PCI DSS (Payment Card Industry Data Security Standard) is the security standard every business that processes, stores or transmits credit or debit card data must follow. It is set by the major card brands and includes requirements for firewalls, encryption, access control, monitoring and regular testing.
How TecnetOne handles it: TecnetGRC
PCI, PCI compliance, PCI DSS 4.0, Payment Card Industry Data Security Standard
Related terms
Cybersecurity
Cybersecurity is the combination of technology, processes and people that protects an organization's devices, networks, applications and data from unauthorized access, theft and disruption. It covers preventing incidents, detecting them early, responding when they happen and restoring operations with the least possible impact.
Information security policy
An information security policy is the document approved by leadership that defines how the company protects its information: who is responsible, what is allowed, what is prohibited and how incidents are handled. Specific rules come from it, such as password use, remote work or data classification.
GDPR (General Data Protection Regulation)
The GDPR (General Data Protection Regulation) is the European Union law that governs how personal data of people in the EU is collected, used and protected. It also applies to US companies that offer goods or services to people in Europe or track their behavior, with fines of up to 4% of global annual revenue.
GRC (governance, risk and compliance)
GRC (governance, risk and compliance) is a way to manage three areas together that are often handled separately: who decides and under which policies, which risks the business faces and which laws and standards it must meet. Integrating them avoids duplicate controls and makes it easier to answer audits, clients and regulators.
NIST CSF (NIST Cybersecurity Framework)
The NIST CSF (Cybersecurity Framework) is a free framework from the US National Institute of Standards and Technology that helps organize a cybersecurity program. Version 2.0 groups activities into six functions: govern, identify, protect, detect, respond and recover.
Ready to put this into practice in your operation?
Tell us what you need and a TecnetOne engineer will get back to you.
Talk to an engineerTalk to an engineer
Tell us what you need and we’ll reply the same business day.