Short for
Payment Card Industry - Data Security
Standard PCI-DSS is a set of standards as guided by the PCI Security
Standards Council. The PCI-DSS provides mandatory security guidelines that
assist retailers in preventing credit card fraud and identity theft. Any company
that processes, stores or transmits credit card numbers are required to comply
with the PCI DSS standard.
The most recent version of the PCI-DSS is
version 1.1 and companies must be in compliance with this version by September
2007. To be PCI complaint companies must use a firewall between wireless network
and their cardholder data environment, use the latest security and
authentication such as WPA/WPA2 and also change default settings for wired
privacy keys, and use a network intrusion detection system.