A fifth not PCI compliant, says Gartner

News Article - Monday, 19 December 2011 10:30

Category: Security

Gartner has found that almost a fifth of firms are not compliant with the Payment Card Industry (PCI) Data Security Standards (DSS). The research specialist believes that the gap is hugely surprising considering the importance placed on PCI DSS compliance by tech firms.

Lawrence Pingree, research director at Gartner, said that it was clear from the survey results that security solution providers needed to step up their marketing of PCI DSS compliance tools. However, he added that security firms did not have sole responsibility for boosting PCI compliance rates. "End-user organisations must also work to address the awareness of their PCI security standards compliance status, so that their employees know whether or not they are compliant with [them],"Mr Pingree claimed.

He concluded that one of the reasons non-compliance rates were so high could be because of the added pressure on firms' IT budgets, with just 30 per cent of firms surveyed saying they would maintain IT expenditure next year.

The PCI Security Standards Council claims that failure to comply with its guidance can negatively affect both merchants and their consumers - with data breaches potentially resulting in legal action against businesses.

Recent Articles