『The PCI Scope Trap』のカバーアート

The PCI Scope Trap

The PCI Scope Trap

無料で聴く

ポッドキャストの詳細を見る

【Amazonプライム会員限定】今ならプレミアムプランが4か月 月額99円。

10月19日まで。※適用条件あり

An ISV doesn’t have to store card data to have PCI responsibilities. If its software, integrations, access, vendors, or deployment processes can impact the security of cardholder data, it may already be operating as a service provider.

In this episode, Kitty and Chris sit down with Steve Levinson of LHC Advisors to break down the PCI scope trap, the service-provider requirements many ISVs overlook, and why relying on a compliant payment vendor doesn’t make the responsibility disappear. They also discuss Level 1 versus Level 2 validation, QSA-led assessments, vendor-chain attacks, breach exposure, and why strong PCI evidence is quickly becoming a commercial requirement, not just a compliance exercise.

adbl_web_anon_alc_button_suppression_t1
まだレビューはありません