Unit 5 Assignment: Redesigning HGA's Network
April 16, 2013
IT540 - 01: Management of Information Security
Table of Contents
Abstract.........................................................................................................3
Part I: PCI Compliance....................................................................................................................4
A. Scenario...............................................................................................................................4
B. PCI Compliance..................................................................................................................4
Part II: Redesigning HGA's Network for PCI Compliance............................................................5
A. Suppose HGA's mainframe stored cardholder data in the private databases. What steps should be taken to protect it and make the data PCI Compliant?
B. How should data be protected in transmission?
C. Access controls to restrict unauthorized use.
D. Segmenting the network for PCI Compliance.
Conclusion
References
Abstract
The assignment for unit five is twofold. The first part of the assignment will deal with a Point of Sale (POS) transaction and its aftermath. The goal of this first part is to determine if the events in the described scenario are Payment Card Industry (PCI) compliant. The second part of the assignment also covers PCI as it pertains to HGA's Network. The goal of this second part is to answer four questions and determine if HGA's network is already compliant or what can be done to make it compliant.
Unit 5 Assignment: Redesigning HGA's Network
Part I: PCI Compliance
Scenario:
You visit a retail establishment, shop around, and finally carry several products to one of the point of sale (POS) terminals distributed openly around the store. You produce a credit card, the sales clerk process the transaction, bags your goods, and hands you the receipt. On your to the exit, a store employee asks to see your receipt and checks the contents of the store bag. Document each of the major events just described and explain them in terms of the PCI compliance standard. Include this report in your weekly assignment.
April 16, 2013
IT540 - 01: Management of Information Security
Table of Contents
Abstract.........................................................................................................3
Part I: PCI Compliance....................................................................................................................4
A. Scenario...............................................................................................................................4
B. PCI Compliance..................................................................................................................4
Part II: Redesigning HGA's Network for PCI Compliance............................................................5
A. Suppose HGA's mainframe stored cardholder data in the private databases. What steps should be taken to protect it and make the data PCI Compliant?
B. How should data be protected in transmission?
C. Access controls to restrict unauthorized use.
D. Segmenting the network for PCI Compliance.
Conclusion
References
Abstract
The assignment for unit five is twofold. The first part of the assignment will deal with a Point of Sale (POS) transaction and its aftermath. The goal of this first part is to determine if the events in the described scenario are Payment Card Industry (PCI) compliant. The second part of the assignment also covers PCI as it pertains to HGA's Network. The goal of this second part is to answer four questions and determine if HGA's network is already compliant or what can be done to make it compliant.
Unit 5 Assignment: Redesigning HGA's Network
Part I: PCI Compliance
Scenario:
You visit a retail establishment, shop around, and finally carry several products to one of the point of sale (POS) terminals distributed openly around the store. You produce a credit card, the sales clerk process the transaction, bags your goods, and hands you the receipt. On your to the exit, a store employee asks to see your receipt and checks the contents of the store bag. Document each of the major events just described and explain them in terms of the PCI compliance standard. Include this report in your weekly assignment.