Updated PCI Data Security requirements released
Visa and Mastercard release new security standards for credit card merchants and processors
The specifications for PCI security, in addition to requiring two-factor authentication for remote access (section 8), now recommend the use of a web-application firewall or having the code reviewed by a specialist in web-application security. This recommendation is considered a 'best-practice' until June of 2008, when it will be a requirement.
The updated specificatoins are available for download here.


Digg this!
Del.ico.us
Google
Yahoo bookmarks
Reddit
Spurl
Simpy
