The Definitive Guide to PCI DSS Version 4 : Documentation, Compliance, and Management (1st)

個数:

The Definitive Guide to PCI DSS Version 4 : Documentation, Compliance, and Management (1st)

  • 提携先の海外書籍取次会社に在庫がございます。通常3週間で発送いたします。
    重要ご説明事項
    1. 納期遅延や、ご入手不能となる場合が若干ございます。
    2. 複数冊ご注文の場合、分割発送となる場合がございます。
    3. 美品のご指定は承りかねます。

    ●3Dセキュア導入とクレジットカードによるお支払いについて
  • 【入荷遅延について】
    世界情勢の影響により、海外からお取り寄せとなる洋書・洋古書の入荷が、表示している標準的な納期よりも遅延する場合がございます。
    おそれいりますが、あらかじめご了承くださいますようお願い申し上げます。
  • ◆画像の表紙や帯等は実物とは異なる場合があります。
  • ◆ウェブストアでの洋書販売価格は、弊社店舗等での販売価格とは異なります。
    また、洋書販売価格は、ご注文確定時点での日本円価格となります。
    ご注文確定後に、同じ洋書の販売価格が変動しても、それは反映されません。
  • 製本 Paperback:紙装版/ペーパーバック版/ページ数 340 p.
  • 言語 ENG
  • 商品コード 9781484292877

Full Description

This book is your go-to reference on how to achieve PCI compliance. With more than 400 PCI requirements, the updated PCI Data Security Standard (PCI DSS) v4.0 does not detail the specific documentation that a PCI auditor—known as a Qualified Security Assessor (QSA)—needs to know. This book is the first reference to detail the specific documentation needed for every PCI requirement. The authors provide real-world examples of complying with the 12 main PCI requirements and clarify many of the gray areas within the PCI DSS.
Any merchant or service provider that stores, processes, or transmits credit card data must comply with the PCI Data Security Standard. PCI DSS 1.0 was first published in 2004, yet many of those tasked with PCI compliance still encounter difficulties when trying to make sense of it. PCI DSS version 4 was published in March 2022, and at 360 pages, it has numerous additional requirements, leaving many people struggling to know what they need to do to comply.PCI DSS v4.0 has a transition period in which PCI DSS version 3.2.1 will remain active for two years from the v4.0 publication date. Although the transition period ends on March 31, 2024, and may seem far away, those tasked with PCI compliance will need every bit of the time to acquaint themselves with the many news updates, templates, forms, and more, that PCI v4.0 brings to their world.

What You'll Learn

Know what it takes to be PCI compliant
Understand and implement what is in the PCI DSS
Get rid of cardholder data
Everything you need to know about segmenting your cardholder data network
Know what documentation is needed for your PCI compliance efforts
Leverage real-world experience to assist PCI compliance work

Who This Book Is For                                                 

Compliance managers and those tasked with PCI compliance, information security managers, internal auditors, chief security officers, chief technology officers, and chief information officers. Readers should have a basic understanding of how credit card payment networks operate, in addition to basic security concepts. 

Contents

Chapter 1. A Brief History of PCI.- Chapter 2. Install and Maintain Network Controls.- Chapter 3. Apply Secure Configurations to all System Components- Chapter 4. Protect Stored Account Data.- Chapter 5. Protect Cardholder Data with Strong Cryptography During Transmission Over Open, Public Networks.- Chapter 6. Protect All Systems and Networks from Malicious Software.- Chapter 7. Develop and Maintain Secure Systems and Software.- Chapter 8. Restrict Access to System Components and Cardholder Data by Business Need to Know.- Chapter 9. Identify Users and Authenticate Access to System Components.- Chapter 10. Restrict Physical Access to Cardholder Data.- Chapter 11. Log and Monitor All Access to System Components and Cardholder Data.- Chapter 12. Test Security of Systems and Networks Regularly.- Chapter 13. Support Information Security with Organizational Policies and Programs.- Chapter 14. How To Read a Service Provider Attestation of Compliance.- Chapter 15. Segmentation and tokenization.- Chapter 16. The Customized Approach, Compensating Controls, and the Targeted Risk Analysis.

最近チェックした商品