Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
undefined | Better HN
0 points
toast0
6y ago
0 comments
Share
Because either the PCI standard says so, or the PCI consultant says so.
PCI compliance is about checking boxes, not weighing the options and making good choices.
0 comments
default
newest
oldest
cdubzzz
6y ago
Exactly this. Some of the checks _are_ valuable. We found a couple of real issues and made good security improvements. But we also ticked off more than a few boxes that made no damn real sense.
j
/
k
navigate · click thread line to collapse