search
Search...
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Text 'Are you ready for the GDPR?' beside a laptop and an orange padlock on a gray background.
Complying with the GDPR: What You Should Know
GDPR

GDPR is regulation that will help unite privacy laws across Europe. Here are some answered questions about GDPR Compliance.

Computer monitor with a lock icon and a loading progress bar indicating security or encryption process.
Top 15 ASV Scan Vulnerabilities and How to Fix Them

Vulnerability scans search your network and provide a logged summary of alerts you can review and act on. Here are the top 15 ASV scan vulnerabilities and how to fix them.

Text reading Auditor Tips PCI DSS on a dark geometric background with a blue underline.
Auditor Tips: Requirement 12: PCI Compliance Basics
Risk Assessment

A risk assessment can be the most important part of your overall security and compliance program, since it helps you identify systems, third parties, business processes, and people that are in scope for PCI compliance.

Text reading Auditor Tips in white on a dark textured background.
Auditor Tips: Firewall Best Practices
HIPAA

Healthcare organizations of all sizes use firewalls to protect the perimeter of their sensitive networks. Here are some firewall best practices to get you started.

Blue computer monitor with a lock icon inside a hexagon network of connected dots symbolizing cybersecurity.
Which Pentest is Right for You?
Penetration Testing

Determining which type of pentests are best for your organization depends on concerns or needs that are generated from real life security incidents or concerns about security posture for business critical systems or environments.

Performing an SAQ D Service Provider version 4.0 Self-Assessment
PCI Trends

Performing an SAQ D Service Provider version 4.0 Self-Assessment: Updates and changes in the new 4.0 standard.

Security bulletin text with blue shield icons and one shield with a red prohibition circle.
Apache Struts Vulnerability: What You Should Do
Data Security

The Apache Struts project has just released a security bulletin about a new critical vulnerability in the Apache Struts web application framework. Here's how to protect yourself.

3D blue outlined text reading PC 4.0 with layered line effects on light gray background.
Performing an SAQ-B Version 4.0 Self-Assessment
PCI Trends

The SAQ B is designed for merchant environments where all cardholder data is processed using standalone Point-of-Interaction (POI) terminals connected via an analog phone line.

Text asking if you qualify for SAQ P2PE next to a card reader and credit card.
A Quick Look at SAQ P2PE: Reducing Your PCI Workload
PCI

Learn more about SAQ P2PE and who qualifies for it.

Man in business attire relaxing on a deck chair holding a drink, with briefcase and towel nearby.
How to Start a Career in Cybersecurity
Data Security

If you have a knack for solving problems, good organizational skills, and attention to detail, cybersecurity might be a good fit for you.

Blue text reading 'HIPAA FAQS' next to a heart shape with an electrocardiogram line inside.
HIPAA FAQ: What is HIPAA?
HIPAA

Learn about the most common questions about HIPAA compliance.

PCI DSS Compliance FAQs Blog
PCI DSS Compliance FAQ: What is PCI Compliance?
SMB

Learn about the fundamentals of PCI DSS Compliance.

Blue keypad with numbers and symbols next to a blue padlock icon.
PCI PIN Assessment FAQs
Security Consulting

PCI PIN refers to the security requirements and assessment for merchants that accept, process or transmit payment card personal identification numbers (PIN).

Blue virus-like shapes with connecting lines on a light gray background, resembling a digital network.
COVID-19 Cyber Attacks Security Update Center
Pulse

Amid the chaos and uncertainty, SecurityMetrics remains steadfast in our mission to help you close compliance gaps and prevent data breaches. We stand ready to help with your security concerns, education, and content needs at this time.

Performing an SAQ-D version 4.0 Merchant Self-Assessment
PCI Trends

Merchants who do not qualify to assess their PCI DSS compliance using any of the simpler self-assessment questionnaires are required to use the SAQ D to validate their compliance.

Healthcare Reception Desks: Breeding Ground for HIPAA Compromise
HIPAA

Your reception desk might be one of the most vulnerable locations in your entire organization for a data breach. W

Illustration of a burglar stealing a credit card through a laptop screen.
A Hacking Scenario: How Hackers Choose Their Victims
Forensics

See the step-by-step ways the average hacker looks for valuable data and what hacking victims should do in response to an attack.

Text reading Learn why you should get PCI DSS compliant with a white thumbs-up icon on teal background.
The Importance of the PCI DSS: Why You Should Get Compliant
PCI

All businesses that handle payment card data, no matter their size or processing methods, must follow these requirements and be PCI compliant.

Illustration of laptop and desktop screens with check marks and padlocks with text Get Compliant with SAQ D.
SAQ D: The Basics of Protecting Card Data for Merchants
PCI Audit

SAQ D: The Basics of Protecting Card Data for Merchants.

Illustration comparing PCI as a zebra and GDPR as a plain horse with text 'PCI vs. GDPR What's the difference?'
PCI vs. GDPR: What’s the Difference?
GDPR

GDPR applies to any organization that processes or holds the personal data of persons residing in the European Union. PCI applies to organizations that handle credit cards from the major card brands.

Illustration of a laptop screen showing binary code with a magnifying glass highlighting part of the code.
Forensic FAQs
Forensics

If you've experienced a data breach, you will probably need a forensic investigation to determine the cause of the breach. Here are some forensic faqs to help you understand the process of a forensic investigation.

PCI Program FAQs: What is a PCI Program?
PCI Partner

A PCI program is a system that acquirers use to keep track of their merchants PCI compliance, and for merchants to receive the training and tools they need to achieve PCI compliance and remain PCI compliant.

Line art of a network switch with three rotating gears above it symbolizing system or network configuration.
How to Maintain HIPAA Compliant Firewalls
HIPAA

Simply installing a firewall on your organization’s network perimeter doesn’t secure your network or make you HIPAA compliant. Proper configuration is critical for HIPAA compliant firewalls.

Side-by-side illustrations of a blue-striped zebra on white and a white horse on a blue background.
SecurityMetrics vs. Other PCI Program Providers
PCI Partner

What should you look for in a PCI program and how will you know which PCI program is right for you?