1st Post
So, after reading and commenting on various Information Security and PCI DSS related posts and blogs over the past few months I have decided to start blogging on the subject.
This is the first post and therefore not that interesting.
My intention is to post my thoughts about my current situation which is setting up an Information Security Management environment and directing a PCI DSS compliance project from scratch. All this is being done within an information security ignorant and risk accepting environment of a PCI DSS Level 2 merchant. So, to say it is interesting is a bit of an understatement.
So that's it for the first post, a sort of declaration of interest type thing. More to come, as and when I have something far more interesting to say.


