Security & Risk Management

« Worthwhile article on iPhone and privacy | Main | CIOs Entitlement Management Worries »

Posted by Jen Albornoz Mulligan on July 13, 2007

Minnesota makes PCI standards law

According to DMNEws "Minnesota has become the first state in the country to enact into law one of the key components of the credit card industry’s data-security standards, the payment card industry (PCI)standards." Now any company conducting business in Minnesota is now also legally bound by the laws of the state not to keep credit card's security data after a transaction has been approved. And if a business is caught doing so, they have to refund the costs to the bank for reissuing the card and such. We here at Forrester expect that governments will continue to make PCI requirements law, and that this trend will become increasingly popular as it gives the PCI standards a bit more teeth. Storing inappropriate security information is getting more costly.

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d8341c50bf53ef00e008d7b4208834

Listed below are links to weblogs that reference Minnesota makes PCI standards law:

Comments

The comments to this entry are closed.

Enter your email address:

Delivered by FeedBurner

Search this blog

S&R Links

Security & Risk Analysts on Twitter