News & Analysis as of

Data Security PCI-DSS Standard

Womble Bond Dickinson

Upcoming Deadline for PCI DSS 4.0.1 Implementation

Womble Bond Dickinson on

A critical deadline of March 31, 2025 is upcoming for the full implementation of the new requirements contained in the Payment Card Industry Data Security Standard (PCI DSS) version 4.0....more

J.S. Held

Top 4 Cybersecurity Headaches Plaguing Financial Services Institutions

J.S. Held on

Most Financial Services Institutions (FSIs) have digital technology at their core. And a primary responsibility for most FSIs is “cyber-connect” customers – be they organizations or individuals – with their money simply and...more

Ankura

Why a Right-Sized MDR Solution May Be Better Than One-Size-Fits-All

Ankura on

When it comes to providing Managed Detection and Response (MDR) solutions for businesses, the idea of one size fits all is being replaced by the concept of right-sizing. A one-size-fits-all option is a preconfigured security...more

McDermott Will & Emery

[Webinar] PCI DSS 4.0: Timelines and Initial Preparation Steps Required for Your Business - February 1st, 12:00 pm - 1:00 pm EST

McDermott Will & Emery on

Last year, the Payment Card Industry Security Standards Council released version 4.0 of its Data Security Standard (PCI DSS 4.0). The new version, which brings major changes to the payments ecosystem and compliance...more

WilmerHale

$8 Million Multistate Settlement Resolves 2019 Data Breach Investigation

WilmerHale on

State Attorneys General settle with Wawa, Inc. for 2019 data breach that compromised approximately 34 million payment cards used by consumers. On July 26, 2022, Acting New Jersey Attorney General Matthew J. Platkin...more

Davis Wright Tremaine LLP

Introducing PCI DSS 4.0: New Payment Card Security Standards

On March 31, 2022, the Payment Card Industry Security Standards Council published version 4.0 of its PCI Data Security Standard (PCI DSS). The updated standards provide significant new guidance on the scope and applicability...more

McDermott Will & Emery

PCI DSS 4.0 Introduces Transformational Change: New Risk Analysis, Governance Requirements and Alternative Customized Approach

On March 31, 2022, the Payment Card Industry Security Standards Council released version 4.0 of its Data Security Standard (PCI DSS 4.0). The new version—which brings major changes to the payments ecosystem—places an...more

Reveal

You Need Only Two Letters Today to Keep Up with the “Alphabet Soup” of Compliance

Reveal on

Back in November, I wrote on this blog about Big Data being one of the challenges that is forcing technology to move more to the data sooner in the discovery process. One of the most notable fun facts that illustrate just how...more

Sands Anderson PC

A Practical Security Reminder for the COVID-19 Outbreak – Not Just for Remote Workers!

Sands Anderson PC on

As many businesses and organizations adapt to the impact of COVID-19 on their operations, the systems and data security risks they face continue to increase and must be an area of focus in all planning for COVID-19. While...more

Fenwick & West LLP

Let's Be Reasonable: Clearer Guidance for Minimum Information Security Standards

Fenwick & West LLP on

“Reasonable” and “adequate” seem like benign terms — until you have to litigate using them as a standard for adequate data security. Over the coming years, the definition of “reasonable security” (and the alleged failure of...more

White and Williams LLP

PCI SSC Issues New Standards for Payment Software

White and Williams LLP on

The Payment Card Industry Security Standards Council (PCI SSC) has issued a new Software Security Framework for secure payment software. The new framework includes both a Secure Software Standard and Secure Software Life...more

BCLP

Negotiating Payment Processing Agreements

BCLP on

Credit cards are the primary form of payment received by most retailers. In order to process a credit card a retailer must enter into an agreement with a bank and a payment processor (a “Payment processing agreement”)....more

BCLP

Credit Card Breaches

BCLP on

For most retailers credit cards are the primary form in which payments are made. Accepting credit cards, however, carries significant data security risks and potential legal liability. ...more

BCLP

Credit Cards and the Payment Card Industry Data Security Standard

BCLP on

For most retailers their primary source of revenue comes from credit card transactions. In order to accept credit cards, a retailer must enter into a contractual agreement with a payment processor and a merchant bank....more

McGuireWoods LLP

A Storm Brews: Retailers Push Back Against Payment Card Industry Data Security Standards

McGuireWoods LLP on

As businesses and financial institutions grapple with data security in the wake of high profile breaches, tensions between retailers and the credit card industry over the creation and implementation of security standards...more

Morrison & Foerster LLP

Financial Services Report, Summer 2016

BELTWAY - Every Last Penny Counts - Five federal banking agencies issued a Supervisory Bulletin titled “Interagency Guidance Regarding Deposit Reconciliation Practices” (the “Guidance”). The Guidance outlines...more

Robinson+Cole Data Privacy + Security Insider

PCI DSS version 3.2 contains substantial changes for payment card processors and their service providers

In April, 2016, the Payment Card Industry Security Standards Council published a new version of the PCI Data Security Standard (PCI DSS).  PCI DSS Version 3.2 is intended to emphasize the importance of validating the...more

Mintz - Privacy & Cybersecurity Viewpoints

PCI DSS 3.2: It’s here, what does it mean for you?

The Payment Card Industry Security Standards Council (PCI SSC) has released a new version of its data security standard for the protection of cardholder data, the Payment Card Industry Data Security Standard (PCI DSS). PCI...more

Manatt, Phelps & Phillips, LLP

Advertising Law - March 2016 #3

New in False Advertising Lawsuits: Security Systems and Oatmeal - Class action complaints alleging false advertising run the gamut of products and services, and recent lawsuits filed across the country bear this...more

Bryan Cave Leighton Paisner

How to Select a Qualified Security Assessor (“QSA”)

Retailers that accept credit cards are typically required by the payment card brands to show that they are in compliance with the Payment Card Industry Data Security Standards or “PCI DSS” at least once a year. How a retailer...more

McGuireWoods LLP

The CFPB Files First Consent Order Involving Data Privacy

McGuireWoods LLP on

On March 2, 2016, the Consumer Financial Protection Bureau (CFPB) filed the first consent order (Order) involving data privacy since the CFPB’s inception in 2010. The Order serves as a warning to all companies that collect,...more

Alston & Bird

FTC Announces Study of PCI-DSS Assessment Companies

Alston & Bird on

On Monday, March 7 the Federal Trade Commission (FTC) issued a press release announcing that it had issued Orders to nine Qualified Security Assessor (QSA) companies, which are certified to assess whether or not entities...more

Robinson+Cole Data Privacy + Security Insider

FTC issues 9 orders for PCI DSS compliance assessment information

The Federal Trade Commission (FTC) issued orders to 9 companies at the beginning of this week, seeking information on how each company conducts Payment Card Industry Data Security Standards (PCI DSS) compliance assessments....more

Kelley Drye & Warren LLP

FTC Requests Auditors’ Data on PCI Data Security Assessments

Earlier this week, the FTC issued orders to nine credit card and payment security auditors in an effort to gain insight into data security compliance auditing and its role in protecting consumers’ information and privacy....more

Ballard Spahr LLP

CFPB Initiates Its First Data Security Enforcement Action

Ballard Spahr LLP on

The Consumer Financial Protection Bureau (CFPB) has announced its first data security enforcement action. Since the 1990s, the Federal Trade Commission (FTC) has primarily taken on the role as the de facto federal regulator...more

31 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide