News
PCI Update "Best Practices for Securing E-Commerce"
by Viktor Ahrens and Dennis Yang.The Information Supplement “Best Practices for Securing E-commerce” supports merchants and service providers in...
usd at Black Hat and DEF CON 2017
July 2017. usd at Black Hat and DEF CON in Las Vegas.The international hacking conferences are among the biggest events designed...
usd Receives PCI DSS QSA Licence for CEMEA
usd AG has been issued the PCI DSS Qualified Security Assessor (QSA) Licence for CEMEA („Central Europe, Middle East & Africa“) by the PCI...
Dr Christian Schwartz on information security and what we can learn from incidents like WannaCry.
Christian, as a consultant in information security, it’s important that you pay close attention to current security incidents. Why’s that?That’s...
PCI DSS New Guidance on Scoping and Network Segmentation
by Viktor Ahrens and Dennis Yang.“The PCI DSS security requirements apply to all system components included in or connected to the cardholder data...
Christian Frei on the usd HeroLab and the importance of expert knowledge sharing
Christian, apart from your project operations, your team of analysts looks into potential security vulnerabilities. Why do you do that?We can only...
New Information Supplement on “Multi-Factor Authentication”
With version 3.2 of the PCI DSS, the PCI Security Standards Council (PCI SSC) has further expanded its focus on strong encryption and multi-factor...
PCI DSS Acquirer Meeting
Last Thursday we hosted our most recent biannual PCI DSS Acquirer Meeting, a platform for exchanging experiences and knowledge. The leading German...
Eurowings successfully certified against PCI DSS
Left to right: Dr Kai Schubert, PCI DSS Lead Auditor usd AG, Ms Mehtap Secilmis, Head of IT Governance and Information Security Officer Eurowings...
Two added Requirements for SAQ B-IP and C-VT
Within Revision 1.1 of the PCI DSS 3.2 (obligatory 01st October 2017) some requirements have been added for Merchants with the following payment...
NEW: Guidance for Assessing Non-validated Encryption Solutions in POS Environments. PCI DSS Releases New Guideline.
Background: The latest Payment Card Industry Security Standard PCI P2PE (point-to-point encryption) ensures that credit card data is encrypted from...
PCI DSS and the Cloud – a Contradiction?
Expert advice by Nicolas Schiller, consultant and PCI auditor, on dealing with cloud service providers in the context of PCI DSS.Do I have to...