnerable Apache…
David
  • 9
  • 3
-2
votes
2 answers

PCI Scan Problems: phpMyAdmin

I am currently working on a server where they are having a PCI scan performed, and one of the failures is that phpMyAdmin is out of date. The problem is that the server is running v4.0.10 and it's asking for v4.2.6. However the issue with this is…
daniel
  • 103
  • 1
  • 2
  • 7
-2
votes
2 answers

How to accept credit card info (and send money to credit card) without PCI compliance?

Here are our requirements: Send money to our users' credit cards. This is a unique requirement that many payment systems don't support. We essentially need to be able to grant a bonus/reward (sort of like a refund but without a preceding…
Ryan
  • 22,332
  • 31
  • 176
  • 357
-3
votes
1 answer

PCI 3.1 Compliance and .net C# apps w/SSL

How do you fix a broken .net 3.5, C# app that uses SSL to connect to an external server after a user applies PCI 3.1 standards regarding SSL 3.0 and TLS 1.0 incoming and outgoing traffic on their systems?
ShaneLS
  • 466
  • 6
  • 14
1 2 3
21
22