Blog

GDPR 101 Part 3: What Should I Do Now?

If you are a merchant, or any organization that handles the personal data of European Union citizens, you will need to comply with the GDPR. Here are three ways you can make progress today towards your GDPR compliance.

How Prepared are UK Businesses for GDPR?

The EU General Data Protection Regulation (GDPR) will come into effect on May 25, 2018.

Top 5 PCI Blog Posts for SMBs

PCI for SMBs: as an SMB owner, your business size and card processing environment will ultimately determine which SAQ you need to follow.

Resources from the PCI Council: Payment Data Security Essentials

The PCI SSC recently announced the release of a “Payment Data Essentials."

GDPR 101 Part 2: What are the Requirements of GDPR?

Learn the bases about the EU's General Data Protection Regulation.

What are the 12 Requirements of PCI DSS Compliance?

The PCI DSS (Payment Card Industry Data Security Standard) is a security standard developed and maintained by the PCI Council. This article will serves as a “jumping off point” to understanding the 12 requirements of the PCI DSS.

Takeaways from Our 2018 PCI Guide

Merchants use the 2018 SecurityMetrics PCI Guide both as a desk-side PCI reference and as a tool to direct and track their organizations’ internal PCI compliance efforts. But, there’s also another side to the Guide.

What's Inside Our 2018 PCI Guide

We’ve officially launched our 2018 Guide to Payment Card Industry Data Security Standard (PCI DSS) Compliance.

No Spreadsheets Needed: Manage HIPAA Compliance in SecurityMetrics’ Health Network Portal

Health organizations have been hit hard—the healthcare industry experienced 23.7% of total data breaches.

GDPR FAQs

Find out the most commonly asked questions about GDPR.

2018 PANscan Results: Storage of Credit Card Data on the Rise

See how much unencrypted card data PANscan® found on business networks in 2017.

2018 HIPAA Guide: Highlights for Business Associates

A reference for business associates using the SecurityMetrics HIPAA Guide at their organizations.

PIIscan: Find and Secure Unencrypted Personal Data

SecurityMetrics PIIscan helps you find unencrypted data and comply with security mandates.

GDPR 101 Part 1: Should I Be Worried?

With the EU’s GDPR compliance date looming (May 25, 2018), businesses are in varying states of readiness and awareness. Many are likely wondering, should I be worried?

How to Start a HIPAA Risk Analysis

A risk analysis is the first step in an organization’s Security Rule compliance efforts.

2017 PCI DSS Data Breach Trends

2017 was a year marked by massive hacks like Equifax, rampant malware like WannaCry and Petya, notable vulnerabilities like KRACK, as well as changes to and guidance about the Payment Card Industry Data Security Standard (PCI DSS).

Employee Data Security Training: Tabletop Exercises

Learn how to prepare for a data breach by conducting drills, exercises, and security trainings Massive data breaches—and their devastating aftermath—are increasing in frequency.

2017 HIPAA Survey Results

How did organizations do with HIPAA compliance in 2017? Here are the results along with major takeaways to help you with your own HIPAA compliance efforts.

Security Bulletin: Meltdown and Spectre Vulnerabilities

Install updates and patches as they come from your OS and CPU manufacturers.

Our Top 5 Most Popular Blog Posts of 2017

Start 2018 with our top blogs to help you with your data security and compliance efforts.

PCI Advice for New ISOs

PCI advice for new ISOs. Here are three tips to help Independent Sales Organizations (ISOs) better position their PCI program

PCI Standards: Which PCI SAQ is Right for My Business?

PCI Standards: Which PCI SAQ is Right for My Business? A PCI Self-Assessment Questionnaire (PCI SAQ) is a merchant’s statement of PCI compliance.

Employee Security Training Tips: Social Engineering

More often than not, data breaches are the result of an attack that takes advantage of our inattention and naiveté: social engineering.

Do You Need a Web Application Penetration Test?

Do You Need a Web Application Penetration Test? It’s important for your business to find and remediate any vulnerabilities your web applications may have. This is where web application penetration testing comes in.