Featured Blog

/

On April 14, 2014

Florida statute mandates quick notification to individuals affected by a breach

Nowadays everything is done electronically.  To make things even easier large data is stored and accessed in the cloud.  Although this is considered more secure, there are no guarantees.   States are taking more precautions than ever to address personal data security which means businesses must m ...

Read More
/

On April 4, 2014

How to ensure continuous compliance? Here are some suggestions.

Here are some points  from an article related to establishing an IT control framework. However, this is perfectly applicable for ensuring continuous compliance in retail security as well.  Some sensible high-lev ...

Read More
/

On March 21, 2014

Which version of PCI DSS do retailers need to comply with in 2014? Version 2.0 or 3.0?

The PCI Council officially released PCI DSS version 3.0 in January, 2014.  Many merchants are still working through their PCI Compliance audit that started in 2013 for the requirements of version 2.0.  Clearly, their Report on Compliance (ROC) will be based on providing evidentiary support requir ...

Read More
/

On March 10, 2014

Incident Response Plan – How do you determine an incident?

An obvious discovery of any malicious finding is an incident and immediate actions should take place to arrest and minimize effects.  However, there are incidents that fall into grey areas.  Any actual incident has implications such as legal, compliance, and other regulatory components. A set of ...

Read More
/

On January 21, 2014

Recent large breaches point out weakness in the point-of-sale system security

Large breaches similar to Target and Neiman Marcus  have already occurred during the peak December 2013 season that are still going through QIRAs by (Qualified Incident Response Assessors) and haven't been published yet.  However, they all point out to the same techniques used in the other two at ...

Read More

Stay up to date with the latest from Omega