Skip to content

Instantly share code, notes, and snippets.

@safarcik
Forked from darccio/pci_dss.md
Created February 3, 2019 22:42
Show Gist options
  • Save safarcik/67305c156939939ad8d37ff4a851f52a to your computer and use it in GitHub Desktop.
Save safarcik/67305c156939939ad8d37ff4a851f52a to your computer and use it in GitHub Desktop.
PCI DSS. Useful resources

PCI DSS

NOTE: Work in progress

TODO: Identity management, two-factor auth, OpenVPN, Logstash, log shippers, IIS logs, OSSEC, Snort, Suricata, snorby, restart iis w/o admin role,

PCI DSS. Guidelines

REQ 10.1, 10.2. Tools. Resource access tracking

REQ 10.1, 10.2. Tools. Resource access tracking. auditd

REQ 10.1, 10.2. Tools. Resource access tracking. rootsh

REQ 10.3. Tools. Log management

REQ 10.3. Tools. Log management. nxlog

PCI DSS. Tools. Vulnerability management

PCI DSS. Tools. Penetration testing

PCI DSS. Python apps

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment