2010å¹´9æ1æ¥8ï¼02ç¸æ¬¡ãä¸æ£ã¢ã¯ã»ã¹ã¨PCI DSS対çã§æ³¨ç® ECå çåºã§ãã«ã¼ãä¼å¡æ å ±éä¿æãã®æ¡ç¨ã¯é²ãã§ãããï¼ è¿å¹´ãSQLã¤ã³ã¸ã§ã¯ã·ã§ã³ãªã©ã®è¢«å®³ã«ãããã¯ã¬ã¸ããã«ã¼ãã®æ å ±ãã¤ã³ã¿ã¼ãããå çåºã®ãµã¼ããªã©ããæ¼æ´©ããäºä»¶ãç¸æ¬¡ãã§ããããã®å¯¾çã¨ãã¦æ³¨ç®ããã¦ããã®ã決æ¸ä»£è¡äºæ¥è ã®å¤ãããµã¼ãã¹ã¨ãã¦æã¡åºãç»é¢é·ç§»åï¼ã«ã¼ãä¼å¡æ å ±éä¿æï¼ã ãåã·ã¹ãã ãæ¡ç¨ãããã¨ã«ããããã¤ã¡ã³ãã«ã¼ãã®å½éåºæºã§ããPCI DSSï¼Payment Card Industry Data Security Standardï¼ã®è¦ä»¶ãç·©åãããã¡ãªããããããã¨ãã注ç®ãæµ´ã³ã¦ããã 決æ¸å¦çã¯æ±ºæ¸ä»£è¡äºæ¥è å´ã§ãã¹ã¦å®æ½ æ¡ç¨ä¼æ¥ã¯13é ç®æªæºã§PCI DSSå®å ¨æºæ ã証æå¯è½ ECå çåºãã«ã¼ãä¼å¡æ å ±éä¿æã·ã¹ãã ï¼ç»é¢é·ç§»åï¼ãæ¡ç¨ããã°ã決æ¸å¦çã¯æ±ºæ¸ä»£è¡äºæ¥è
2010/04/21 æ¥æ¬ã»ã¼ããããã¯4æ21æ¥ãã«ã¼ãæ¥çåãã®ã»ãã¥ãªãã£åºæºã§ããPCI DSSã«å¯¾å¿ããã½ãªã¥ã¼ã·ã§ã³ãSafeNet PCI DSSã½ãªã¥ã¼ã·ã§ã³ããçºè¡¨ãæ¬æ¥ãã販売ãéå§ããã ããã¯å¾æ¥SafeNetãæä¾ãã¦ãããSafeNet DataSecureããSafeNet eSafeããªã©ã®ãã¼ã¿ä¿è·è£½å群ãããã³ãSafeNet HSMããªã©ã®æå·éµç®¡çãè¡ã製å群ããPCI DSSã®è¦ä»¶ã«ãã£ã¦ã¾ã¨ããã½ãªã¥ã¼ã·ã§ã³ã¹ã¤ã¼ãã¨ãã¦è²©å£²ãããã®ãã½ãªã¥ã¼ã·ã§ã³ã¨ãã¦ãEnterprise Securityã¹ã¤ã¼ãããDatabase Protectionã¹ã¤ã¼ãããDatabase Security Add-onã¹ã¤ã¼ããã®3ã¤ãç¨æããã æ¥æ¬ã»ã¼ãããã ã¨ã³ã¿ã¼ãã©ã¤ãºã»ãã¥ãªãã£äºæ¥é¨ç¬¬2å¶æ¥é¨ é¨é·ã®é«æ©å®æ°ã¯ãPCI DSSã®åå¾ãå¿ è¦ãªã¯ã¬ã¸
