Best third party tool for audit

  • Hi,

    In our company we are on the way to make our environment PCI DSS (Payment card industry Data security standard). We are thinking of using third party tool for the audit purpose. If anybody is aware of this please sugest what third party tools can be used for this. Is it necessary to have tools to be PCI DSS complient?

    I found below quest can be used but not sure about the price

    http://www.quest.com/intrust/pci-compliance.aspx

    Ryan
    //All our dreams can come true, if we have the courage to pursue them//

  • this really isn't the site to be asking this as PCI DSS is very broad and not specific to SQL.

    what tier and level are you aiming at as that depends on what you actually need to do

    have you got copies of the standards for what level you are wanting to get to

    from my experience with PCI DSS, all computers handling PAN information need to be behind a firewall, traffic limited to specific ports, user access needs to be tight.

    what I think you are asking for is the SysLog server where all logs are sent to so you have a centralised reporting environment to which there are many different products, I would say start with google.

Viewing 2 posts - 1 through 2 (of 2 total)

You must be logged in to reply to this topic. Login to reply