Galix is PCI security assessor partner

October 2012 News & Events

Galix Networking (Galix), specialist in the design, implementation and management of communications and security infrastructure, has announced its certification as an accredited Payment Card Industry (PCI) Quality Security Assessor (QSA) partner. Galix joins the ranks of just nine QSA companies licensed to operate in Africa, and is one of only five QSA organisations with offices in South Africa.

The PCI Security Standards Council (SSC) offers robust and comprehensive standards and supporting materials to enhance payment card data security. QSA companies are organisations that have been qualified by the council to assess compliance to the PCI Data Security Standard (DSS). PCI DSS is aimed at enhancing security in the payment card industry, and forms a cornerstone in the fight against payment card fraud and theft. The standard outlines an actionable framework and best practice including prevention, detection and appropriate reaction to security incidents.

Any business, merchant or service provider that accepts credit cards, either online or offline, needs to be compliant with the DSS. Service providers including payment gateways, online retailers and any third parties involved in the storage and/or processing of card holder data must be audited by a QSA. Level one and two merchants, defined by the payment card brands according to the number of transactions processed per month, also require external auditing.

“There are many organisations that need to be compliant, which involves security management, policies, procedures, network architecture, software design and other critical protective measures amongst other aspects. The challenge is in knowing where to start with such a project. It is vital to understand what is within the scope and what is not, but this is easier said than done. In order to do this you need to know how cardholder data travels throughout systems, and identify every single system component that is involved in storing, processing or transmitting data,” says Simeon Tassev, MD of Galix Networking.

PCI DSS compliance involves a comprehensive checklist of 12 requirements, including building and maintaining a secure network, protecting cardholder data, maintaining a vulnerability management programme, implementing strong access control measures, regularly monitoring and testing networks and maintaining an information security policy. Each of these processes has several steps that should be followed, and under each of these steps are multiple criteria that need to be met for compliance.

For more information contact Galix Networking, +27 (0)11 475 0637, [email protected]





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Protect the integrity of critical video evidence
Surveillance News & Events
SWEAR has announced the Community Video Integrity Project, a new initiative designed to help cities and public agencies proactively protect the integrity of critical video and establish a verifiable record of authenticity from the moment it is captured.

Read more...
Keenfinity creates two security businesses
News & Events Access Control & Identity Management Perimeter Security, Alarms & Intruder Detection
The Keenfinity Group, today announced the creation of two dedicated businesses from its former Intrusion & Access portfolio. Radionix will focus exclusively on intrusion alarm systems, while MiCOS will become a dedicated access control company.

Read more...
Genetec global leader in video management software
Genetec News & Events Surveillance
Independent analyst firms rank Genetec as global leader in video management software. Research shows continued market share gains for Genetec as both the VMS and VSaaS markets continue to expand worldwide.

Read more...
DeepAlert Launches COMMAND
News & Events Surveillance
Cloud-based, AI-powered surveillance monitoring platform cuts operator alert fatigue and response times, and becomes DeepAlert's primary monitoring platform for security companies and control rooms worldwide.

Read more...
ONVIF strengthens authenticity of video surveillance footage
Surveillance News & Events
Amid a rising tide of manipulated and AI-generated footage, the add-on will equip the surveillance industry with a shared, standards-based way to establish where video came from and whether it has remained unaltered.

Read more...
Detect procurement fraud before losses escalate
Security Services & Risk Management News & Events Financial (Industry) Editor's Choice
Organisations need to move procurement fraud prevention closer to the point where suspicious activity occurs, rather than relying primarily on investigations after money has already been lost, according to SAS and FACTS Consulting.

Read more...
Integrating the industry
News & Events Infrastructure
With private security, neighbourhood watches, CCTV, drones, control rooms and community safety networks expanding across the country, the next frontier may not be more technology, but connecting what already exists.

Read more...
Reinventing cybersecurity
NEC XON News & Events Information Security Commercial (Industry)
NEC XON helps a workforce solutions leader reinvent cybersecurity with an AI-enhanced XDR solution to keep pace with increasingly devious cyberattack techniques, including fileless malware, lateral movement, and credential misuse.

Read more...
Gallagher Security assists St Vincent School for the Deaf
Gallagher News & Events Access Control & Identity Management
At a time when vehicle purchase and running costs are higher than ever, St. Vincent School for the Deaf will have a more reliable vehicle thanks to a recent donation from Gallagher Security.

Read more...
Free live travel risk map covering multiple countries
News & Events Security Services & Risk Management
Most widely cited travel risk maps are published once a year as static documents, but risk conditions do not follow a publishing calendar. The Sicuro map draws on official travel advisories from the ...

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.