New compliance guidelines went into effect earlier this year. While e-commerce organizations have until their 2015 audit to transition, the new controls are demanding enough operational and technical changes that smart businesses already have started preparing. If you’re wondering where to get started, one of the first steps you should take is to thoroughly define and document your cardholder data environment, or CDE, and consider ways to limit its scope. By defining your CDE, you’ll be better able to apply controls.
PCI 3.0, Part 2: Defining Your Cardholder Data Environment
Posted by: Kurt Hagerman March 17, 2014 05:00 AMNew compliance guidelines went into effect earlier this year. While e-commerce organizations have until their 2015 audit to transition, the new controls are demanding enough operational and technical changes that smart businesses already have started preparing. If you’re wondering where to get started, one of the first steps you should take is to thoroughly define and document your cardholder data environment, or CDE, and consider ways to limit its scope. By defining your CDE, you’ll be better able to apply controls.