PCI (Payment Card Industry Security Standard)_Req 10.6.1

PCI (Payment Card Industry Security Standard)

Track and monitor all access to network resources and cardholder data

Req 10.6.1

10.6.1 Review the following at least daily: – All security events – Logs of all system components that store process or transmit CHD and/or SAD – Logs of all critical system components – Logs of all servers and system components that perform security functions (for example firewalls intrusion-detection systems/intrusion-prevention systems (IDS/IPS) authentication servers e-commerce redirection servers etc.).

Checking logs daily minimizes the amount of time and exposure of a potential breach. Daily review of security events-for example notifications or alerts that identify suspicious or anomalous activities-as well as logs from critical system components and logs from systems that perform security functions such as firewalls IDS/IPS file-integrity monitoring (FIM) systems etc. is necessary to identify potential issues. Note that the determination of “security event” will vary for each organization and may include consideration for the type of technology location and function of the device. Organizations may also wish to maintain a baseline of “normal” traffic to help identify anomalous behavior.

 

Click here to Start your FREE trial today!

Explainer video

 

What is a Cybersecurity Compliance Framework?

You don’t need to clutter your security and privacy programs with an ever-increasing number of tools as they become more sophisticated. The Lionfish platform offers a one-stop solution to track progress and monitor any framework, from custom-built ones to highly-specialized and in-demand top security and privacy frameworks and certifications.

With the Lionfish platform, every framework is supported with guided scoping, policies, controls, automated evidence collection, and continuous monitoring, ensuring efficient preparation for audits or attestation in minimal time.

The Lionfish platform is compatible with a wide range of security and privacy frameworks, including:

Click here to Start your FREE trial today!

Explainer video