Report from the PCI SSC North American Community Meeting

October 08, 2015, Joseph Tinucci, Senior Director, Managed Services

The Payment Card Industry Security Standards Council (PCI DSS) held their 2015 North American Community Meeting this year in Vancouver, BC, from September  29 – October 1.  Coalfire was well represented at the meeting, with Dan Fritsche, Managing Director, Application Security, making two presentations at the event (Point-to-Point Encryption and Securing Virtual Payments).  Since I was also there, and I am a guest blogger for the Treasury Institute for Higher Education’s PCI DSS blog, I posted about the PCI DSS trends that I observed at the meeting.
In summary, the main themes that I heard were:

  • Risk, Risk, Risk – just about every speaker approached their topic from the perspective of managing and/or reducing risk.  This is an ongoing theme that will carry forward into future years.
  • Collaboration – working together with other organizations is the key to keeping up with the bad guys.
  • Incident Response – there was a lot of discussion of this topic, and I think that we will see more requirements around IR in coming versions of the DSS.
  • Segmentation – a fundamental scope-reduction technique that is receiving renewed emphasis.
  • Being Compliant Does NOT Equal Being Secure – this theme echoed over and over again throughout the meeting.
  • P2PE – this part of the industry finally appears to be developing useful products and solutions.

If you would like to read more, the full post can be found on the Institute’s blog at
Joseph D. Tinucci recently moved from the University of Colorado Treasury to Coalfire Systems. At CU Joe managed the PCI DSS compliance program for over 175 merchants across four campuses.  Now he is helping clients manage their compliance programs from the other side of the desk; he notes that it is a refreshing change of pace and duties to be on the "illuminating side" (as opposed to the “Dark Side”).

Joseph Tinucci


Joseph Tinucci — Senior Director, Managed Services

Recent Posts

Post Topics