Upcoming Events

A Network Computing Webinar:
Avoiding Downtime: How Virtualization Can Help In Times of Trouble

June 12, 2013
11:00 AM PT / 2:00 PM ET

Are you caught between a desire for the benefits of the cloud and concerns about security and control? Then you should attend this insight-packed webinar to learn how private data networking technologies like MPLS IP-VPNs can address your concerns and allow you to safely and intelligently reap the savings, agility and other benefits associated with cloud computing.

Join us to hear top industry experts discuss the private data network technologies that are best suited for enterprise cloud access requirements. You won't want to miss this opportunity to learn how your organization can best mitigate risk while reaping the full potential benefits of the cloud.

Register Now!

More Events »

Subscribe to Newsletter

  • Keep up with all of the latest news and analysis on the fast-moving IT industry with Network Computing newsletters.
Sign Up

Catbird Releases Guide to Help Virtual Enterprises Stay PCI-Compliant

When faced with bringing virtualization into their Payment Card Industry (PCI) systems, many companies have learned they need help to ensure that they remain PCI-compliant once virtualization is part of the mix. Catbird Networks has stepped into the breach with its PCI Solution Guide, an addendum to a similar guide from VMware.

"This is the first time that there's been auditor-approved, actionable guidance for what you need to do to remain compliant," says Tamar Newberger, VP of Catbird, a virtualization security management vendor. "This is a very hot issue. People needed direction on how to implement a PCI-compliant, virtualized data center. With this you will pass your PCI compliance audit."

More Insights

Webcasts

More >>

White Papers

More >>

Reports

More >>

With the rise of virtualization, companies using PCI learned that adding virtualization was possible, but new procedures would be needed to maintain compliance.

"This has been a major [problem] for people who wanted to use virtualization or a private cloud for PCI," in terms of putting it all together and meeting the requirements, Newberger explains. "When you're virtualizing, you have mixed workloads, maybe with some trusted data and some non-trusted data at the same time. You don't have individual data silos anymore." Instead, you have shared workloads, which are in conflict with PCI compliance efforts.

"That makes things more complicated for a PCI auditor, but it's completely doable if you know how to do it," says Newberger. "That's where this guide can help."

The line-by-line guide, which has been validated by a PCI Qualified Security Assessor (QSA), has been in the works for more than six months.

"Customers are becoming ready to virtualize sensitive systems, such as PCI payment processing," Parag Patel, VP of Global Strategic Alliances at VMware, said in a statement. ""VMware is committed to helping regulated organizations move to a private cloud model by providing in-depth and validated guidance to the compliance community. Partners such as Catbird are important for this effort, integrating additional controls for segmentation, auditing, and automated evidence of control, in order to offer a complete solution to customers who are subject to PCI compliance."


Related Reading


Network Computing encourages readers to engage in spirited, healthy debate, including taking us to task. However, Network Computing moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. Network Computing further reserves the right to disable the profile of any commenter participating in said activities.

 
Disqus Tips To upload an avatar photo, first complete your Disqus profile. | Please read our commenting policy.
 
Vendor Comparisons
Network Computing’s Vendor Comparisons provide extensive details on products and services, including downloadable feature matrices. Our categories include:

Research and Reports

May 2013
Network Computing: May 2013


TechWeb Careers