A Tale of Two PCI Security Audits
Robert Duran of Time Inc. and Allan Kintigh of National Card Services share their PCI auditing experiences. Why one's experience was unpleasant and the other fared better.
However, he said, merchants have a better chance of getting a fair shake these days because there's a larger pool of auditors to choose from.
"At the beginning there were far fewer companies capable of performing a PCI security audit, but in the last couple years Visa and MasterCard have authorized a lot more," he said. "The bigger the pool of auditors, the more likely you will see transparency."
His parting advice to merchants facing an audit: Don't stick with the same auditors for too long.
"I always tell clients they shouldn't rely too much on the same auditor," he said.. "I suggest rotating the auditors so you'll always have fresh perspectives and second opinions."
PCI security audit



