London | November 21, 2024 | 9:30 am – 5:00 pm
PCI DSS v4.0: Are You Ready
March 31st 2025 is fast approaching, you should already have a plan.
- Hear from leading practitioners about best practice implementation
- What does compliance look like under 4.0
- What you should be working on first
Join Us To Learn
- How to simplify compliance validation
- What will a QSA be looking for during an assessment
- Why the ‘Customised Approach' future-proofs both the standard and your approach to it, and why you’ll never use it
- How to stay ahead of the inevitable changes
- How to develop Continuous Compliance Validation (CCV) processes through automation
Who Should Attend
CISOs, Information Security Managers, PCI DSS Programme Managers, Card schemes, acquiring banks, merchants, service providers.
Where It's Happening
- Tower 4
- 25 Old Broad Street
- London
- EC2N 1HN United Kingdom
When It's On
- November 21, 2024
- 9:30 am – 5:00 pm
Register Today for PCI DSS v4.0: Are You Ready
- Why it's the closest PCI Standard yet to how real security should work
- Why The ‘Customised Approach' future-proofs both the standard and your approach to it
- The real-world impact of the more significant new requirements
- Why the project should start now, and what to do first
- How to stay ahead of the inevitable changes
About the Facilitator
Agenda
Time | Speaker/Session |
---|---|
09:00 | :Welcome, tea, coffee, introductions |
09:30 | :Session 1: ‘Does the New Standard Makes Sense? Background and Context’ Subject: The PCI DSS, a Very Slow Evolution Subject: Is This Where the Standard Should Be? Subject: Is the ‘Customised Approach’ Really Such a Radical Change? |
10:30 | :Break and Refreshments |
10:45 | :Session 2: New Reporting and Other ‘Innovations’ Subject: Reports on Compliance (RoC) are at a Whole New Level Subject: Your Policy Set is now front and centre Subject: Overall Impressions and Things to Note |
12:15 | :Lunch |
13:15 | :Session 3: New Requirements – Significant Impact Subject: Significant New Requirement – What is the True Impact?’ Reqs. 3.2.1 / 3.3.2 – Encryption of Pre-Authorisation Data Subject: Web-Facing Infrastructure Req. 6.4.2 – Removal of Manual Review of ‘Public-Facing Web Applications’ Subject: Vulnerability Management / Incident Response Req. 10.4.1.1 – Automated Log Reviews |
14:45 | :Break and Refreshments |
15:00 | :Session 4: Other Notables Subject: Enhanced and Targeted Risk Assessments Subject: Continuous Compliance Validation Subject: So What Now? Subject: Discussion, Q&A |
17:30 | :Event close and onto Networking Drinks and Canapes |