Please wait while the page is being loaded Skip this advertisement >
Saturday | 6 December, 2008
IBM, Akamai look to help with PCI compliance
Akamai will offer PCI reports service, IBM to help businesses prepare for PCI audit.
Ellen Messmer (Network World) 05/11/2007 10:24:48

The mandate for Payment Card Industry (PCI) security compliance got attention this week from Akamai and IBM, as each promised new services oriented toward helping companies through the PCI audit process.

Akamai said that at the beginning of the first quarter next year, it will make available online reports of Web scans that Akamai must periodically carry out to stay in compliance with the PCI Data Security Standard (DSS) after undergoing a PCI audit by the Verizon Business Cybertrust unit, a certified security assessor for PCI.

Pedro Santos, senior product marketing manager at Akamai, said making the periodic Akamai PCI-related reports available will assist companies handling credit cards that are now being asked by banks and the card associations, such as Visa and MasterCard, to use PCI-compliant service providers.

"We'll provide the results of the scans through a Web interface," said Santos, adding the PCI reports service, which will be made available under Akamai's Dynamic Site Acceleration offering, has not been priced.

IBM also is seeking to draw attention to its role as both a QSA and a certified PCI scanning service. Today, IBM said it is organizing its professional services to support a five-phase program for preparing enterprises to undergo a PCI audit successfully.

"This is mainly oriented toward the small- and mid-sized customers getting into the PCI audit process," said Kris Lovejoy, director of governance and risk management at IBM.

IBM's five-phase program looks at the area of assessment, to determine where remediation might be required; design, for establishing security strategy and policies; deployment, for product deployment; management, in which IBM would offer security monitoring and management software, as well as staff and emergency response and forensics analysis; and education, which involves product courses, training and awareness for customers regarding PCI compliance over the long term.

Lovejoy, who said IBM itself hasn't gone through a PCI audit, would be recommending both IBM products and other vendor products when appropriate.

Computerworld Buyer's Guide - Vendors Matched to this Article
Computerworld Buyer's Guide - Vendors Matched to this Article
Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Sign up for our Computerworld newsletters!
RSS Feeds
Market Place

 

Smart SOA World Tour

Discover how SOA can create smarter outcomes for your business.

Attend and learn:

  • How SOA is helping leading companies to become more agile
  • Where you should be applying SOA processes in your company
  • The top SOA implementation mistakes to avoid

Click here for more information.
Whitepaper

Business Intelligence and Enterprise Performance Management: Trends for Emerging Businesses

Hyperion surveyed 163 companies to understand BI and EPM requirements, evaluation processes, and extent of adoption. Top areas of current and future investment for emerging businesses include budgeting and planning as well as management reporting solutions. Read on to discover more.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links