首页> 外国专利> QUALIFICATION OF SCANNING VENDORS FOR IMPLEMENTING PAYMENT CARD INDUSTRY SECURITY PROCEDURES

QUALIFICATION OF SCANNING VENDORS FOR IMPLEMENTING PAYMENT CARD INDUSTRY SECURITY PROCEDURES

机译:实施付款卡行业安全程序的扫描供应商的资格

摘要

A system and method for qualification of security scanning vendor, who conducts security scans and testing of the infrastructure, facilities and procedures of the entities (e.g., merchants, and service providers) involved the payment-by-card industry to ensure compliance with security standards, is provided. Vendors demonstrate their skill in data security validation trials, which present vendors with controlled emulated electronic environments having defined or exact vulnerability lists with weights assigned to specific vulnerabilities according to their criticality.. Vendor processes and services are evaluated and benchmarked so that competent vendors can be approved for conducting the desired security scans and testing of payment-by-card industry entities under the Payment Card Industry Data Security Standard or other standards.
机译:一种对安全扫描供应商进行资格鉴定的系统和方法,该系统和方法对实体(例如,商家和服务提供商)的基础架构,设施和程序进行安全扫描并进行测试,以确保按卡支付行业的安全提供。供应商在数据安全验证试验中展示了自己的技能,该试验为受控的仿真电子环境中的供应商提供了已定义或确切的漏洞列表,并根据其严重性对权重分配了特定的漏洞。对供应商的流程和服务进行评估和基准测试,从而使合格的供应商可以已被批准用于根据“支付卡行业数据安全标准”或其他标准对支付卡行业实体进行所需的安全扫描和测试。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号