PCI DSS Control Objectives 5 and 6
The Payment Card Industry (PCI) Data Security Standard (DSS) Control Objectives 5 and 6 include requirements that must be met as defined below:
Control Objective 5: Regularly Monitor and Test Networks
Requirement 10: Track and monitor all access to network resources and cardholder data
Requirement 11: Regularly test security systems and processes
Control Objective 6: Maintain an InfoSec Policy
R equirement 12: Maintain a policy that addresses information security
Control objective 5 is about enabling audit, monitoring and logging capabilities across critical systems on the network. Such capabilities need to be regularly tested and reviewed. Control objective 6 is about developing and maintaining information security policies and procedures. These need to be communicated through training sessions to all members of the workforce.
Get HIPAA Certified On-line! CHP Exam is Now On-line!
HIPAA Academy, the industry’s leading provider of HIPAA training, certification and consulting, has made available on-line the content and exams for HIPAA Academy’s Certified HIPAA Professional (CHP) and the Certified HIPAA Security Specialist (CHSS). Recent clients include many hospitals, long term care organizations, BCBS, several business associates and leading firms such as IBM, HP, E&Y, Kaiser Permanente and others. For a Review the content and take the exams on-line. Get certified. For details, please visit www.HIPAA Academy .Net .
For more information visit www.aha-solutions.org , contact Lorna Waggoner at 1.877.899.9974 x17 or visit www.HIPAAAcademy.net
HIPAA Tip
Compliance Portal Delivers 1-Click Access to Regulations!
ecfirst, the industry’s leading provider of compliance training, certification and consulting, has launched the industry’s most comprehensive compliance and security portal. Please visit www.ecfirst.com and click on Compliance Portal. Compliance Portal provides one-click access to all major information security and associated compliance requirements including HIPAA, PCI DSS, ISO 17799:2005 (ISO 27002), FISMA and many others.
Managed Compliance Services Program for HIPAA
ecfirst is the first organization in the world to offer a scalable and flexible program to manage all your compliance and security requirements. If your organization is impacted by HIPAA, PCI DSS, Sarbanes-Oxley or other legislation, then find out how you can ensure compliance over a 36-month period with fixed monthly payments with minimal impact to your staff. Contact Lorna Waggoner, Director of Business Development, at 1.877.899.9974 x17 to learn more about the program. Or download a PDF copy of the Managed Services Compliance Program from www.ecfirst.com .













