Resources

PCI DSS

PCI Scoping Categories

In scope systemsThis is in relation to all systems and networks that are directly connected to your card data environment. To be part of the (PCI strategy) category system, components will store, process and transmit cardholder data or the system is on the same network that deals with cardholder data. Some examples of these systems […]

PCI DSS

How to Manage a Data Breach

When it comes to PCI compliance, in the event of a breach it’s mandatory to contact the relevant authorities. 1) Start your incident response planAn incident response plan can minimise the impact of a breach, reduce the fines you would incur, decrease negative publicity and help you get back to running your business quicker.A business […]

PCI DSS

Top 10 PCI Failing Requirements

Top 10 requirements that businesses fail on for PCI compliance. 1) Requirement 12.5.3: Establish, document and distribute security incident response and escalation procedures to ensure timely and effective handling all situations. 2) Requirement 12.6: Implement a formal security awareness program to make all personnel aware of the card holder data security policy and procedures. 3) Requirement 12.10.1: Create the incident response […]

PCI DSS

Fight Financial Fraud

Fight financial fraud with Fraud Defence First, here’s our 5 top tips: Never disclose security details, such as your PIN or full banking password: A bank will never ask you to provide these details by email, over the phone or in writing. So stop and consider what they are asking for and think about why […]

PCI DSS

How Staff make Security Decisions

Each day employees meet new people in the office, have multiple passwords and account details to remember and need to provide and send sensitive data. Your businesses information security relies on how your employees decide to deal with these situations. Some reasons behind why employees make these decisions which make you non-compliant are listed below; […]

PCI DSS

Wi-Fi Security

It’s likely that you’ve heard about the recent ‘KRACK’ (Key Reinstallation Attacks) attacks. A serious weakness in WPA2 was discovered – a protocol securing modern protected Wi-Fi networks. If an attacker is within range of a victim, they can exploit their weaknesses using KRACKs. Attackers can use the technique to read information previously believed to […]

PCI DSS

What Happens when the Power Goes Out?

Currently, we find ourselves in a cashless society where customers rely on businesses to have card terminals so they make payments. In order for a business to take a payment they need to have an internet connection or a phone line as well as power for the terminal itself. If you find yourself in a […]

PCI DSS

E-Commerce – Ready, Steady, Threat!

In the e-commerce world, the appeal to thieves is high, these thieves are known as ‘Digital Scammers’. This type of crime affects up to 50% of companies at some point in their life, especially if we consider that in 2016, online scams increased by 25%. Unfortunately, the risk continues to increase, especially in the run […]

PCI DSS

Disputes, Chargebacks and Fraud

What is a dispute? A dispute is when a Cardmember doesn’t recognise a transaction or they do not agree with the amount of the transaction. We call this query a dispute. The vast majority of Cardmembers pay their American Express® bill upon receipt. However,occasionally, a Cardmember may question a Charge, either because they don’t recognise […]