Payment Card Assessments

  • Release Timeline of PCI DSS 4.05:10

    Release Timeline of PCI DSS 4.0

    Watch Video
  • Socially Distant PCI DSS Assessments

    Socially Distant PCI DSS Assessments

    The PCI SSC has published blogs and guidelines for when remote work is necessary, including the Remote Assessments and the Coronavirus blog that focuses on conducting remote PCI Assessments.

    Read Article
  • Schellman listed as one of the first PCI Software Security Framework Assessors

    Schellman listed as one of the first PCI Software Security Framework Assessors

    Schellman & Company has become one of the first firms in the industry to offer PCI Software Security Framework (SSF) assessments as a Secure Software and a Secure SLC Assessor.

    Read Article
  • Overview of the PCI SSF

    Overview of the PCI SSF

    The SSF provides an objectives-based approach to assessing...

    Read Flipbook
  • A SOC-like Approach to PCI: PCI DSS v4.0

    A SOC-like Approach to PCI: PCI DSS v4.0

    The 2019 PCI North America Community Meeting was held in beautiful Vancouver, British Columbia, Canada. The conference provided takeaways for PCI standards plus sneak peeks info PCI DSS v40.

    Read Article
  • Changes Coming to PCI DSS in Version 4.0

    Changes Coming to PCI DSS in Version 4.0

    The PCI SSC is preparing to issue a draft version of PCI DSS v4.0. It was apparent early in the presentation that the update to the PCI DSS is going to be the largest change since v3.0 in 2013.

    Read Article
  • Valuable PCI Compliance Tips: Our Response

    Valuable PCI Compliance Tips: Our Response

    Security Boulevard recently published a list of valuable PCI DSS compliance tips which Schellman's team of QSAs reviewed and have offered insight and commentary on.

    Read Article
  • Schellman Becomes PCI Qualified PIN Assessor

    Schellman Becomes PCI Qualified PIN Assessor

    Schellman & Company has become a Qualified PIN Assessor (QPA) for the PCI PIN Security Program.

    Read Article
  • Introduction to the New PCI Software Security Framework49:11

    Introduction to the New PCI Software Security Framework

    Watch Video
  • Full Sail Ahead: Navigating PCI Compliance on Kubernetes - Part 1, Networking

    Full Sail Ahead: Navigating PCI Compliance on Kubernetes - Part 1, Networking

    Introduction Welcome! In the upcoming series of articles (this is Part 1), I’ll be discussing some things to consider if you want to use Kubernetes to host an application that is...

    Read Article
  • PCI in 3…2…1

    PCI in 3…2…1

    A fresh new release of the PCI SSC's flagship security standard PCI-DSS v 3.2.1

    Read Article
  • Schellman to Join PCI Global Executive Assessor Roundtable (GEAR)

    Schellman to Join PCI Global Executive Assessor Roundtable (GEAR)

    Schellman is pleased to announce that it will join the newly founded Global Executive Assessor Roundtable, the advisory group of senior executives at assessor companies for the payment...

    Read Article
  • Schellman Joins PCI 3DS Assessors

    Schellman Joins PCI 3DS Assessors

    Schellman & Company, LLC, a leading provider of attestation and compliance services, has become an assessor in the PCI Security Standards Council’s new 3-D Secure (3DS) program, and can...

    Read Article
  • Payment Security Insights

    Payment Security Insights

    There are some important PCI DSS deadlines coming up. Let’s start with the SSL/early TLS migration. Why is it important for organizations to migrate away from SSL/TLS?

    Read Article
  • Getting Ready for PCI47:29

    Getting Ready for PCI

    Watch Video
  • Getting started with your PCI DSS Charter

    Getting started with your PCI DSS Charter

    Well over a year ago, the PCI Standards Council announced, in addition to other requirements, that a PCI charter would now be required for service providers after January 31, 2018.  Few...

    Read Article
  • Segmentation Testing and PCI FAQs

    Segmentation Testing and PCI FAQs

    As a follow-up to the "What 2018 Means for Your PCI DSS Assessment" article I posted, a client of mine had a great question regarding the future date for the semi-annual segmentation...

    Read Article
  • What 2018 Means for Your PCI DSS Assessment

    What 2018 Means for Your PCI DSS Assessment

    Some of you may have just read the blog title and believe I made a typo on the year, but no, I am here to talk about PCI DSS in 2018. I know it seems crazy to be discussing 2018, as we...

    Read Article
  • What 2018 Means for Your PCI DSS Assessment

    What 2018 Means for Your PCI DSS Assessment

    Some of you may have just read the blog title and believe I made a typo on the year, but no, I am here to talk about PCI DSS in 2018. I know it seems crazy to be discussing 2018, as we...

    Read Article
  • Docker and PCI Compliance

    Docker and PCI Compliance

    Executive Summary Docker is an advanced framework for deploying applications--in particular, cloud applications.  It is notably different than working within traditional virtualization...

    Read Article
  • loading
    Loading More...