Find White Papers
Home
About Us
List Your Papers
    
> NeoSpire Managed Hosting > The Cost of PCI Compliance

The Cost of PCI Compliance

White Paper Published By: NeoSpire Managed Hosting

In today's economy, companies are trying to assess if they can afford to become PCI compliant. What many of those same companies forget to consider whether they can afford not to be compliant. Since 2007, merchants who were found to be non-compliant with PCI DSS faced fines of $5,000 to $25,000 per month from Visa. It may seem expensive for merchants to install and maintain new security measures to become PCI compliant and validated, but these costs are only a fraction of what it would cost a company to be found in non-compliance or suffer a data breach. Learn more about PCI DSS compliance and how NeoSpire Managed Hosting can help.



Tags : 
pci compliance, neospire, pci dss faced fines, datalossdb.org, heartland payments, tjx companies, breach cardholder data, hardware

NeoSpire Managed Hosting
Published:  Sep 01, 2009
Type:  White Paper
Length:  1 pages

THE COST OF PCI COMPLIANCE  NEOSPIRE'S PCI  In today's economy, companies are trying to assess if they can afford to become PCI compliant.   What many of those same companies forget to consider whether they can afford not to be  RESOURCE CENTER:  compliant.   Since 2007, merchants who were found to be non-compliant with PCI DSS faced  . File Integrity  fines of $5,000 to $25,000 per month from Visa. All the other major card brands soon followed  Monitoring  with their own fines.  These new standards and strict compliance tracking came about due to  the increase in data breaches beginning in 2005. According to DataLossDB.org data breaches  . Log  reached a high of 558 instances in 2008 and are still a growing threat today.  Management    It may seem expensive for merchants to install and maintain new security measures to become . Anti-Virus  PCI compliant and validated, but these costs are only a fraction of what it would cost a  Protection  company to be found in non-compliance or suffer a data breach. Non-compliance can also  . Intrusion  result on the suspension of credit card services from the large credit card institutions.   Detection  Examples:   . PKI Services    . VPN  . Heartland Payments Inc. announced in January, 2009 that they had experienced data  breaches sometime in 2008.  On May 7, 2009, Heartland executives claimed a loss of  Management  $2.5 million for the quarter was directly attributed to the breach. Approximately $1  . System  million of which was fines issued by the credit card institutions, while the rest of the  Hardening   cost came in the form of bank reconciliations, reporting costs, civil litigation, and  security upgrades.  In total, the breach has cost the company a total of $12.6 million  . Dedicated Cisco  which does not account for future losses due to their reputation as a payment  Firewall  processing company being damaged and loss of future customers.    . One Year Event  . TJX Companies suffered a breach in January 2007 of 94 million customer's cardholder  Log Archival  data. Hackers exploited a weakness in TJX's wireless networks and were able to extract  . Daily Security  valuable financial data from card transactions. In August 2007, TJX estimated that the breach had cost them $256 million, about 10 times higher than what originally thought.  Log Review  Costs include fixing the company's computer systems, handling lawsuits, and dealing  . Two-Factor  with investigations.     Authentication  NeoSpire's PCI Solutions   . Penetration    Testing  Investing in proper PCI security measures is not only responsible, but also a sensible  . Separate Web  investment. The NeoSpire's PCI Resource Center was created to give our customers a  comprehensive collection of professional services, hardware, and software to not only assist in  and Database  achieving PCI standards compliance, but protect against security breaches.    Servers    . PCI Consulting  Knowing you have a trusted member of the PCI Security Standards Council on your side to  address PCI concerns, doubts can be put to ease. With NeoSpire you can assure that all PCI Services  concerns about standards will be fully met. Many requirements will be handled by NeoSpire  . .and more!  directly, and our team will be there to assist you with everything else.  Call your account executive to learn more today.    ... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search