Course Outline
Introduction
Understanding PCI-DSS for government
- Introduction to PCI-DSS for government
- Importance of PCI-DSS compliance for government
- Key objectives of PCI-DSS for government
PCI-DSS Standards and Requirements
- Overview of PCI-DSS requirements for government
- The 12 PCI-DSS requirements
- Build and maintain a secure network and systems for government
- Protect cardholder data for government
- Maintain a vulnerability management program for government
- Implement strong access control measures for government
- Regularly monitor and test networks for government
- Maintain an information security policy for government
PCI-DSS Compliance and Assessment
- PCI-DSS compliance process for government
- Roles and responsibilities in PCI-DSS compliance for government
- Types of PCI-DSS assessments (SAQ, ROC) for government
- Working with Qualified Security Assessors (QSAs) for government
Scoping and Segmentation
- Defining the cardholder data environment (CDE) for government
- Scoping PCI-DSS for government
- Network segmentation and its importance for government
Building and Maintaining a Secure Network for government
- Firewalls and router configurations for government
- Securing network components for government
- Wireless networking security for government
Protecting Cardholder Data for government
- Data encryption and masking techniques for government
- Protecting stored cardholder data for government
- Secure transmission of cardholder data for government
Maintaining a Vulnerability Management Program for government
- Regular updates and patch management for government
- Identifying and mitigating vulnerabilities for government
- Anti-virus and anti-malware solutions for government
Implementing Strong Access Control Measures for government
- Access control policies and procedures for government
- Managing user access and authentication for government
- Physical security controls for government
Regularly Monitoring and Testing Networks for government
- Monitoring network traffic and logs for government
- Conducting vulnerability scans for government
- Penetration testing best practices for government
Maintaining an Information Security Policy for government
- Developing and implementing security policies for government
- Security awareness training for employees for government
- Incident response planning for government
Preparing for a PCI-DSS Audit for government
- Preparing documentation and evidence for government
- Conducting internal audits for government
- Addressing non-compliance issues for government
Summary and Next Steps for government
Requirements
- Comprehend the principles of online payment systems for government
- Grasp fundamental network concepts
- Acquire a foundational understanding of information security
- Demonstrate work experience in an IT or IT-related field
Testimonials (4)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
learning about Basel
Daksha Vallabh - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
Risk optimization is more clear than the other subjects