Saturday 4 August 2007

Compliance in a box

There has been some reaction to this piece of PR.
While the idea of compliance in a box is nice, it seems risky to promise it in such a way. However, if you actually read the statement it does specifically say " program will help companies worldwide implement encryption..."
Given PCI compliance involves everything from the writing of policy documents through to how specific data needs to be secured and audited, this statement merely confirms that PCI Compliance can take a while and resources to deploy.
Encryption is one of the many things that needs to be done, so with that date looming, things need to happen fast and every little bit helps.

1 comment:

Anonymous said...

Hello. This post is likeable, and your blog is very interesting, congratulations :-). I will add in my blogroll =). If possible gives a last there on my blog, it is about the Servidor, I hope you enjoy. The address is A hug.