Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    ;
    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > The importance of the PCI Forensic Investigator Certification
    Technology

    The importance of the PCI Forensic Investigator Certification

    The importance of the PCI Forensic Investigator Certification

    Published by Jessica Weisman-Pitts

    Posted on December 5, 2022

    Featured image for article about Technology

    In a recent interview, Kevin Pierce, COO, of VikingCloud discussed the importance of the PCI Forensic Investigator Certification and what it means for the cybersecurity industry.

    • Who are VikingCloud?

    As one of the largest providers of compliance and security solutions, and with many of the top global acquirers and payment service providers as clients, VikingCloud is transforming the way organisations approach cyber defence.

    We are focused on delivering integrated compliance and security solutions and work with many of the world’s leading brands. Our customer-centric SaaS solutions enable cutting-edge ways to secure network infrastructures, maintain compliance, and provide assurance testing and assessments.

    Our platforms, currently used by more than five million businesses, provide real-time intelligence access to an organisation’s cyber risk landscape and enables the VikingCloud team to partner with organisations of all sizes to ensure proactive management of ever-changing cyber threats and business risks.

    What’s more, we are also the world’s largest Qualified Security Assessor (QSA) company, and we were recently certified as a PCI Forensic Investigator (PFI) Company for North America by the Payment Card Industry Security Standards Council (PCI SSC)

    • What is the PCI Forensic Investigator Certification?

    The PCI SSC leads a global, cross-industry effort to increase payment security by providing industry-driven, flexible, and effective data security standards and programs that help businesses detect, mitigate, and prevent cyberattacks and breaches.

    PCI Forensic Investigators are highly trained independent incident response experts certified by the PCI SSC and approved by the card brands to perform forensics investigations on security incidents that impact Cardholder Data Environments (CDEs).

    Certified businesses can perform investigations within the financial industry using proven investigative methodologies and tools.

    Thanks to our recent PFI certification, VikingCloud is now certified by the PCI SSC to perform investigations for any breach size, including those larger than 30,000 breached records.

    VikingCloud is also authorised to review the outcome of a customer data breach investigation.

    Our investigators work to determine the existence of a payment cardholder data breach, the facts and circumstances of when and how it may have occurred and ensure there is no longer an active breach.

    • How important is it for businesses to have the PCI Forensic Investigator Certification?

    It’s vital any PFI can be trusted to get to the root of a breach, stop it, and provide valuable insights that will prevent it happening again.

    As a leading provider of cybersecurity solutions for a broad range of organisations, we want to ensure we offer our customers every possible solution to enhance their cybersecurity protocols, and certification gives our customers peace of mind that our process and methodology around forensic investigations go above and beyond the minimal requirements.

    • What does this certification mean for those in the Global Banking and Finance industry?

    The PCI DSS (Payment Card Industry – Data Security Standard) Certification is an industry standard for securing credit card use. Therefore, it’s essential for the financial sector because it involves and aligns all those involved in the transit of banking data. In other words, any company that acts as an intermediary between consumers and their purchases.

    PFIs help determine the occurrence of a cardholder data compromise, and when and how it may have occurred. Investigators must work for a Qualified Security Assessor company that provides a dedicated forensic investigation practice. They perform investigations within the financial industry using proven investigative methodologies and tools. They also provide relationships with law enforcement to support stakeholders with any resulting criminal investigations.

    • And what does it mean for businesses that deal with consumer transactions?

    A PCI Forensic Investigation can stop a breach in its tracks to prevent further financial damage while getting the required investigation completed. And the scale of financial damage cannot be underestimated.

    Global data breaches and the costs of attacks for companies of all sizes are on the rise.

    In 2021, large organizations of 10,000-25,000 employees hit by a data breach paid an average cost of $5.52 million per attack. Smaller businesses with less than 500 employees have also seen an increase from $2.35 million per attack in 2020 to $2.98 million in 2021, a 26.8% increase.

    Investigations not only uncover the information required to prevent future breaches, they also demonstrate the transparency essential to maintaining a business’ reputation.

    • As businesses become more and more digital, what can we expect in terms of security and payments when it comes to e-tailing and protecting customers?