PCI Security Standards Councilã¯ãã¢ã«ã¦ã³ããã¼ã¿ä¿è·ã«é¢ããã°ãã¼ãã«è¦æ¨¡ã®éãããåè°ä¼ã§ãç¶ç¶ä¸ã®ã»ãã¥ãªãã£åºæºã®éçºãå¼·åãä¿ç®¡ãæ®åã¨å®æ½ã«é¢ããè¨è«ã®å ´ãæä¾ãã¦ãã¾ãã å®å ¨ãªçç± ã·ã¹ãã ã®å®å ¨ã確ä¿ãããã¨ã§ããã¤ã¡ã³ãã«ã¼ãã®æ©å¯æ å ±ã«é¢ãã¦ã客æ§ã®ä¿¡é ¼æ§ãé«ã¾ãã¾ããåºæºã«ç¶ç¶çã«æºæ ããã¨ãããã¨ã¯ãã½ãªã¥ã¼ã·ã§ã³ãããªãã¡å¯¾æãããã¤ã¡ã³ãã«ã¼ããã¼ã¿ã®ã»ãã¥ãªãã£ä¾µå®³ã«å¯¾ãããçµ±ä¸ãããã°ãã¼ãã«ãªå¯¾å¿ã«ã¤ãªããã¾ãã
ç¹é·1 å¤æ§ãªæ±ºæ¸æ段ãã¯ã³ã¢ã¸ã¥ã¼ã«ã§æä¾ ã¯ã¬ã¸ããã«ã¼ãã»ã³ã³ããã¯ãã¡ãããå½ç¤¾ã·ã§ããã³ã°ã¯ã¬ã¸ãã(Orico Webã¯ã¬ã¸ãã)ãé»åããã¼ãããããã³ãã³ã°ãéè¯çãå¤æ§ãªæ±ºæ¸æ段ãåä¸ã®ã¤ã³ã¿ã¼ãã§ã¤ã¹ã§æ¥ç¶ãããã¨ãå¯è½ã§ããã¤ã³ã¿ã¼ãããé販ããå©ç¨ã®ã客ãã¾ã®æ¯æããã¼ãºã«åããã¦ãã¾ãã¾ãªæ±ºæ¸æ段ããæä¾ãã¦ããã¾ãã ç¹é·2 å çåºãã¾ã®ãã¼ãºã«åã£ãæ¥ç¶æ¹å¼ããç¨æ OricoPayment Plusã§ã¯ãECãµã¤ããä¿æãããã¨ãªãå°å ¥å¯è½ãªã¡ã¼ã«ãªã³ã¯åãå çåºãã¾ã®ECãµã¤ãã¨é£æºãå¯è½ãªWebãªã³ã¯åã»APIé£æºåã®è¨3ã¤ã®ã¿ã¤ãããç¨æãã¦ããã¾ããå çåºãã¾ã®ãã¼ãºã«ãã£ãæé©ãªååãå°å ¥ãããã¨ãå¯è½ã§ãã ç¹é·3 å½å æé«æ°´æºã®ã»ãã¥ãªã㣠OricoPayment Plusã®ã¤ã³ãã©ã¨ãã¦å©ç¨ããæ ªå¼ä¼ç¤¾DGãã£ãã³ã·ã£ã«ãã¯ããã¸ã¼ããæä¾
PCIãã¼ã¿ã»ãã¥ãªãã£åºæºå®å ¨å¯¾ç ãããã¯ã³ã·ã¹ãã ãº æ ªå¼ä¼ç¤¾ ãã¶ã»ã¤ã³ã¿ã¼ãã·ã§ãã« ã¢ã¸ã¢ã»ãã·ãã£ãã¯ã»ãªãããã NTTãã¼ã¿ã»ã»ãã¥ãªãã£æ ªå¼ä¼ç¤¾/å ±è
ç°å¢ã¨åçã®æ¹åã«åãã¦ãä¸æµã®CEOãæç¶å¯è½æ§ãã©ãåãå ¥ãã¦ããããã覧ãã ããã CEO ã®èª¿æ»ã¬ãã¼ããèªã å¤åã¯ãã¸ãã¹ãæ¥çã«éå®ããã¾ããã å¤åã¯ä¸çä¸ã§ãæ¯æ¥ã®ããããç¬éã«èµ·ãã£ã¦ãã¾ãã ä¼æ¥ã®ãªã¼ãã¼ã«ã¨ã£ã¦ãææ決å®ã¯ãã¤ã¦ãªãã»ã©è¤éã«ãªã£ã¦ãã¾ãã競äºãã¦åã¤ã«ã¯ãæ©ä¼ã«ç¦ç¹ãå½ã¦ããã¸ãã£ããªå¤åãè¿ éã«å®è¡ã§ããçµé¨ã¨ã¹ãã«ãåããä¿¡é ¼ã§ãããã¼ããã¼ãã¤ã¾ãå¸å ´ã§å¸¸ã«å ãè¡ãèªä¿¡ãæã£ãææ決å®ãå¯è½ã«ãããã¼ããã¼ãå¿ è¦ã§ãã