Application Security, Inc.
home client login partner login online store contact us
search:
Solutions Products Partners Support News & Events About Us

PCI Data Security Standard

This compliance pack includes:

  • A datasheet which describes how AppSecInc products can help bring PCI Data Security Standard compliance to your database applications
  • A guide which maps specific PCI requirements to security and configuration checks within AppDetectivePro
  • Penetration Test and Audit policies for AppDetectivePro

In a collaborative effort to ensure the protection of customers' personal information, the major credit card companies (Visa, MasterCard, American Express, Discover, Diner's Club, JCB) established the PCI Data Security Standard, which outlines 12 security requirements for all members, merchants, and vendors who process, transmit, or store cardholder data.

With over 100 sub-requirements in the PCI Data Security Standard, AppSecInc solutions help you comply with sections in 7 of the 12 security guidelines:

  • 2: Do not use vendor-supplied defaults for system passwords and other security parameters
  • 3: Protect stored data
  • 6: Develop and maintain secure systems and applications
  • 7: Restrict access to data by business need-to-know
  • 8: Assign unique ID to each person with computer access
  • 10: Track and monitor all access to network resources and cardholder data
  • 11: Regularly test security systems and processes

Database Security
A centrally managed enterprise solution for comprehensive database security. Based upon proven technology, DbProtect provides database scanning, vulnerability assessment and activity monitoring in an integrated enterprise suite. DbProtect’s enterprise features including fine-grained access controls, and centralized management and reporting enable organizations with complex, heterogeneous environments to optimize database security, manage risk, and bolster regulatory compliance. Unlike generic network or operating system solutions, DbProtect delivers database-specific, active protection, monitoring, and auditing. By tracking all access to data by unique ID, DbProtect helps fulfill PCI requirement 10.

Database Vulnerability Assessment
AppDetectivePro, a network-based, vulnerability assessment scanner, discovers database applications within your infrastructure and assesses their security strength with its proven security methodology and extensive knowledge of database application-level vulnerabilities. AppDetectivePro empowers you to address multiple sections in PCI requirements 2, 6, 7, 8, and 11.