    Between 2020 and 2021, ecommerce fraud rose 18% from $17.5 billion to $20 billion, and fraudsters’ methods will continue to grow in sophistication and diversity in the years ahead.

    Tokenization – replacing sensitive data with non-sensitive data with tokens that act as a placeholder for the original data – will become an increasingly invaluable tool for the Payment Card Industry, as it works with all types of data, uses fewer resources, and has a lower chance of failure compared to other encryption methods. Tokenization is also compatible with legacy systems, unlocking new use cases all the time.

    Digital identity verification will also become more widespread and trusted. Two Factor-Authentication (2FA) introduces a second level of verification and is one of the most effective ways to protect against password breaches. Although adoption rates are low at the moment, 2FA has already become more accepted over the last two years, with 79% of people having used it in 2021 compared to 53% in 2019.

    Furthermore, an increasing number of platforms are switching to 3D Secure 2.0, a new and upgraded version of the protocol that is not just more user-friendly but safer thanks to biometric authentication and a host of other security mechanisms.

    • What are the most critical obstacles facing the cybersecurity world at the moment?

    The stark truth is that hackers are getting better at what they do, which means e-tailers in particular need an expert partner to stay updated with security issues and provide around-the-clock protection.

    Many businesses pivoted during the pandemic, to replacing face-to-face transactions with online trading, a practice that continues post-pandemic and presents a particular security challenge.

    Hackers usually target e-commerce store admins, users and employees using a range of malicious techniques, such as phishing, spamming and malware.

    • Do you feel cybersecurity regulations need changing/updating to reflect the rise of digital working?

    Digital technologies are key to future business prosperity, but we must also make sure they are developed responsibly to protect businesses and their customers.

    Smart devices are already under renewed scrutiny. In the UK for example, makers of smart devices such as phones, speaker, and doorbells now need to tell customers upfront how long a product will be guaranteed to receive vital security updates. Such regulation is important as just one vulnerable device can put a user’s network at risk.

    More cybersecurity regulations will need to be reviewed or introduced as more businesses and consumers inhabit the metaverse. Consumers are arguably most at risk because, unlike in the real world, which has consumer-empowering data privacy acts, like GDPR and CCPA, there is currently no equivalent in the metaverse.

    About Kevin Pierce:

    As VikingCloud’s Chief Operating Officer, Kevin leads global product development, service delivery, QSA consulting, and managed security testing. Viking Cloud is a 900+ employee, global cybersecurity organization that is transforming how customers approach cyber-defense through managed security, testing, and assessment services. With almost 30 years in the technology space, Kevin has designed and built highly scalable cloud systems for secure data exchange, supply chain optimization, and cybersecurity in multiple industries. He also co-founded two technology companies that each grew to hundred-million-dollar enterprises prior to his exit. Kevin’s current focus is on leveraging machine learning and artificial intelligence to deliver next-generation cybersecurity solutions across industry verticals. Kevin holds a master’s degree in Business Administration, studied in various Executive Programs at Oxford University and Harvard University, and is a Six Sigma Blackbelt.

    Related Posts
    Financial services: a human-centric approach to managing risk
    Financial services: a human-centric approach to managing risk
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    How Integral’s CTO Chidambaram Bhat is helping to solve  transfer pricing problems through cutting edge AI.
    How Integral’s CTO Chidambaram Bhat is helping to solve transfer pricing problems through cutting edge AI.
    Why Physical Infrastructure Still Matters in a Digital Economy
    Why Physical Infrastructure Still Matters in a Digital Economy

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Previous Technology PostGet wise to the growing threat of fintech job candidate fraud in 2023
    Next Technology PostWhat’s Stopping Businesses from Completing the Digital Transformation of Finance?

    More from Technology

    Explore more articles in the Technology category

    Why Compliance Has Become an Engineering Problem

    Why Compliance Has Become an Engineering Problem

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    How Nclude.ai   turned broken portals into completed applications

    How Nclude.ai turned broken portals into completed applications

    The Silent Shift: Rethinking Services for a Digital World?

    The Silent Shift: Rethinking Services for a Digital World?

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    Why AI's Promise of Efficiency May Break Tomorrow's Workforce

    Why AI's Promise of Efficiency May Break Tomorrow's Workforce

    View All Technology Posts