London UK, 9 July, 2014—Bit9® + Carbon Black, the leader in endpoint threat prevention, detection and response, today announced the results of a cyber security study which show that only 12% of IT organisations in the UK are completely confident that their endpoints are compliant with PCI DSS V.3.0. This points to poor cyber-security safeguards for those systems that process credit card payments and handle customers’ personally identifiable information (PII).
While 94% of respondents said they have heard of PCI compliance, and 66% acknowledged that PCI applies to their organisations, only 21% admitted they feel up-to-speed regarding PCI compliance requirements.
Almost half (46%) of respondents working in organisations with POS systemsndicated that they cannot adequately monitor and control access to critical data on their endpoints (i.e., credit card data and personally identifiable information)—suggesting that endpoint systems and payment card data are largely unprotected and vulnerable to being breached.
Additionally, only one-fifth (20%) of those with POS systems could definitely say that their systems have not been targeted by cyber attacks, and almost half (47%) admitted that they have no way of being certain. Only 52% of POS users surveyed are confident, or very confident, that their current security system is able to stop advanced threats or targeted attacks against their POS systems.
“These results highlight a major lack of confidence and knowledge around PCI 3.0 with an urgent need for organisations to improve protection of endpoint systems and the credit card data they house, against cyber threats”, commented Christopher Strand, senior director, compliance for Bit9 + Carbon Black.
The survey, conducted by Vanson Bourne, covered 250 UK IT decision makers, working in organisations of at least 250 employees, across a spread of industries.
Other findings include:
Responding to the findings, Strand added: “In an industry fraught with identity theft and cyber crime, it’s essential that companies protect their customers’ credit card data and personal information. This can only be achieved by putting in place a positive security model that will monitor and control all servers, endpoints and critical data. Whilst the PCI regulations may seem intimidating, the results of a breach far outweigh the effort involved in ensuring your organisation is compliant.”
About Vanson Bourne
Vanson Bourne is an independent specialist in market research for the technology sector. Its reputation for robust and credible research-based analysis, is founded upon rigorous research principles and an ability to seek the opinions of senior decision makers across technical and business functions, in all business sectors and all major markets.
About Bit9 + Carbon Black
Bit9 + Carbon Black offers the most complete solution against the advanced threats that target your organization’s endpoints and servers. This makes it easier for you to see—and immediately stop—those threats.
Carbon Black’s lightweight endpoint sensor, which can be rapidly deployed with no configuration to enable detection and response in seconds, combined with Bit9’s industry-leading prevention technology, delivers four key benefits:
Thousands of organizations worldwide—from 25 Fortune 100 companies to small businesses—use Bit9 + Carbon Black to increase security, reduce operational costs and improve compliance. Leading managed security service providers (MSSP) and incident response (IR) companies have made Bit9 + Carbon Black a core component of their detection and response services. With Bit9 + Carbon Black, you can arm your endpoints against advanced threats. For more information, visit www.bit9.com.
Bit9 is a registered trademark of Bit9, Inc. All other company or product names may be the trademarks of their respective owners.