IBMã³ã³ãµã«ãã£ã³ã°â¢ã¯ãä¸çä¸ã®ã¯ã©ã¤ã¢ã³ãã ãã¼ããã¼ã¨ååãã¦ã次ä¸ä»£ã®AIãå ±åµãã¦ãã¾ãã20,000人ãè¶ ããAI ã¨ãã¹ãã¼ããæããIBMã®Â ã°ãã¼ãã«ã»ãã¼ã ããæå 端ã®AIã½ãªã¥ã¼ã·ã§ã³ã¨ãªã¼ãã¡ã¼ã·ã§ã³ã®è¨è¨ã¨æ¡å¼µã ãã¸ãã¹å ¨ä½ã§ç´ æ©ã確å®ã«Â å®è¡ã§ããããæ¯æ´ãã¾ãã â æ°çæ å ± IBM Co
決æ¸ã¢ããªã±ã¼ã·ã§ã³ã»ãã¥ãªãã£åºæºãPA-DSSãã¨ã¯ï¼ã¯ããã« æè¿è³ã«ãããã¨ãå¢ãã¦ãã決æ¸ã¢ããªã±ã¼ã·ã§ã³ã»ãã¥ãªãã£åºæºãPA-DSSï¼Payment Application Data Security Standardï¼ããæ¬é£è¼ã§ã¯ãPA-DSSã¨ã¯ä½ããã¾ãPCI DSSã¨ã®éããé¢ä¿ã¨ãã£ãåºæ¬çãªäºæãããPA-DSSã§æ±ºæ¸ã¢ããªã±ã¼ã·ã§ã³ã«å¯¾ãã¦æ±ãããã14ã®ã»ãã¥ãªãã£å¯¾çãããã³PA-DSSæºæ ã«ããã¦éè¦ã¨ãªãå®è£ ã¬ã¤ãã®æ´åã¨ã¾ã¨ãã«ã¤ãã¦è§£èª¬ããã PA-DSSã¯æ±ºæ¸ã¢ããªã±ã¼ã·ã§ã³åãã®åºæºã§ã¯ãããããã®å 容ãç解ãããã¨ã¯ã決æ¸ã¢ããªã±ã¼ã·ã§ã³ãéçºãã¦ããããPCI DSSã«æºæ ããªããã°ãªããªãå çåºããµã¼ãã¹ãããã¤ãããããã¯æ±ºæ¸ã«é¢é£ããªãã¢ããªã±ã¼ã·ã§ã³ã®éçºãè¡ã£ã¦ããä¼æ¥ã«ã¨ã£ã¦ãåèã«ãªãã ããã PA-DSSã®æãç«ã¡ã¨ãã®ã¹ã
NECããã°ãã¼ãã¯6æ28æ¥ãå社ã®ã¯ã¬ã¸ããã«ã¼ã決æ¸æ¥åãã»ãã¥ãªãã£åºæºãPCI DSSãã®æºæ èªå®ãåå¾ããã¨çºè¡¨ããããªã³ã©ã¤ã³æ±ºæ¸ã§ã®ã¯ã¬ã¸ããã«ã¼ãæ å ±ã®ä¿è·å¯¾çãå®æ½ããã¦ããã¨ç¬¬ä¸è æ©é¢ã«ãã£ã¦ç¢ºèªãããã PCI DSSï¼Payment Card Industry Data Security Standardï¼ã¯ãAmerican ExpressãDiscoverãJCBãMasterCardãVisaã®ã¯ã¬ã¸ããã«ã¼ããã©ã³ããä¸å¿ã¨ãªã£ã¦çå®ãããã¤ã¡ã³ãã«ã¼ãï¼ã¯ã¬ã¸ããã«ã¼ããããªãã¤ãã«ã¼ããããããã«ã¼ããªã©ï¼ãã¼ã¿ã«é¢ããå½éçãªã»ãã¥ãªãã£åºæºãåãã©ã³ããã¡ã³ãã¼ã¨ãªã£ããPCI SSCï¼PCI Security Standard Councilï¼ãã管è½ãããã«ã¼ããåãæ±ãäºæ¥è ã«å¯¾ãã¦ã12ã®è¦ä»¶ã§è¦å®ããæ å ±ã»ãã¥ãªãã£å¯¾çãå®æ½ãã¦åºæºã«æº
