ADA News
May 03, 2010
Standard detailed
The following is a list of requirements small businesses, including dental practices, must do to comply with new standard called the Payment Card Industry Data Security Standard.
- Install and maintain a firewall configuration to protect data.
- Do not use vendor-supplied defaults for system passwords and other security parameters.
- Protect stored data.
- Encrypt transmission of cardholders' data-sensitive information across public networks.
- Use and regularly update anti-virus software.
- Develop and maintain secure systems and applications.
- Restrict access to data by business need-to-know.
- Assign a unique ID to each person with computer access.
- Restrict physical access to cardholder data.
- Track and monitor all access to network resources and cardholder data.
- Regularly test security systems and processes.
- Maintain a policy that addresses information security.
More information on these requirements can be found at www.pcisecuritystandards.org.















