Payment Card Industry - Compliance Readiness at B.C.'s Post-secondary Institutions panel.

Post on 31-Mar-2015

212 views 0 download

Tags:

transcript

Payment Card Industry - Compliance Readiness at B.C.'s Post-secondary Institutions panel

PanelUniversity of British Columbia

• Larry Carson, Associate Director, Information Security Management• Ray McNichol, Director of Financial Services

Bell Canada• Ed Rebane, M.ENG, B.ENG, CISSP, CISM, Senior Security and PCI Advisor, Bell Security

Practice Leader

Simon Fraser University• Keir Novik, Network Security Analyst

University of Victoria• Robert E. Elves, Assistant to the Controller• Eric van Wiltenburg, Manager of Information Security

PCI-DSS & Higher Education

• A whole lot of weight• VISA • MasterCard • American Express• Discover• JCB (Japan Credit Bureau)

Payment Card Industry – Data

Security Standard

• Ministries• Universities & Colleges• Etc.

Mandated by BC Government

for public bodies

Why do we need credit cards?

Tuition Fees• Domestic

• InternationalFines Food

Residences/Hoteling Bookstore Athletics

Parking ConferencesContinuing

Professional Development

What is PCI-DSS compliance about?

Jumping

through

“hoops”

Dotting the “i”s and crossing

the “t”sRisk

Management

Panel Questions

Questions for the panel

Discussion amongst the panel

10-15 mins for questions at the end

Questions for the Panel

1. Institutions in BC are in various stages of PCI compliance, what is the single best lesson your institute has learned to-date, which you could share with other institutions?

Questions for the Panel

2. What has been the most challenging part of PCI compliance for your institute and if you have been able to overcome that, could you tell us how? If not, could you share how you are addressing it.

Questions for the Panel

3. What has been the most beneficial part of PCI compliance for your institution and how has that benefit been relayed to the stakeholders?

Questions for the Panel

4. If an institution were to start on PCI Compliance today, where/what do you recommend that they start with?

Questions for the Panel

5. If governance plays a role in your compliance efforts can you tell us how you have addressed it and the value that has been seen?

Questions?

Contacts Us…University of British Columbia

• Larry Carson, Associate Director, Information Security Management: larry.carson@ubc.ca • Ray McNichol, Director of Financial Services: mcnichol@finance.ubc.ca

Bell Canada• Ed Rebane, M.ENG, B.ENG, CISSP, CISM, Senior Security and PCI Advisor, Bell Security

Practice Leader: ed.rebane@bell.ca

Simon Fraser University• Keir Novik, Network Security Analyst: novik@sfu.ca

University of Victoria• Robert E. Elves, Assistant to the Controller: ree@uvic.ca • Eric van Wiltenburg, Manager of Information Security: vanwilt@uvic.ca