The Payment Card Industry Security Standard (PCI DSS) is a set of 12 requirements for enhancing payment account data security. These requirements define the policies, tools, and controls needed to protect cardholder data. The PCI DSS was developed by... read more
Who needs PCI?
The validation compliance level is based on the merchant level, and includes the validation actions and who needs to carry out the validation actions, in order to be PCI DSS compliant.
Web applications have become a "soft spot" for cybercriminals interested in stealing credit card information. To combat the proliferation of online fraud, the Payment Card Industry (PCI) took steps to protect cardholder data by addressing the scourge of application level attacks in its Data Security Standard (DSS).
The PCI DSS stipulates that any company that accepts credit, debit or bank cards must take special steps to secure its web applications. Section PCI DSS 6.6 requires that companies either install an application layer firewall in front of Web applications, or have all custom application code viewed for vulnerabilities by an organization that specializes in application security. The recent recommendation is to take both steps simultaneously.
Non-compliance with the standard may result in security breaches, lost customers, potential lawsuits and fines.
Fast, Easy and Cost-Effective PCI DSS 6.6 Compliance
Applicure’s dotDefender is a software-based Web Application Firewall that minimizes the cost and hassle of meeting PCI DSS compliance requirements:
One time investment with low TCO
Eliminate security vulnerabilities without development effort and costs
Continuous protection against zero-day attacks and emerging threats
Field proven, cost-effective solution for PCI DSS 6.6 compliance
Unmatched accuracy with low false-positives
No impact on existing infrastructure
dotDefender - The The Smart Choice for PCI DSS Compliance
dotDefender enables companies to address challenging PCI DSS requirements in a straightforward and cost-effective manner. dotDefender fulfills the application layer firewall requirement in PCI DSS 6.6. In addition to meeting PCI DSS compliance regulations, dotDefender offers comprehensive protection against SQL injection, cross-site scripting and scores of other application-level attacks.
dotDefender creates a security layer in front of the application. It detects and protects against application-level attacks in incoming web traffic that could be used to compromise the server and steal credit card and other corporate data. dotDefender is a rule-based security solution providing immediate and highly accurate application-level security according to PCI DSS 6.6 standards.
The Fast Path to PCI DSS Compliance
Web application requirements may present technical and business challenges, depending on the existing network architecture and chosen solution. In many cases, the path to PCI DSS compliance can entail expensive consulting engagements and massive infrastructure overhauls.
dotDefender operates transparently as part of the Web server processes. It does not require any changes to your existing network architecture and can be installed on the Web server within minutes. Once installed, dotDefender immediately identifies all websites and begins to provide effective application security, without a lengthy learning period.