Contributed by Organizations or Campuses; Articles, Papers, and Reports; and PCI DSS

Straight Talk About Data Security

Added by the EDUCAUSE Librarian
Title:Straight Talk About Data Security (ID: CSD5298)
Author(s):Walter Conway (Walter Conway Associates, LLC) and Dennis Reedy (Indiana University System)
Source:Business Officer Magazine
Origin:Contributed by Organizations or Campuses (12/26/2007)
Type:Articles, Papers, and Reports
Abstract:

"If you accept payment cards on campus, you need to comply with a standard designed for safe handling of sensitive consumer information. Indiana University’s compliance plans offer some guidance."

View this resource:

PCI Confusion Is The Norm

Added by the EDUCAUSE Librarian
Title:PCI Confusion Is The Norm (ID: CSD5261)
Author(s):Evan Schuman (eWeek.com)
Source:Storefront Backtalk
Origin:Contributed by Organizations or Campuses (12/07/2007)
Type:Articles, Papers, and Reports
Abstract:

With all of the concern today about retailers inadequately protecting their credit card data, it's logical to assume that retail IT managers would have made themselves quite familiar with the ins-and-outs of the Payment Card Industry Data Security Standard (PCI DSS).

View this resource:

Why Banks View Campuses as High Risk Customers

Added by the EDUCAUSE Librarian
Title:Why Banks View Campuses as High Risk Customers (ID: CSD5006)
Author(s):Walter Conway (Commonfund Inworks) and Dennis Reedy (Indiana University)
Source:AFP Exchange
Origin:Contributed by Organizations or Campuses (03/11/2007)
Type:Articles, Papers, and Reports
Abstract:

While PCI DSS applies to every organization that accepts payment cards, many education institutions have been slow to achieve campus-wide compliance. The situation is particularly unfortunate since education institutions – whether because of their open networks or inadequate security procedures – are particularly vulnerable to hacking and other compromises of confidential consumer data. As a result, financial institutions and card issuers increasingly view education institutions as risky merchants.

View this resource:

States' Freudian PCI Envy

Added by the EDUCAUSE Librarian
Title:States' Freudian PCI Envy (ID: CSD4997)
Author(s):Evan Schuman (eWeek.com)
Source:Storefront Backtalk
Origin:Contributed by Organizations or Campuses (06/29/2007)
Type:Articles, Papers, and Reports
Abstract:

"In a psychologically fascinating 'grass is always greener on the other side of the firewall' scenario, states see the industry's PCI as the perfect security standard. And retail CIOs are salivating for Sarbanes-Oxley-like controls."

View this resource:

Payment Card Industry (PCI) Data Security Standard

Added by the EDUCAUSE Librarian
Title:Payment Card Industry (PCI) Data Security Standard (ID: CSD4957)
Origin:Contributed by Organizations or Campuses (09/11/2006)
Type:Articles, Papers, and Reports
Abstract:

This document describes the 12 Payment Card Industry (PCI) Data Security Standard (DSS)
requirements. These PCI DSS requirements are organized in 6 logically related groups, which are
"control objectives."

View this resource: