<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>pci dss Archives - Dogsbody Technology</title>
	<atom:link href="https://www.dogsbody.com/blog/tag/pci-dss/feed/" rel="self" type="application/rss+xml" />
	<link></link>
	<description>Linux managed services &#38; consulting for ambitious web agencies and SaaS companies</description>
	<lastBuildDate>Tue, 23 May 2017 11:03:27 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>
	<item>
		<title>Client support vs PCI 3.1 Compliance</title>
		<link>https://www.dogsbody.com/blog/client-support-vs-pci-3-1-compliance/?pk_campaign=feed&#038;pk_kwd=client-support-vs-pci-3-1-compliance</link>
					<comments>https://www.dogsbody.com/blog/client-support-vs-pci-3-1-compliance/?pk_campaign=feed&#038;pk_kwd=client-support-vs-pci-3-1-compliance#respond</comments>
		
		<dc:creator><![CDATA[Rob Hooper]]></dc:creator>
		<pubDate>Tue, 23 May 2017 11:03:27 +0000</pubDate>
				<category><![CDATA[Knowledge Base]]></category>
		<category><![CDATA[PCI Compliance]]></category>
		<category><![CDATA[pci dss]]></category>
		<guid isPermaLink="false">https://www.dogsbody.com/?p=6862</guid>

					<description><![CDATA[<p>Back in December 2015 the Payment Card Industry Security Standards Council (PCI SSC) agreed it was time to start disabling support for old and insecure SSL protocols. TLS 1.0 needs to be switched off before the 30 June 2018. While many of the old SSL protocols have been disabled now due to vulnerabilities such as [&#8230;]<img src="https://analytics.dogsbody.com/piwik.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Fwww.dogsbody.com%2Fblog%2Fclient-support-vs-pci-3-1-compliance%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Dclient-support-vs-pci-3-1-compliance&amp;action_name=Client%20support%20vs%20PCI%203.1%20Compliance&amp;urlref=https%3A%2F%2Fwww.dogsbody.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" /></p>
<p>The post <a href="https://www.dogsbody.com/blog/client-support-vs-pci-3-1-compliance/?pk_campaign=feed&#038;pk_kwd=client-support-vs-pci-3-1-compliance">Client support vs PCI 3.1 Compliance</a> appeared first on <a href="https://www.dogsbody.com">Dogsbody Technology</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Back in December 2015 the Payment Card Industry Security Standards Council (PCI SSC) agreed it was time to start disabling support for old and insecure SSL protocols.</p>
<h2><span style="color: #800000;">TLS 1.0 needs to be switched off before the 30 June 2018.</span></h2>
<p>While many of the old SSL protocols have been disabled now due to vulnerabilities such as POODLE and <a href="https://www.dogsbody.com/blog/cve-2014-0160-heartbleed/">Heartbleed</a> this will be the first time a protocol has been disabled that is still being used by some old browsers without a known vulnerability.</p>
<p>A large number of older clients will <strong>break</strong> when you disable TLS 1.0, including:</p>
<ul>
<li>Android 4.3 and older</li>
<li>Internet explorer 10 and older</li>
<li>Java 7 and older</li>
<li>Safari 5.1.9 / OS X 10.6.8</li>
<li>Safari 6.0.4 / OS X 10.8.4</li>
</ul>
<p>We recommend you look at your analytics and see how many customers will be affected before making this change.</p>
<p>If you are in a position where you cannot disable TLS 1.0 yet, there are alternatives, your PCI provider will accept a plan to defer this work up to the 30 June 2018. Another solution could be separating your checkout pages from your website, this way older browsers can still browse most of you site.</p>
<p>Check out the PCISSC blog post for <a href="https://blog.pcisecuritystandards.org/migrating-from-ssl-and-early-tls">further reading</a>.</p>
<p>Are you are concerned about disabling TLS 1.0? Running into PCI compliance issues? Unhappy with your site security? <a href="https://www.dogsbody.com/contact/">Drop us a message and see how we can help you.</a></p>
<p>Feature image made by <a href="http://costculator.com">costculculator</a> licensed <a title="Creative Commons BY 3.0" href="https://creativecommons.org/licenses/by/2.0/">CC BY 2.0.</a></p>
<img decoding="async" src="https://analytics.dogsbody.com/piwik.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Fwww.dogsbody.com%2Fblog%2Fclient-support-vs-pci-3-1-compliance%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Dclient-support-vs-pci-3-1-compliance&amp;action_name=Client%20support%20vs%20PCI%203.1%20Compliance&amp;urlref=https%3A%2F%2Fwww.dogsbody.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" /><p>The post <a href="https://www.dogsbody.com/blog/client-support-vs-pci-3-1-compliance/?pk_campaign=feed&#038;pk_kwd=client-support-vs-pci-3-1-compliance">Client support vs PCI 3.1 Compliance</a> appeared first on <a href="https://www.dogsbody.com">Dogsbody Technology</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.dogsbody.com/blog/client-support-vs-pci-3-1-compliance/?pk_campaign=feed&#038;pk_kwd=client-support-vs-pci-3-1-compliance/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Data Privacy Day 2016</title>
		<link>https://www.dogsbody.com/blog/data-privacy-day-2016/?pk_campaign=feed&#038;pk_kwd=data-privacy-day-2016</link>
					<comments>https://www.dogsbody.com/blog/data-privacy-day-2016/?pk_campaign=feed&#038;pk_kwd=data-privacy-day-2016#comments</comments>
		
		<dc:creator><![CDATA[Gary Rixon]]></dc:creator>
		<pubDate>Thu, 28 Jan 2016 08:58:58 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[data privacy day]]></category>
		<category><![CDATA[ico]]></category>
		<category><![CDATA[pci dss]]></category>
		<category><![CDATA[privacy]]></category>
		<guid isPermaLink="false">https://www.dogsbody.com/?p=5383</guid>

					<description><![CDATA[<p>Today is Data Privacy Day! It&#8217;s been taking place annually on the 28th of January since 2007, and this year is no different. As you may have worked out already, data privacy day is all about protecting and maintaining your privacy, especially in the online world. One of the main focuses of the day is [&#8230;]<img src="https://analytics.dogsbody.com/piwik.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Fwww.dogsbody.com%2Fblog%2Fdata-privacy-day-2016%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Ddata-privacy-day-2016&amp;action_name=Data%20Privacy%20Day%202016&amp;urlref=https%3A%2F%2Fwww.dogsbody.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" /></p>
<p>The post <a href="https://www.dogsbody.com/blog/data-privacy-day-2016/?pk_campaign=feed&#038;pk_kwd=data-privacy-day-2016">Data Privacy Day 2016</a> appeared first on <a href="https://www.dogsbody.com">Dogsbody Technology</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Today is <a href="https://en.wikipedia.org/wiki/Data_Privacy_Day" target="_blank">Data Privacy Day</a>! It&#8217;s been taking place annually on the 28th of January since 2007, and this year is no different. As you may have worked out already, data privacy day is all about protecting and maintaining your privacy, especially in the online world. One of the main focuses of the day is raising awareness of data protection requirements and best practices, so we thought we&#8217;d talk about some organisations and laws that help to do so.</p>
<h3>Summary</h3>
<ul>
<li>If you&#8217;re a UK business and store any customer information, you need to register with the ICO</li>
<li>If a user types payment card information into your website, you are required to be PCI DSS compliant</li>
</ul>
<h3>Data Controllers &amp; The ICO</h3>
<p>The <a href="https://ico.org.uk/" target="_blank">Information Commissioners Office</a> (ICO) is interested in upholding rights with regards to information and does so in the public interest. It keeps track of businesses that are storing personal information (data controllers), deals with enquiries and complaints, and encourages bodies to comply with particular laws such as the <a href="https://en.wikipedia.org/wiki/Freedom_of_Information_Act_2000" target="_blank">Freedom of Information Act</a> and the <a href="https://en.wikipedia.org/wiki/Data_Protection_Act_1998" target="_blank">Data Protection Act</a>.</p>
<p>The Data Protection Act stipulates that <strong>&#8220;every organisation processing personal information&#8221; must register as a data controller with the ICO</strong> (unless you are exempt), so make sure you do so if this applies to you! The responsibilities of a data controller cover things such as making sure you&#8217;re not holding onto data for longer than necessary, and that you are only recording information for the reasons specified to the ICO upon registering as a data controller.</p>
<p>The ICO can also provide you with help and advice on ensuring you&#8217;re upholding your responsibilities as a data controller. We highly recommend filling out the <a href="https://ico.org.uk/for-organisations/register/self-assessment/" target="_blank">self assessment provided by the ICO</a> to help you determine if you need to register with them.</p>
<h3>PCI DSS Compliance</h3>
<p>Payment Card Industry Data Security Standard (PCI DSS), and compliance is all about certifying that your company is handling payment card data in a safe and secure manner. It&#8217;s purpose is to try and improve the security of the online payment process, at the benefit of both the merchant and consumer.  If your website or application accepts, transmits or stores payment card information, then you must be PCI DSS compliant.</p>
<p>There are different levels of compliance which you must meet depending on how many payments you process and the way in which you do so. <strong>If you&#8217;re using a payment gateway, such as SagePay or PayPal, which redirects users to an external page, then you probably only need to to fill out a self-assessment questionnaire to gain compliance. </strong>You can find that questionnaire <a href="https://www.pcisecuritystandards.org/documents/PCI_DSS_v3-1_SAQ_A_rev1-1.pdf" target="_blank">here</a>.</p>
<p>If you don&#8217;t meet the standards, then you&#8217;re leaving yourself open to the possibility of very <a href="https://www.pcicomplianceguide.org/pci-faqs-2/#23" target="_blank">hefty fines</a> and damage to your brand image. Setting up and securing your servers to aid in meeting the standards is something that we at Dogsbody Technology are perfectly suited to, so please <a href="/contact/" target="_blank">get in touch</a> if you have any questions or think that we can help!</p>
<p><em>Feature image by <a href="https://www.flickr.com/photos/g4ll4is/">g4ll4is</a> under the <a href="https://creativecommons.org/licenses/by-sa/2.0/">CC BY-SA 2.0</a> license.</em></p>
<img decoding="async" src="https://analytics.dogsbody.com/piwik.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Fwww.dogsbody.com%2Fblog%2Fdata-privacy-day-2016%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Ddata-privacy-day-2016&amp;action_name=Data%20Privacy%20Day%202016&amp;urlref=https%3A%2F%2Fwww.dogsbody.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" /><p>The post <a href="https://www.dogsbody.com/blog/data-privacy-day-2016/?pk_campaign=feed&#038;pk_kwd=data-privacy-day-2016">Data Privacy Day 2016</a> appeared first on <a href="https://www.dogsbody.com">Dogsbody Technology</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.dogsbody.com/blog/data-privacy-day-2016/?pk_campaign=feed&#038;pk_kwd=data-privacy-day-2016/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Page Caching using Disk: Enhanced 

Served from: www.dogsbody.com @ 2026-06-21 16:27:44 by W3 Total Cache
-->