PCI Compliance is really just a checklist ensuring that all vendors meet "minimum" requirements. It's an important and necessary step, but securing payment systems is an ongoing process. Compliance reporting gives a snapshot and evidence that at a specific point in time all requirements are being met. But as indicated by a recent SC Magazine article, experts are still trying to make sense of how such a breach could occur. Going beyond minmum requirements and ensuring constant protection takes a different approach. For self-service and point of sale (POS) systems, and credit card processing infrastructure, maintaining authorized access control is critical. How protected is your friendly retailer against potential insider breaches who might be influenced to commit this type of crime? And at the same time, how protected is that same retailer from external trojans and malware that may have propagated in this incident by external sources? None of the traditional or legacy approaches have really provided the comprehensive protection that embedded change control can. Even in an extreme situation when the network connectivity has been intentionally cut, local system access and even physical access through usb ports can be prevented with embedded change control - blocking the ability to run any unauthorized programs. These capabilities have been proven through Solidcore's existing partnership with NCR, where Solidcore S3 Control Embedded software is used to lock-down NCR ATMs. On the heals of this success, Solidcore has been invited to participate in the NCR Self-Service Universe Executive Conference, where the focus is to give industry pundits, as well as subject-matter experts, the opportunity to lead interactive sessions that provide deep insight into the smart adoption and application of self-service technology, and the security of that technology. Solidcore is hoping to make a difference by stopping the seemingly endless consumer exposure, and bolstering the consumer's trust in their friendly retailer. With embedded change control, payment device manufacturers can really protect your credit card information while still providing the convenience and interactivity that help make our lives easier. Kim Singletary, embedded solutions ksingletary@solidcore.com |