PCI DSS Training Resources

The UISO is committed to supporting the efforts of the Office of the Treasurer in the pursuit for and maintenance of PCI compliance.

2010 PCI DSS Workshop

Ruth Harpool (Office of the Treasurer) and Chad Marcum (UISO) co-presented a workshop about PCI DSS in the fall of 2010. It is broken apart into three sessions:

Workshop files

Supplemental resources:

Note: Sessions were recorded using Adobe Connect (formerly Breeze).

Other PCI DSS Resources

Security & Policy Blog Posts

  • A local, unprivileged user can use a Linux kernel flaw to gain escalated privileges, without authentication, on a system running a Linux kernel. Technical details, as well as exploit code, have been publically released.
  • S/MIME certificates are now available to all IU personnel at no cost.
  • IU VP for IT and Chief Information Officer, Brad Wheeler, spoke at a town hall meeting on March 8th on the subject of, “Mitigating Cyber Risks,” including the current risk environment, and the development of IT-28.
  • As Jacqueline Simmons explains, IU operates in a complex legal, regulatory, & contractual environment, with responsibilities to comply with applicable legal, regulatory, & contractual requirements regarding safeguards over information and information assets. Doing so protects the university's reputation & minimizes the risk of negative financial consequences associated with noncompliance.

    Recent Security Bulletins

  • This bulletin details four recently published, critical rated, vulnerabillies in Adobe ColdFusion and ways to mitigate the risk of them being exploited including the hotfix for supported versions.