Publication Cover
EDPACS
The EDP Audit, Control, and Security Newsletter
Volume 39, 2009 - Issue 1
62
Views
0
CrossRef citations to date
0
Altmetric
Miscellany

Case Studies of Using GAIT–R to Scope PCI DSS ComplianceFootnote1

Pages 1-9 | Published online: 09 Mar 2009
 

Abstract

Notes

1. The source of this article is The IIA's “Case Studies of Using GAIT-R To Scope PCI Compliance.” Reprint with permission from The IIA.

2. “2008 DATA Breach investigations Report: Four Years of Forensics Research. More than 500 Cases. One Comprehensive Report,” Verizon Business Systems.

3. “Case Studies of Using GAIT for Business and IT Risk To Scope PCI Compliance,” The Institute of Internal Auditors, September 16, 2008.

4. “GAIT for Business and IT Risk (GAIT-R),” The Institute of Internal Auditors, March 2008.

5. GAIT can be used as guidance in any situation requiring a top-down and risk- based approach.

7. Although the secure socket layer (SSL) is solely mentioned in this article, there are other industry standard and home-grown encryption models that organizations use. However, many times in-house-developed models are typically flawed and vulnerable to cracking.

8. As an example of its wider applicability, GAIT-R requires the identification of all controls, including entity-level controls. However, PCI DSS compliance is more specific and does not require the review of entity-level controls.

9. Computing environment in these case studies extends the identification of the computing environment beyond the application and includes the hardware and software, which are not generally considered as an application.

Log in via your institution

Log in to Taylor & Francis Online

Issue Purchase

  • 30 days online access to complete issue
  • Article PDFs can be downloaded
  • Article PDFs can be printed
USD 52.00 Add to cart

PDF download + Online access

  • 48 hours access to article PDF & online version
  • Article PDF can be downloaded
  • Article PDF can be printed
USD 61.00 Add to cart

* Local tax will be added as applicable

Related Research

People also read lists articles that other readers of this article have read.

Recommended articles lists articles that we recommend and is powered by our AI driven recommendation engine.

Cited by lists all citing articles based on Crossref citations.
Articles with the Crossref icon will open in a new tab.