ISACA Podcast

A Security Awareness Program for PCI-DSS Compliance


Listen Later

People are considered the weakest link in any organization’s cybersecurity defenses. Hence, in most cases, the primary targets of cyber-attackers are the employees of the organization. In addition, people are easier to compromise and exploit unlike finding a single software to breach an organization or enterprise business. While a lot of efforts go into improving the existing security infrastructure, ignorance of human resources would leave a significant gap in the defense strategy.
Join ISACA’s Research Advisor, Brian Fletcher, as he is joined by Dr. Yasmin Razack, author of “A Security Awareness Program for PCI DSS Compliance: Implementation and Legal and Ethical Issues to Be Considered”. In this episode, they will be addressing the challenges in implementing a security awareness program to fill this gap and the legal/ethical issues that needs to be considered during implementation. As per the Payment Card Industry – Data Security Standard (PCI-DSS) requirement 12.6, a Security Awareness Program is mandatory to be held at least once a year and for new hires. However, it is not an easy task and cannot be a one-time activity. But if implemented effectively, awareness programs can be the human firewall of the organization. It will make the organization compliant to regulations like PCI-DSS thereby protecting it from fines due to non-compliance, defamation, costs of data breaches and will help improve customer trust and loyalty.
To read Dr. Razack’s full article click here - www.isaca.org/pci-dss-compliance
Be sure to like, comment, and subscribe for more ISACA Production content!
...more
View all episodesView all episodes
Download on the App Store

ISACA PodcastBy ISACA Podcast

  • 4.4
  • 4.4
  • 4.4
  • 4.4
  • 4.4

4.4

33 ratings


More shows like ISACA Podcast

View all
WSJ Tech News Briefing by The Wall Street Journal

WSJ Tech News Briefing

1,632 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

1,962 Listeners

Risky Business by Patrick Gray

Risky Business

363 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

633 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,005 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

313 Listeners

WSJ Minute Briefing by The Wall Street Journal

WSJ Minute Briefing

653 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

141 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

187 Listeners

Hacking Humans by N2K Networks

Hacking Humans

313 Listeners

Schwab Market Update Audio by Charles Schwab

Schwab Market Update Audio

315 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

72 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

120 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

33 Listeners

HBR On Leadership by Harvard Business Review

HBR On Leadership

140 Listeners