side line

Retail POS Security

xAs a retailer, you are under great pressure to meet the Payment Card Industry (PCI) compliance mandates across your stores and networks, despite facing enormous budget and resource constraints.  Retailers cannot afford to deploy and manage disparate security products from multiple vendors across distributed store locations and point-of-sale (POS) systems. 

Solidcore combines whitelisting, file integrity monitoring and configuration assessment capabilities to give retailers a “single-solution” for securing retail POS systems and meeting the PCI DSS requirements. This single-solution benefits retailers by shortening the time, simplifying the effort, and lowering the cost to secure POS systems and verify PCI compliance to auditors. Solidcore is also “NSS Labs Approved” for host malware protection on a POS system.

Solidcore’s POS Check & Control POS security solution features include:
  • Dynamic Whitelisting — Solidcore dynamic whitelisting goes beyond the capabilities of traditional whitelisting to provide the most complete protection and PCI compliance coverage across retail store systems.  It ensures only pre-authorized applications and code run on POS systems, and unlike other whitelisting approaches, Solidcore accommodates secure authorized updates without having to rely on access to a centralized inventory.  These capabilities ensure retailers quickly and cost-effectively meet the PCI requirements for antivirus outlined in Section 5 of the PCI DSS, and the required alerting that is outlined in Section 12.

  • CFIM (Continuous File Integrity Monitoring) — Solidcore's continuous file integrity monitoring goes beyond "periodic" file integrity monitoring tools of the past that only detect changes through resource-intensive system scans.  Solidcore's "continuous" file integrity monitoring has minimal impact on store system resources and eliminates the need to perform repeat system scans.  This allows retailers to easily and more-effectively meet the file integrity monitoring and audit trail requirements outlined is Sections 10 and 11 of the PCI DSS.

  • Configuration Assessment — Retailers often rely on hardening standards published by the Center for Internet Security (CIS), a non-profit organization with a mission to help organizations reduce the risk of business disruptions resulting from inadequate security controls.  Solidcore provides security configuration assessment capabilities that allow for regular comparisons against the CIS benchmarks.  This capability enables retailers to quickly identify incorrectly configured server and application settings for quick repair. Compliance scores are calculated based on the configuration assessment, and a comparison of scores from different hosts is supported through dashboards.

> Get the POS Security White Paper

 

 

.