PCI Security Standards Councilï¼PCI SSCï¼ã®ãããã§ããã¸ã§ãã©ã« ããã¼ã¸ã£ã®ããã»ã«ãã½æ°ãåæ¥æ¥ãã¤ã³ã¿ãã¥ã¼ã«å¿ãããPCI SSCã¯ãã¯ã¬ã¸ããã«ã¼ããã¼ã¿ã®åãæ±ãã«ã¤ãã¦ã®ã»ãã¥ãªãã£åºæºã管çããã°ãã¼ãã«ãªæ¥çæ¨æºå£ä½ã5æ12æ¥ã«ææ°ã®ã»ãã¥ãªãã£åºæºããªãªã¼ã¹ãããPCI SSCã®åãçµã¿ã«ã¤ãã¦èããã æ¥æ¥ã®ç®çã¯ã PCI SSCã¯ã¯ã¬ã¸ããã«ã¼ãã®ã»ãã¥ãªãã£åºæºãã°ãã¼ãã«ã«ç®¡çããçµç¹ã ãã»ãã¥ãªãã£åºæºã管çãã¦ãã¯ã¬ã¸ããã«ã¼ãã»ãã¼ã¿ãä¸æ£ã¢ã¯ã»ã¹ããå®ããã¨ãç®çã¨ããããã¶ããã¹ã¿ã¼ã«ã¼ããªã©ã¯ã¬ã¸ããã«ã¼ãé¢é£ä¼æ¥5社ãã2006å¹´ã«è¨ç«ãããç¾å¨ã¯ã»ãã¥ãªãã£é¢é£ä¼æ¥ãªã©ãåå ãã¦ãããã¡ã³ãã¼ä¼æ¥ã¯500社ã«éããã æ¥æ¬ã訪åããã®ã¯ãã¯ã¬ã¸ããã«ã¼ãã®å©ç¨çãé«ã¾ã£ã¦ããéè¦ãªå¸å ´ã¨èªèãã¦ããããã
æ¥æ¬ã»ã¼ããããã¯4æ21æ¥ãã»ãã¥ãªãã£è£½åã¹ã¤ã¼ã群ãSafenet PCI DSS ã½ãªã¥ã¼ã·ã§ã³ããçºè¡¨ãããPCI DSSã¸ã®æºæ ãæ å ±ã»ãã¥ãªãã£ã®å¼·åãç®æãä¼æ¥åãã«æä¾ããã Safenet PCI DSS ã½ãªã¥ã¼ã·ã§ã³ã¯ãæ å ±æ¼ãã対çãªã©ãã¼ã¿ä¿è·ã®å¼·åãç®æãä¼æ¥åãã®ãEnterprise Security ã¹ã¤ã¼ããã¨ããã¼ã¿ãã¼ã¹ã¸ã®ä¸æ£ã¢ã¯ã»ã¹ã®å¯¾çå¼·åãç®æãä¼æ¥åãã®ãDatabase Protection ã¹ã¤ã¼ããããã¼ã¿ãã¼ã¹ã®æå·éµã管çããããã®ãDatabase Security Add-on ã¹ã¤ã¼ããã®3種é¡ã¨ãªã£ã¦ããã å社ã¨ã³ã¿ã¼ãã©ã¤ãºã»ãã¥ãªãã£äºæ¥é¨ç¬¬2å¶æ¥é¨ã®é«æ©å®é¨é·ã«ããã¨ã2009å¹´ã«å½å 大æä¼æ¥ã§ä¸æ£ã¢ã¯ã»ã¹ã«ããæ å ±æ¼ããäºä»¶ãå¤çºãããããæ å ±ã»ãã¥ãªãã£å¯¾çãè¦ç´ãããã¨ããä¼æ¥ãã¼ãºãé«ã¾ã£ã¦ããã¨ããã
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãç¥ãã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}