As Indian organisations prepare to implement the new global payment security standard in the 5G era, a Verizon report said on Friday that the financial sector continues to be victimised by motivated organised crime, with servers being involved in 90 per cent of financial breaches.
Despite the Payment Card Industry Data Security Standard (PCI DSS) compliance improving significantly in 2020, the cybersecurity threats organisations face are more cunning and evasive than they were even two years ago, according to the 2022 Verizon Payment Security Report (2022 PSR).
The PCI SSC, a global payment security forum, has published version 4.0 of the payment security standard.
To provide organisations time to understand the changes in version 4.0 and implement any updates needed, the current version of PCI DSS, v3.2.1, will remain active for two years until it is retired on March 31, 2024.
"Despite compliance improvements, we know that bad actors are still out there and stronger than ever," said Sampath Sowmyanarayan, CEO, Verizon Business.
"To remain safe in today's heightened cybersecurity climate, organisations will need to approach their objectives and goals at a project, program and strategic level," Sowmyanarayan added.
The report found that overall, PCI DSS compliance improved significantly in 2020, with 43.4 per cent of organisations maintaining full compliance, compared to 27.9 per cent in 2019.
Additionally, while over half (56.7 per cent) of organisations failed their interim validation assessment due to one or more security controls omissions, the security control gap still improved substantially, from a high 7.7 percent in 2019 to a low 4.0 percent in 2020.
"Key changes to the standard focus on meeting the evolving security needs of the payments industry, continuously promoting security processes, increasing flexibility for organisations using different methods to achieve security objectives, and enhancing validation procedures," said Lance Johnson, Executive Director of the PCI Security Standards Council.
The report said that the CISOs and their teams will need to apply a logical, coordinated process to evaluate requirements and constraints of PCI DSS v4.0, while navigating their way through the changes.
The appeal of emerging technologies, such as 5G and edge computing, gained significant momentum when the pandemic exposed the weakest links of the financial services industry.
"The speed and stability of 5G will continue to enhance the mobile experience for the payments industry -- providing greater customer security through advanced biometric-based identification and verification methods," said the report.
--IANS
na/dpb
(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)
You’ve reached your limit of {{free_limit}} free articles this month.
Subscribe now for unlimited access.
Already subscribed? Log in
Subscribe to read the full story →
Smart Quarterly
₹900
3 Months
₹300/Month
Smart Essential
₹2,700
1 Year
₹225/Month
Super Saver
₹3,900
2 Years
₹162/Month
Renews automatically, cancel anytime
Here’s what’s included in our digital subscription plans
Exclusive premium stories online
Over 30 premium stories daily, handpicked by our editors


Complimentary Access to The New York Times
News, Games, Cooking, Audio, Wirecutter & The Athletic
Business Standard Epaper
Digital replica of our daily newspaper — with options to read, save, and share


Curated Newsletters
Insights on markets, finance, politics, tech, and more delivered to your inbox
Market Analysis & Investment Insights
In-depth market analysis & insights with access to The Smart Investor


Archives
Repository of articles and publications dating back to 1997
Ad-free Reading
Uninterrupted reading experience with no advertisements


Seamless Access Across All Devices
Access Business Standard across devices — mobile, tablet, or PC, via web or app
)