wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

Payment Card Industry - Data Security Standard PCI-DSS compliance for online banking applications

profile
67_Ashish Pandey
Oct 20, 2021
0 Likes
0 Discussions
59 Reads

Payment Card Industry - Data Security Standard (PCI-DSS) compliance for online banking applications

Payment Card Industry - Data Security Standard is an abbreviations(PCI-DSS) . Before 2004, major credit card brands such as American Express, MasterCard, Visa, Discover and JSB used to implement their own version of security programme. They collaborated together to create a universally accepted programme to encourage and improve cardholder data security.but due to this lot of data breach had happened cybercriminal activities has taken place .As a universal Standard, any merchant or service provider that stores,processes or transmits cardholder data is required to comply with this standard. Organizations that misses the mark to fulfill are ignored by the clients (after all, it’s all about their date), and those that undergo security breach and are found out to be out of compliant are possibly fined.But in 2006 the five card companies told to make some security standard council(SSC).PCI Security Standards Council (PCI SSC) It is a standarad not a law which set by security standard council in which the set rules or guidelines regarding Payment cards through banking and banking applications in between merchants and clients .where customers can easily make transaction online .In online banking appliactions adequate security testing to ensure card holder data is never compromised.Run controlled data breach attempts against the bank network on regular basis to ensure network, end-point and web application security.Perform security testing to detect well known vulnerabilities like SQL injection, OS command injection, Cross-site scripting, broken authentication etc.Test for the presence of authorized and un-authorized wireless access points on a quarterly basis.Perform penetration testing – white box and black box – on network layer and application layer at least once a year or after a signification change has been made to the application.Scope of penetration testing is the card holder environment (CDE) + systems and networks connected to it (unless the bank has a segmented network in which the CDE is isolated from other systems).Penetration testing should aim to identify all possible threats and vulnerabilities and try to exploit them to penetrate the system both at the application and network level.Issues identified should be corrected and re-tested until all chances of malicious activity are removed

 


Comments ()


Sign in

Read Next

KEAP MANAGEMENT SYSTEM

Blog banner

Super Garlicky Tomato Soup with Smashed White Beans

Blog banner

Fault Tolerance

Blog banner

Exploring Florida Beyond the Obvious Tourist Trails

Blog banner

Why Seasonal Summer Foods Are Best for Your Health?

Blog banner

SNAPCHAT

Blog banner

Scheduling

Blog banner

How to Manage Business Invoices and Payments Easily?

Blog banner

Evolution of operating system

Blog banner

Knowledge Management in Continual Service improvement (CSI)

Blog banner

Memory Management

Blog banner

EMAIL INVESTIGATION

Blog banner

Threat from Inside: Educating the Employees Against Cyber Threats

Blog banner

BIRYANI ! The history you never knew about

Blog banner

The Rise of Evil Twin Attacks: A New Kind Of Spoofing Cyberattack

Blog banner

Virtualisation

Blog banner

Virtual Machine

Blog banner

Environmental Management using GIS

Blog banner

**THE MUJAWARR: Transforming the Logistics Industry**

Blog banner

Impact of social media on the human life

Blog banner

All you need to know about Cassandra

Blog banner

Hacking of web server and application

Blog banner

Diwali

Blog banner

Types of threads

Blog banner

The Chapped Lips and Dry Mouth Trap: The Sneaky Reason Cavities Spike in Winter

Blog banner

MIDDLE CLASS MELODIES!!

Blog banner

Vulnerability Assessment

Blog banner

How Preschool Annual Day Shapes Confidence, Emotions, and Growth

Blog banner

Windows Operating System

Blog banner

ASANA- A Management System.

Blog banner

Modern Teaching Methods: Why Inquiry-based & Experiential Learning Works Best

Blog banner

RAID

Blog banner

SECURITY VULNERABILITIES COUNTERMEASURES IN A SMART SHIP SYSTEM

Blog banner

Binary Search Tree (BST) in Data Structure

Blog banner

Uniprocessor Scheduling

Blog banner

Cloud Security: Trends and Innovations

Blog banner

The Role of Teachers in Building a Child’s Confidence

Blog banner

10 Signs your Computer has Virus

Blog banner

GraphX:- A graph processing tool

Blog banner

How To Implement Search Engine Marketing (Sem) Strategy Effectively

Blog banner

Virtual memory in os

Blog banner

Memory Management in Operating System

Blog banner