Educause Security Discussion mailing list archives

Re: Administration of PCD DSS Program


From: "Gombosky,Brenda B" <brenda.gombosky () LOUISVILLE EDU>
Date: Thu, 14 Mar 2013 14:06:50 +0000

Same for us, the Treasury office is responsible and hired a position just for this - but there is a great deal of help 
from Enterprise Security and the ISO office.

Brenda B. Gombosky,
CISSP, CISM, CGEIT, CRISC, CHSP, C|CISO
Director, IT, Enterprise Security
University of Louisville
Information Technology
brenda.gombosky () louisville edu<mailto:brenda.gombosky () louisville edu>
(502)852-5037 (Work)
(502)417-8484 (Cell)

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Dan 
Sarazen
Sent: Tuesday, March 12, 2013 8:59 PM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: Re: [SECURITY] Administration of PCD DSS Program


Same here. It's based on the banking relationship, so the Treasurer's office, but the ISO does the "hand-holding" for 
the technical controls an risk assessment.

Good luck,

Dan
On Mar 12, 2013 7:49 PM, "Harry Hoffman" <hhoffman () ip-solutions net<mailto:hhoffman () ip-solutions net>> wrote:
Treasure's office, both this job and the last.

Cheers,
Harry

On 03/12/2013 06:11 PM, Carlos Lobato wrote:
Hello Colleagues,



At your University, what department or function is responsible for the overall administration of the PCI DSS program 
i.e. administrator of policy(PCI requirement 12), etc.?



I would really appreciate your responses.



Carlos



Carlos S. Lobato, CISA, CIA

IT Compliance Officer



New Mexico State University

Information and Communication Technologies

MSC 3AT PO Box 30001

Las Cruces, NM  88003



Phone (575) 646-5902<tel:%28575%29%20646-5902>

Fax (575) 646-5278<tel:%28575%29%20646-5278>


Current thread: