Blog

search
Search...
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
FAQs for ISOs (Independent Sales Organizations)
PCI Partner

Understanding the role of an ISO in the payment process can be tricky. This blog outlines the most frequently asked questions surrounding ISOs and their pros and cons.

External Pen Testing Basics
Penetration Testing

This blog post is for anybody who's interested in external pen testing basics, the types of things found when pen testing, and the process that you go through when completing them.

Improving Your Small Ecommerce Business Network Security to Protect from E-Skimming
Ecommerce Security

This blog explores the main ideas from the webinar “How to Protect Your Ecommerce Website Against Eskimming,” and the latest threats attacking the e-commerce space.

Seven Tips to Avoid PCI Audit Fatigue
PCI Audit

When it comes to your business, choosing the right, knowledgeable partner can make all the difference in preventing audit fatigue.

Is my PCI compliance management hurting my merchant portfolio? How SecurityMetrics makes switching your Acquirer PCI program easy
PCI Partner

There’s no need to put up with a PCI program that isn’t meeting your expectations.

How to Protect Your Ecommerce Website Against Skimming
Data Security

This blog is a summary and compendium to the SecurityMetrics’ Webinar “How to Protect Your Ecommerce Website Against Skimming”, hosted by Matt Heffelfinger and Aaron Willis.

Your Guide To Understanding Web Application Penetration Testing
Penetration Testing

Read this blog to understand the methodology, scope, and best practices for conducting effective web application penetration testing.

CSF HITRUST Breakdown: FAQs & Guidance
HITRUST

In this blog, you’ll learn about the fundamental aspects of HITRUST Certification, as well as receive answers to frequently asked questions about CSF HITRUST.

How Much Does PCI Compliance Cost?
PCI

Here are a few variables that will affect the overall cost of PCI compliance.

How Infosend Became PCI DSS Compliant with SecurityMetrics
Data Security

Since 2014, Infosend has partnered with SecurityMetrics to meet their PCI compliance needs, ensuring their processes remain secure and their clients’ data is protected.

Top Cybersecurity Data Insights: a Breakdown of Our 2024 PCI DSS Guide
PCI Trends

For 2024, our guide remains one of the best resources to use as you achieve PCI DSS compliance for your organization. It covers each requirement with clarity and thoroughness.

Top Cybersecurity Conferences & Events to Attend in 2025 - 2026
PCI

Check out some of the top cybersecurity conferences and events to attend in 2025 - 2026

Vita Companies HITRUST Certification Journey using SecurityMetrics and Privaxi
HITRUST

About four years ago, Vita Companies decided to pursue HITRUST certification to differentiate themselves in the market.

Updates to Multi-Factor Authentication Requirements in PCI v4.0.1
PCI Trends

Learn how to comply with PCI DSS 4.0 Requirement 8, focusing on multi-factor authentication (MFA) and password management.

6 Common Problems Merchants Face in PCI Compliance Programs
PCI Partner

Merchants that rely on a PCI compliance program to stay compliant and protect their business often find themselves dissatisfied or frustrated by all kinds of problems including lack of support, expensive contracts, and many more.

Why You Need to Know About PCI Requirements 6.4.3 & 11.6.1: Eskimming Findings from SecurityMetrics Investigations
Ecommerce Security

SecurityMetrics has seen a dramatic increase in attacks specifically on ecommerce sites using iFrames to host a payment page from a 3rd party service provider.

PCI Compliance & Cybersecurity: Anedot's Journey with SecurityMetrics
PCI Audit

In this case study, Anedot works with SecurityMetrics to better secure their cybersecurity infrastructure and to reach PCI DSS 4.0 compliance.

Internal Penetration Testing 101: Where to Start
Penetration Testing

While there are various types of penetration tests like external, web application, or mobile, this blog will focus on internal tests and why they matter.

Understanding the New PCI SAQ Type: SAQ SPoC
Data Security

This article covers the Self-Assessment Questionnaire (SAQ) for Software-based PIN entry.

Updates to PCI DSS v4.0.1
PCI Trends

The PCI Security Standards Council (PCI SSC) recently published a limited revision to the PCI DSS in the form of v4.0.1.

External Vulnerability Scanning FAQ: What is External Vulnerability Scanning?

External vulnerability scanning is a security practice that involves scanning and assessing the external-facing network infrastructure, systems, and applications of an organization for potential vulnerabilities.

Why Partner with SecurityMetrics for Data Security and Compliance?
Compliance

We want to remove you from being the low-hanging fruit to hackers by improving your overall security posture. Our mission statement is to “close data security and compliance gaps to avoid a data breach.”

10 Misconceptions about Endpoint Security and Why You Need It
Data Security

Endpoint security generally refers to cybersecurity tools or services that can help alert you on devices that may be compromised.

Artificial Intelligence and Cybersecurity: What Businesses Don't Know
Data Security

AI or artificial intelligence can be used safely by businesses that are concerned about their cybersecurity.