Business Wire

PCI Security Standards Council Publishes Minor Revision to PCI Data Security Standard

Jaa

Today the PCI Security Standards Council (PCI SSC) published a minor revision to the PCI Data Security Standard (PCI DSS), which businesses around the world use to safeguard payment card data before, during and after a purchase is made. PCI DSS version 3.2.1 replaces version 3.2 to account for effective dates and Secure Socket Layer (SSL)/early Transport Layer Security (TLS) migration deadlines that have passed. No new requirements are added in PCI DSS v3.2.1. PCI DSS v3.2 remains valid through 31 December 2018 and will be retired as of 1 January 2019.

“This update is designed to eliminate any confusion around effective dates for PCI DSS requirements introduced in v3.2, as well as the migration dates for SSL/early TLS,” said PCI SSC Chief Technology Officer Troy Leach. “It is critically important that organizations disable SSL/early TLS and upgrade to a secure alternative to safeguard their payment data.”

The minor changes in PCI DSS v3.2.1 reflect how existing requirements are affected once the effective dates and SSL/TLS migration deadlines have passed so that organizations can accurately report how their implementations meet these existing requirements after 30 June. Specifically, the changes include:

  • Removal of notes referring to an effective date of 1 February 2018 for applicable requirements, as this date has passed.
  • Updates to applicable requirements and Appendix A2 to reflect that only POS POI (point of sale point of interaction) terminals and their service provider connection points may continue using SSL/early TLS as a security control after 30 June 2018.
  • Removal of multi-factor authentication (MFA) from the compensating control example in Appendix B, as MFA is now required for all non-console administrative access; addition of one-time passwords as an alternative potential control for this scenario.

The updates in PCI DSS v3.2.1 do not affect the Payment Application Data Security Standard (PA-DSS), which will remain at v3.2.

PCI DSS v3.2.1 and a summary of changes from v3.2 to v3.2.1 are available now in the Document Library on the PCI SSC website. Updated versions of the Migrating from SSL and Early TLS Information Supplement, Self-Assessment Questionnaires (SAQ) and SAQ Instructions and Guidelines will be published shortly to support PCI DSS v3.2.1.

For more information, read PCI Perspectives blog Q&A with Chief Technology Officer Troy Leach: PCI DSS Now and Looking Ahead.

About the PCI Security Standards Council
The PCI Security Standards Council (PCI SSC) leads a global, cross-industry effort to increase payment security by providing industry-driven, flexible and effective data security standards and programs that help businesses detect, mitigate and prevent cyberattacks and breaches. Connect with the PCI SSC on LinkedIn. Join the conversation on Twitter @PCISSC. Subscribe to the PCI Perspectives Blog.

Contact information

PCI Security Standards Council
Mark Meissner, +1-202-744-8557
press@pcisecuritystandards.org
Twitter: @PCISSC

Tietoja julkaisijasta

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Tilaa tiedotteet sähköpostiisi

Haluatko tietää asioista ensimmäisten joukossa? Kun tilaat mediatiedotteemme, saat ne sähköpostiisi välittömästi julkaisuhetkellä. Tilauksen voit halutessasi perua milloin tahansa.

Lue lisää julkaisijalta Business Wire

GE Transportation locomotives approved for operation by Indian Railways19.9.2018 09:00Tiedote

GE Transportation (NYSE:GE) announced today at InnoTrans 2018 that Indian Railways has confirmed its acceptance of GE’s 4,500-horsepower diesel-electric Evolution Series prototype locomotive. This critical milestone was achieved following the successful completion of rigorous testing on Indian Railways’ tracks following the locomotive handover in February 2018. “The acceptance of these locomotives is a testament to GE’s engineering depth and understanding of the customer requirements,” said Nalin Jain, President and CEO-APAC, GE Transportation. “This is a major step towards fulfilling our contract with Indian Railways. Together we will help modernize Indian Railways' fleet, significantly upgrade India's rail infrastructure and provide critical support for India's growing economy.” A standard practice, the acceptance of the 4500hp locomotives came after months of reviewing key design aspects, documentation and a thorough validation around various parameters in the U.S. and India. The lo

Toshiba Memory and Western Digital Celebrate the Opening of Fab 6 and Memory R&D Center at Yokkaichi, Japan19.9.2018 07:00Tiedote

