SC Magazine Best of 2009
SC Magazine Recommends

PCI Compliance Guide

How to achieve PCI Compliance

Clone Systems is an industry leader in Information Security and a PCI Approved Scanning Vendor (ASV). We provide intelligent cost effective Managed Network Security solutions that help organizations meet the requirements set forth in PCI's DSS version 1.2. The table below is a guide on the portfolio of products and services available to help you achieve and in most cases exceed the 12 requirements defined in the PCI standards.

PCI Compliance Requirements

Build and Maintain a Secure Network
PCI Requirement CloneGuard® PCI Solutions
1. Install and maintain a firewall configuration to protect cardholder data.
  • Managed Firewall Service
  • Co-Managed Firewall Service
  • Firewall Log Monitoring
  • Professional Services
2. Do not use vendor-supplied defaults for system passwords and other security parameters.
  • Enterprise Vulnerability Scanning - EVSS
  • Professional Services
  • Penetration Testing
Protect Cardholder Data
PCI Requirement CloneGuard® PCI Solutions
3. Protect stored cardholder data.
  • Managed Firewall Service
  • Co-Managed Firewall Service
  • Firewall Log Monitoring
  • Professional Services
4. Encrypt transmission of cardholder data across open, public networks.
  • Managed Firewall Service
  • Managed VPN Service
  • Managed UTM Service
  • Email Security
  • Professional Services
Maintain a Vulnerability Management Program
PCI Requirement CloneGuard® PCI Solutions
5. Use and regularly update anti-virus software.
  • Managed IDS / IPS Service
  • SIEM - Log Monitoring Service
  • Professional Services
6. Develop and maintain secure systems and applications.
  • Managed IDS / IPS Service with RNA
  • Enterprise Vulnerability Scanning - EVSS
  • Professional Services
  • Penetration Testing
Implement Strong Access Control Measures
PCI Requirement CloneGuard® PCI Solutions
7. Restrict access to cardholder data by business need-to-know.
  • Managed IDS / IPS Service with RUA
  • Managed HIDS Solution
  • Professional Services
  • SIEM - Log Monitoring Service
8. Assign a unique ID to each person with computer access.
  • Managed IDS / IPS Service with RUA
  • Professional Services
  • SIEM - Log Monitoring Service
9. Restrict physical access to cardholder data.
  • Professional Security Services
Regularly Monitor and Test Networks
PCI Requirement CloneGuard® PCI Solutions
10. Track and monitor all access to network resources and cardholder data.
  • Managed IDS / IPS Service with RUA
  • Managed HIDS Solution
  • Professional Services
  • SIEM - Log Monitoring Service
11. Regularly test security systems and processes.
  • Enterprise Vulnerability Scanning - EVSS
  • Penetration Testing
  • Managed IDS / IPS Service with RNA
  • Managed HIDS Solution
  • Professional Services
Maintain an Information Security Policy
PCI Requirement CloneGuard® PCI Solutions
12. Maintain a policy that addresses information security.
  • Professional Services