Blog

PCI Council Security Awareness Guidance

Teach employees to care about the security at your organization, and you will avoid a lot of potential heartache.

Malware Types: Memory Scrapers, Keyloggers, and Sniffers

All types of malware cause all sorts of trouble for organizations

Latest SSL Vulnerability: Logjam

If you have any questions, please contact SecurityMetrics support, 801.705.5700.

Most Popular Data Security Articles

Find out the most-read PCI DSS compliance and data security posts.

Making HIPAA Compliance Realistic: Part 2

HIPAA compliance doesn’t have to be unmanageable.

Making HIPAA Compliance Realistic: Part 1

It’s about maximizing the little time you have.

Make Your Auditor Happy: Follow These PCI Audit Requirements

Similar problems materialize before or during an audit that ultimately slow audit progress.

How to Prepare for a PCI DSS Audit

Here are some tips on how to prepare for a PCI DSS audit:

PCI DSS 3: Agent Training Isn't Enough for Contact Center Compliance

Learn how to secure telephone payments and reduce PCI DSS scope through DTMF payment technology.

Medical Data Encryption: Keeping Your PHI Secure

Add another layer of security to your organization’s PHI with encryption.

Integrate 2fa Tech To Correctly Comply with PCI Req. 8.3

Understand how to integrate 2fa technology to comply with PCI req. 8.3. It's easier to incorporate than you think.

Implementing HIPAA: A 12-Month HIPAA Plan to Get Compliant

Getting HIPAA compliant doesn't have to be overwhelming.

PCI DSS 3.2 Changes: What Your Business Needs to Know

Learn what new requirements 3.2 is implementing into the PCI standard.

Is Your Business Infected? Malware Trends of 2016

Malware is improving and evolving right alongside technology and it’s up to you to stay ahead of it.

How to Set Strong Passwords: Password Management Best Practices

Learn how to make your passwords more secure.

PCI DSS Requirement 3: What You Need to be Compliant

PCI DSS Requirement 3 involves protecting card data storage.

PCI DSS 3.2 & 3.2.1 New PCI Requirements for Service Providers: What You Should Know

Here’s a quick look at the requirements service providers are expected to do for PCI DSS 3.2 and 3.2.1.

PCI DSS Requirement 12: Leverage Policy to Improve Security

If your organization has ever had a Payment Card Industry Data Security Standard (PCI DSS) assessment, you’ve probably noticed the big emphasis on having documented security policies and procedures.

How to Start a HIPAA Risk Analysis

A risk analysis is the first step in an organization’s Security Rule compliance efforts.

Lessons from Data Breaches in 2017 and What to Expect in 2018

Which data breach predictions came true in 2017 and what to expect for 2018. SecurityMetrics' Forensic Investigations Team has been helping business recover from data breaches and theft for over eighteen years.

IT Checklists for PCI Compliance

We include an PCI IT Audit checklist PDF in our PCI Guide to give IT teams the support they need to fulfill each PCI DSS requirement, one by one.

How to Maintain Security When Employees Work Remotely

Helping employees work from home securely is important for all businesses, but with this post we especially want to support SMBs and those companies without large staff or in-house security professionals.

How to Prevent Ransomware Attacks

Ransomware attacks are a type of malware. Malware means “malicious software” or “malicious executable.” On the evil scale, ransomware is near the top. It’s nasty stuff that you don’t want any part of.

How to Prevent Formjacking and E-commerce Skimming (Magecart Attacks)

The online payments ecosystem is plagued by formjacking attacks that siphon credit card data and other protected information from shopping cart pages.