Course Outline
Introduction
Understanding PCI-DSS for government
- Introduction to PCI-DSS for government
- Importance of PCI-DSS compliance for government
- Key objectives of PCI-DSS for government
PCI-DSS Standards and Requirements
- Overview of PCI-DSS requirements for government
- The 12 PCI-DSS requirements
- Build and maintain a secure network and systems for government
- Protect cardholder data for government
- Maintain a vulnerability management program for government
- Implement strong access control measures for government
- Regularly monitor and test networks for government
- Maintain an information security policy for government
PCI-DSS Compliance and Assessment
- PCI-DSS compliance process for government
- Roles and responsibilities in PCI-DSS compliance for government
- Types of PCI-DSS assessments (SAQ, ROC) for government
- Working with Qualified Security Assessors (QSAs) for government
Scoping and Segmentation
- Defining the cardholder data environment (CDE) for government
- Scoping PCI-DSS for government
- Network segmentation and its importance for government
Building and Maintaining a Secure Network for government
- Firewalls and router configurations for government
- Securing network components for government
- Wireless networking security for government
Protecting Cardholder Data for government
- Data encryption and masking techniques for government
- Protecting stored cardholder data for government
- Secure transmission of cardholder data for government
Maintaining a Vulnerability Management Program for government
- Regular updates and patch management for government
- Identifying and mitigating vulnerabilities for government
- Anti-virus and anti-malware solutions for government
Implementing Strong Access Control Measures for government
- Access control policies and procedures for government
- Managing user access and authentication for government
- Physical security controls for government
Regularly Monitoring and Testing Networks for government
- Monitoring network traffic and logs for government
- Conducting vulnerability scans for government
- Penetration testing best practices for government
Maintaining an Information Security Policy for government
- Developing and implementing security policies for government
- Security awareness training for employees for government
- Incident response planning for government
Preparing for a PCI-DSS Audit for government
- Preparing documentation and evidence for government
- Conducting internal audits for government
- Addressing non-compliance issues for government
Summary and Next Steps for government
Requirements
- Comprehend the principles of online payment systems for government
- Grasp fundamental network concepts
- Acquire a foundational understanding of information security
- Demonstrate work experience in an IT or IT-related field
Testimonials (5)
The fact that there were practical examples with the content
Smita Hanuman - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
The knowledge and understanding of the trainer on the training material was exceptional. The trainer was well aware of the subject, provided practical examples in relevance. I would highly recommend him as a trainer for this training.
Tayyeb Mahmood - Ajman Municipality
Course - COBIT 2019 Foundation
The trainer was extremely clear and concise. Very easy to understand and absorb the information.
Paul Clancy - Rowan Dartington
Course - CGEIT – Certified in the Governance of Enterprise IT
The trainer was very motivated and knowledgeable. The trainer was not only capable of information transfer, she also brought it with humor to lighten the dry theoretical training subject.