Card-systems Solutions Research Paper.
Course Name and Number: _________________________________________ Student Name: ____________________________________________________
Instructor Name: __________________________________________________
Lab Due Date: ____________________________________________________
Overview
ORDER A CUSTOM-WRITTEN, PLAGIARISM-FREE PAPER HERE
In this lab, you reviewed a real-world case study that involved a PCI DSS noncompliance
scenario, and you recommended mitigation remedies to prevent the loss of private data for
similar organizations.Card-systems Solutions Research Paper.
Lab Assessment Questions & Answers
- Did CardSystems Solutions break any federal or state laws?
- In June 2004, an external auditor certified CardSystems Solutions as Payment Card Industry Data
Security Standard-(PCI DSS-) compliant. What is your assessment of the auditor’s findings?
- Can CardSystems Solutions sue the auditor for not performing his or her tasks and deliverables
with accuracy? Do you recommend that CardSystems Solutions pursue this avenue?
- Who do you think is negligent in this case study and why?
- Do the actions of CardSystems Solutions warrant an “unfair trade practice” designation as stated
by the Federal Trade Commission (FTC)?
26| LAB #3 Case Study on PCI DSS Noncompliance: CardSystems Solutions
- What security policies do you recommend to help with monitoring, enforcing, and ensuring PCI
DSS compliance?
- What security controls and security countermeasures do you recommend for CardSystems
Solutions to be in compliance with PCI DSS requirements?
- What was the end result of the attack and security breach to CardSystems Solutions and its
valuation?
- What are the possible consequences associated with the data loss?
- Who do you think is ultimately responsible for CardSystems Solutions’ lack of PCI DSS
compliance?
ORDER A CUSTOM-WRITTEN, PLAGIARISM-FREE PAPER HERE
- What should CardSystems Solutions have done to mitigate possible SQL injections and data. Card-systems Solutions Research Paper.
breaches on its credit card transaction-processing engine?
- True or false: Although CardSystems Solutions had proper security controls and security
countermeasures, it was not 100 percent PCI DSS-compliant because the company failed to
properly implement ongoing monitoring and testing on its development and production systems.Card-systems Solutions Research Paper.