Toshiba Memory Corporation and Western Digital Corporation (NASDAQ:WDC) today celebrated the opening of a new state-of-the-art semiconductor fabrication facility, Fab 6, and the Memory R&D Center, at Yokkaichi operations in Mie Prefecture, Japan. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20180918006193/en/ Fab 6 and Memory R&D Center, Yokkaichi Operations (Photo: Business Wire) Toshiba Memory started construction of Fab 6, a dedicated 3D flash memory fabrication facility, in February 2017. Toshiba Memory and Western Digital have installed cutting-edge manufacturing equipment for key production processes including deposition and etching. Mass production of 96-layer 3D flash memory utilizing the new fab began earlier this month. Demand for 3D flash memory is growing for enterprise servers, data centers and smartphones, and is expected to continue to expand in the years ahead. Further investments to expand its production wil

Hillhouse Capital Closes US$10.6 Billion Fund IV19.9.2018 05:29Tiedote

Hillhouse Capital announced today the close of Hillhouse Fund IV, L.P. The fund was heavily oversubscribed, closing with aggregate commitments of US$10.6 billion. From partnering with visionary founders at company inception, to undertaking buyouts of iconic brands, the flexibility of Hillhouse's mandate enables it to be highly selective in choosing investments. Hillhouse Fund IV will pursue opportunities across the healthcare, consumer, technology and services sectors globally, with a focus on Asia. With the new fund, Hillhouse will continue to work closely with entrepreneurs and management teams in pursuit of sustainable, long-term growth. In its private equity investments, Fund IV will implement Hillhouse's strategy of leveraging its extensive operating capabilities and deep understanding of technology to create long-term value. Hillhouse aims to reignite growth through digital enablement of traditional businesses, as it has done in the retail space with its buyout of Belle Internati

Rockwell Automation Opens Registration for 2018 Automation Fair18.9.2018 17:54Tiedote

Registration is now open for the 2018 Automation Fair, hosted by Rockwell Automation and members of its global PartnerNetwork program. The 27th annual Automation Fair will be held Nov. 12-15 at the Pennsylvania Convention Center. The event brings together approximately 10,000 manufacturers and producers from across the globe to learn about the newest innovations in automation and take part in training, industry forums and networking events. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20180918005725/en/ Automation Fair will feature more than 150 exhibits showcasing the latest product innovations for industrial manufacturing and production. Hosted by Rockwell Automation and members of its PartnerNetwork, the event offers more than 400 hours of educational opportunities through forums, hands-on labs and technical sessions. (Photo: Business Wire) “The next industrial transformation is here – and meeting its demands requires a m

Seoul Semiconductor Supplies Optimal LEDs ‘SunLike’ to Large Scale Applications of Lumitronix in Germany18.9.2018 16:33Tiedote

Seoul Semiconductor Co., Ltd. (KOSDAQ 046890), a market leader in LED (light emitting diode) design and manufacturing, supplied the innovative LEDs “SunLike” to Lumitronix, the LED specialist located in Baden-Württemberg, Germany. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20180918005626/en/ The Modules with SunLike LEDs. (Photo: Business Wire) In cooperation with Seoul Semiconductor, Lumitronix has also developed three optimal SunLike modules to provide customers with a standardized solution and expand its adoption in the lighting market. Two of the LED modules comply with the standard of Zhaga, a global association of lighting companies, for Book 7 L56W2 and Book 7 L28W2 and enable easy replacement in various industrial applications. The modules named LinearZ are available in one feet and two feet length. The model LinearZ 280-26 measures 280 mm and is equipped with 26 SunLike LEDs and has a light output of up to 700 lm.

Andersen Global Continues South American Expansion With BKM Berkemeyer18.9.2018 16:30Tiedote

Andersen Global announces further growth in South America with the signing of a Collaboration Agreement with BKM Berkemeyer, one of the oldest and largest law firms in Paraguay. With two locations in the capital city of Asunción, the firm has a headcount of nearly 150 professionals, including ten Partners and over 60 lawyers. Established in 1951, BKM Berkemeyer is led by Managing Partner Hugo Berkemeyer and provides legal solutions to both domestic and international clients. The firm delivers advice in all areas of law, including business and corporate, taxation, litigation, environment, employment and intellectual property, with a notable expertise in international transactions and business matters. BKM Berkemeyer also specializes in M&A’s, joint ventures, foreign investment, infrastructure, project finance and financial transactions, advising also on issues regarding telecommunications, water and energy projects. Hugo commented, “Our focus at BKM Berkemeyer has been to provide flexib

Uutishuoneessa voit lukea tiedotteitamme ja muuta julkaisemaamme materiaalia. Löydät sieltä niin yhteyshenkilöidemme tiedot kuin vapaasti julkaistavissa olevia kuvia ja videoita. Uutishuoneessa voit nähdä myös sosiaalisen median sisältöjä. Kaikki STT Infossa julkaistu materiaali on vapaasti median käytettävissä.

Tutustu uutishuoneeseemme