发明名称 Method and system for standards guidance
摘要 A method and system for guiding end-users with respect to payment card data security standards. The system uses guidance questions that are worded simply and intelligibly so that end-users, regardless of their technical background or expertise, can understand the underlying issues and provide the proper answer. The guidance questions are generated from the PCI DSS SAQ and related guidance documents, to generate a list of positive, negative or non-applicable SAQ answers at the end of the process. The system generates action items with applicable policy statements for negative answers, if necessary, such that a completed questionnaire can be generated with all positive answers and sent to the authoritative entity. The system also generates vulnerability level reports based on the end-user's answers to assist the end-user and the host in assessing PCI DSS compliance readiness. The host can process the generated information, for example, to do risk analysis or risk management.
申请公布号 US8296244(B1) 申请公布日期 2012.10.23
申请号 US201113336334 申请日期 2011.12.23
申请人 HEROUX RICHARD W.;CSRSI, INC. 发明人 HEROUX RICHARD W.
分类号 G06Q99/00 主分类号 G06Q99/00
代理机构 代理人
主权项
地址