I wish I had this course on Log Management for PCI DSS Compliance when I was a new PCI ISA...

Requirement 10 is one of the most notorious security requirements that induce migraine headaches as soon as you think about audit logging.

There’s nothing worse than finding out 36 servers stopped logging over 90 days ago.

True story. That happened in 2016.

The wasn’t enough chocolate chip cookies to make up for the painful conversations I had to have with everyone involved in the snafu.

It was a nightmare to fix and a humbling experience to explain to both the QSA and the acquirer what went wrong, why it went wrong, how we fixed it, and how we would ensure it would never happen again.

This all hands on deck fiasco is something we never want to see you go through. Ever.

In Log Management for PCI DSS Compliance, we’re providing an extensive overview of sub-requirements:

  • 10.2.x
  • 10.3.x
  • 10.4.x
  • 10.5.x
  • 10.7.x
  • Requirement dependencies

Nowhere else will you be taught the relationships and interconnectedness between Requirement 10 other PCI DSS requirements.

Ready to dive in?

You can take this course through our PCI DSS Training and PCI Compliance Toolkit (you must be a subscriber) OR if a monthly subscription isn’t your cup of tea, you can take the course as an on-demand workshop.


Discover more from Payment Card Assesments

Subscribe to get the latest posts sent to your email.

10 Critical Responsibilities of a PCI ISA

I remember when I was working as an IT Security Project Manager responsible for the implementation of 10 different security projects for the new. cardholder data at a Fortune 100 Company. They had a job posting for a PCI Compliance Program Manager and I thought, why not?

The job description looked easy enough. In fact, I flipped my resume over on a whim during lunch on a Friday. Got called by the internal recruiter within 20 minutes and was interviewed on Monday and hired by Wednesday.

I had no idea what was really in store for me. Nobody did.

Because nobody I interviewed with understood HOW to run a successful PCI DSS Compliance program for a level 1 merchant.

5 Actionable Tips To Crush Your Next PCI Report on Compliance

Have you almost quit your PCI Compliance job after submitting your organization’s Report on Compliance?

Don’t be shy. It’s okay if you walked away.

I almost quit I submitted the first PCI Report on Compliance I ever worked on.

December 21, 2012 a day that still dredges up heartburn.

But…

I didn’t quit.

I didn’t walk away.

Instead, I saw the opportunity to build a world class PCI DSS Compliance program.

Leave a Reply

Discover more from Payment Card Assesments

Subscribe now to keep reading and get access to the full archive.

Continue reading