Bild zur Bewerbung des PCI Community Meetings, das einen Ausschnitt von Barcelona zeigt, das Datum und den Ort des Meetings sowie die Werbung "See me speak".

"DORA: How the Next Wave of Requirements Is Hitting the Payment Card Industry": usd Experts on Stage at the 2024 PCI SSC Europe Community Meeting

30. September 2024

Christopher Kristes, Head of Security Audits & PCI and member of the Executive Board at usd AG, and Dr. Christian Schwartz, Head of InfoSec in Finance at usd AG, will be on stage at the PCI SSC Europe Community Meeting on Wednesday, October 9, 2024, to give a talk on “DORA: How the Next Wave of Requirements Is Hitting the Payment Card Industry.”

From the perspectives of an information security consultant and an experienced QSA, they will look at the requirements of the Digital Operational Resilience Act (DORA) and possible overlaps with the PCI DSS, and derive tips for controls in companies.

After all, many companies are still in the middle of transitioning to PCI DSS v4.0.1 and implementing the future-dated requirements. At the same time, however, the financial sector is facing the next wave of security requirements in the form of DORA. DORA will apply from January 2025 and will have a significant impact on many players in the payment card industry – directly or indirectly.

We support many of our clients with audit and consulting services that go above and beyond the PCI DSS. In the course of these projects, we are experiencing ever-increasing pressure in the form of various regulatory requirements. That is why our proposed topic for this year's Community Meeting was clear: we want to help companies to face the flood of requirements well informed and with a practical plan.

Christopher Kristes

Those who know me are aware that I see regulation as an opportunity for #moresecurity. At the same time, however, I am well aware of the challenge for companies not to get lost in the sea of requirements of different standards and norms. My colleague Christopher and I have therefore combined our experience from PCI projects and information security projects in the financial sector. In our presentation, we answer the most important questions about the overlaps and synergies between DORA and PCI DSS and share our recommendations for preparing for DORA.

Dr. Christian Schwartz

In view of the important role of the Community Meeting as a central platform for international exchange in the payment security community, usd AG is again supporting the Europe Community Meeting as a sponsor this year.


About the PCI SSC Community Meeting

With the theme “Shaping the Future of Payment Security”, the Payment Card Industry Security Standards Council invites organizations to participate in the PCI SSC Community Meetings every year. With multi-day conferences in the U.S., Europe and Asia, the Council creates a forum for the global payment security community to exchange ideas and learn from each other. In 2024, the PCI SSC Community Meetings will take place in Boston, Barcelona and Hanoi. Participants can expect an exhibitor area, a variety of networking opportunities and a full program of keynotes and presentations, including updates from the Council, insights into current trends and best practices from industry experts.

Also interesting:

Security Advisories on PRTG Network Monitor

Security Advisories on PRTG Network Monitor

The pentest professionals at usd HeroLab examined the PRTG Network Monitor web application as part of web application pentests and identified several vulnerabilities. Two vulnerabilities relate to cross-site scripting (XSS), which allows attackers to inject JavaScript...

PCI Secure Software Standard v2.0: What You Should Know

PCI Secure Software Standard v2.0: What You Should Know

On 15 January 2026, the PCI Security Standards Council (PCI SSC) released version 2.0 of the PCI Secure Software Standard. This is the first comprehensive revision since the introduction of the standard. Insight into the Key Changes The new version streamlines the...

Part-IS and ISO 27001: How to Leverage Synergies for Your Compliance

Part-IS and ISO 27001: How to Leverage Synergies for Your Compliance

On 22 February 2026, the EU Regulation Part-IS for aviation organizations will come into force. They must manage information security risks in a way that best protects civil aviation safety. Many already rely on an ISMS according to ISO 27001 – but is that enough for...

Categories

Categories