UK companies handling credit card data must be compliant with the Payment Card Industry Data Security Standard by 30 June 2007
Credit card companies will pull the plug on non-compliant retailers

UK firms face credit card security deadline

Firms handling credit card data must be compliant with PCI Data Security Standard

Written by Matt Chapman

UK companies handling credit card data must be compliant with the Payment Card Industry Data Security Standard (PCI DSS) by 30 June 2007 or face being dumped by credit card companies.

The deadline had originally been pushed back from 30 June 2006 because of the introduction of chip-and-pin.

"Chip-and-pin delayed companies becoming PCI compliant because the credit card companies said that they could not do both at the same time. It's a big move in the UK market," Jon Shaw, European sales manager at encryption firm Ingrian, told vnunet.com

Shaw explained that the cost of chip-and-pin had led to the delay. "After chip-and-pin Visa, MasterCard and American Express had a big push on PCI. But a lot of the major retailers were not particularly happy," he said. 

However, Ingrian maintained it is unlikely that the deadline will be pushed back again.

"It is possible that the deadline could shift, but it is not probable," said Erich Baumgartner, vice president of sales and marketing at Ingrian.

Baumgartner explained that the PCI standard is made up of 12 or 13 different criteria, 10 of which are technologies that a lot of companies already have in place.

"They can show the auditor that they are using their intrusion detection systems this way, they are using their firewalls that way and they have virtual private networks so that information is encrypted in transit," he said.

"But the big gap is that nobody has been deploying encryption to secure that sensitive data when it is at rest."

Tags:

reader comments

related articles

Laptop thefts highlight need for encryption

Taking data out of the office 'like playing Russian Roulette' 25 Sep 2006

 

US department learns lessons from laptop theft

Encryption to protect veterans' data 29 Aug 2006

Windows Mobile secured

On the fly encryption makes safety a no-brainer 10 Aug 2006

Boffins claim first quantum cryptographic network

Infrastructure shows 'extraordinary resilience to eavesdropping' 30 Aug 2006

Government gets tough on encryption

Hand over the keys or it's two years in the slammer 18 May 2006

Smallest secure USB drive unveiled

Netac develops 13g device with built-in encryption technology 12 Jul 2006

Enigma machine reaches €13,000 on eBay

Surfers bid for wartime German encoding machine 31 Mar 2006

Infosec: Reputation driving information security

Security is now everyone's problem 23 Apr 2008

Protegrity set to target growing EMEA channel

New EMEA boss tasked with pushing the data protection vendor further into the UK 03 Jul 2008

Payment data rules criticised

John Lewis IT chief says changing requirements hinder PCI compliance 10 Jul 2008

today's top stories

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

CIO morale plummets as crunch hits

Fewer opportunities and less responsibility depress IT managers 27 Aug 2008

The pIT stop Q&A: Should packaged software users adopt SOA?

Our expert panel answer readers' questions 29 Aug 2008

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Job of the week

Job alerts

Sign up here

Find your next job here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you recruit a student with an IT degree?

Would you recruit a student with an IT degree?

As IT student numbers plummet - would you recruit an IT graduate?

Previous poll results

Latest audio and video articles

A stressed CIOAudio

Computing podcast 28 August 2008

CIO job satisfaction plummets, and why schools' IT spending is set to top £1bn 28 Aug 2008

Bryan Glick video whiteboardVideo

The definitive guide to collaboration

Five key technologies and five best practice tips to improve your collaborative IT 28 Aug 2008

Latest in-depth articles

Myron HrycykAnalysis

General management skills are now as important as technical ability

A selection of leading chief information officers talk about what they see as the most important aspects of the role 28 Aug 2008

Internet Explorer logoAnalysis

Analysis: Will IE8 cause more problems than it solves?

Microsoft's new browser may lead to compatibility issues and affect online advertising 29 Aug 2008

Primary Navigation