Welcome!

Cloud Expo Authors: Tom Flynn, Stephen Pierzchala, Keith Mayer, Sebastian Kruk, Pat Romanski

Related Topics: Security, SOA & WOA, Web 2.0, Cloud Expo

Security: Article

Make Your Business PCI Compliant

You might be wondering how your business can become PCI compliant

PCI compliance is an absolute must for any commercial entity that is selling products or services over the Internet. It is bound up with the very strict lawful requirements, but there are many other very elementary consumer-based reasons to employ it. Not least of these is the concept of convenience - paying using a credit card is just so much simpler, and it doesn't always necessitate signing up to a website in order to make a transaction. It also hold numerous possibilities for mobile device based transactions.

You might be wondering how your business can become PCI compliant. The term stands for Payment Card Industry and is literally a security measure that can protect online and offline data, no matter the credit card. There have been many high profile leaks of data whereby users have had very sensitive pieces of data stolen. This has only served to highlight the need for measures that ensure secure data transfer as well as storage options that utilise many different levels of security. At Hyve, we take many different measures to ensure that data is embedded behind many layers of protection that can offer you a level of security that breeds faith.

There are 12 detailed requirements for PCI compliance which can be broken down into six or so measures that can help to protect data from theft. The first measure is to install and maintain a firewall. This includes configuring it to the best of your ability and providing adequate program control that allows those programs that need access to the Internet to get through, while also ensuring that all of these programs don't represent a security breach in themselves. The firewall must also not be so wieldy and hefty that it creates a bottleneck in the responsiveness of your system. The second objective to meet is to protect cardholder data usually through an encryption process. SFTP transfer is a method employed by Hyve when large amounts of sensitive data are to be sent over the Internet. It is fully compliant with PCI DSS measures as well as an assortment of other requirements including ISO, FIPS, and HIPAA.

The third objective is to invest in a management program that can test any vulnerabilities in your system. At Hyve we employ an Intrusion Detection System as well as multi-tier architecture to reduce the possibility of a breach. On the Host security layer we also offer Intrusion Prevention Systems as well as Patch Management.

The fourth requirement is to implement access control measures. At Hyve we offer Firewall, VPN, DDos protection as well as secure initial configurations, strong passwords, read/write permissions assigned per user and Private/Public Key encryption. The fifth and sixth measures including maintenance and monitoring of our networks and enforcing a policy that ensures that we continually meet the standards set for information security. Across our dedicated server hosting platform, we are constantly working with the best pieces of technology that are in themselves moving to neutralise emerging threats.

For more information regarding PCI compliance, please contact us at Hyve Management Hosting where we specialise in PCI compliance on our Enterprise Grade Cloud Hosting platform.

More Stories By Steve Jordan

Steve Jordan is the Business Development Manager for hyve.com. He is involved in all the following technical services: VMware Cloud Hosting, SFTP Hosting, Load Balanced Complex configurations including mySQL and SQL Server replication. I have also worked as a developer (some years ago) in Java and .NET.

Cloud Expo Breaking News
SYS-CON Events announced today that nfina Technologies, a provider of highly reliable cloud server products, will exhibit at SYS-CON's 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York. nfina Technologies develops, manufactures, and markets highly reliable cloud server products, designed to solve the most demanding data center requirements in mission-critical cloud applications. Nfina’s staff has decades of experience in co...
SYS-CON Events announced today that OpenStack will exhibit at SYS-CON's 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York. OpenStack software controls large pools of compute, storage, and networking resources throughout a datacenter, all managed by a dashboard that gives administrators control while empowering their users to provision resources through a web interface. OpenStack powers some of the most widely-used SaaS app...
“Cloud has everything to do with what has happened with Big Data,” explained Jason Deck, Director of Strategic Alliances at Logicworks, in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “Big Data doesn’t exist in its easily accessible way without cloud. From reduced startup costs, to cheap storage, to fast processing, to adequate security, to the easy incorporation of third-party analytics tools, cloud made Big Data accessible to customers of all sizes, with all different bud...
“Social, mobile, analytics and cloud can’t be looked at as distinct technology trends; they are facets of the same movement and an everyday reality for consumers and businesses alike,” said Craig Sowell, IBM VP of SmartCloud Marketing, in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “This means that businesses need to start looking at trends as one: cloud is the delivery, analytics is the unique insight, social is a shareable service, and mobile is the ubiquitous access.” ...
In his session at the 12th International Cloud Expo, Dave Eichorn, Global Data Center Practice Head at Zensar, will share a case study describing how a utility services company handled the migration of its Microsoft platform to the cloud. Challenged with the time-consuming task of opening operations out of temporary offices, this company struggled with the need to simultaneously access data that was accumulated from a vast amount of data-intensive jobs. Zensar migrated the company’s application ...
With Cloud Expo New York | 12th Cloud Expo [June 10-13, 2013] hurtling towards us, let's take a look at the distinguished individuals in our incredible Speaker Faculty for the technical and strategy sessions at the conference coming up June 10-13 at the Jacob Javits Center in New York City. We have technical and strategy sessions for you all four days dealing with every nook and cranny of Cloud Computing and Big Data, but what of those who are presenting? Who are they, where do they work, wha...
The new open source cloud orchestration platform called OpenStack is the promise of flexible network virtualization, and network overlays are looking closer than ever. The vision of this platform is to enable the on-demand creation of many distinct networks on top of one underlying physical infrastructure in the cloud environment. The platform will support automated provisioning and management of large groups of virtual machines or compute resources, including extensive monitoring in the cloud.
At pennies per virtual machine-hour, the economics of cloud computing are both compelling and daunting to replicate. Whether you are building your own cloud infrastructure, building a public cloud or choosing a cloud service, there are key strategy and technology decisions that make the difference between success and failure. In his General Session at the 12th International Cloud Expo, Jason Waxman, VP in the Intel Architecture Group and general manager of the Cloud Platforms Group within Inte...
You're getting pitched every day from your legacy enterprise software and hardware vendors about "cloud." They're doing an amazing job of convincing your CIO and CTO about what cloud is and how you should use it. The reality is they're defending their shrinking market share and keeping you on the legacy treadmill for as long as they can by selling you solutions that aren't "cloud." In her session at the 12th International Cloud Expo, Niki Acosta, Cloud Evangelista for Rackspace, will talk thro...
The rise of cloud computing has exposed hard drive-based storage as the new data center bottleneck. Combating this, data center managers have deployed SSDs to gain the performance needed to provide real-time access to data. However, due to budget constraints, many have turned to consumer-grade SSDs without understanding that they wear out quickly when processing enterprise workloads. In this session, Esther Spanjer will discuss recent endurance advancements in SSD technology that enable usage of...