Question: In this project you will look up the PCI-DSS control objectives on the Internet and see which ones TJX did not comply with. Source: https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml
In this project you will look up the PCI-DSS control objectives on the Internet and see which ones TJX did not comply with. Source: https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml Build and Maintain a Secure Network Requirement 1: Install and maintain a firewall configuration to protect cardholder data Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters Protect Cardholder Data Requirement 3: Protect stored cardholder data Requirement 4: Encrypt transmission of cardholder data across open, public networks Maintain a Vulnerability Management Program Requirement 5: Use and regularly update antivirus software Requirement 6: Develop and maintain secure systems and applications Implement Strong Access Control Measures Requirement 7: Restrict access to cardholder data by business need-to-know Requirement 8: Assign a unique ID to each person with computer access Requirement 9: Restrict physical access to cardholder data Regularly Monitor and Test Networks Requirement 10: Track and monitor all access to network resources and cardholder data Requirement 11: Regularly test security systems and processes Maintain an Information Security Policy Requirement 12: Maintain a policy that addresses information security Your answer should total between 600-800 words, in a Word compatible document, and have proper attention to formatting, spelling, grammar, and punctuation.
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
