Search code examples
securitylanguage-agnosticcoding-stylepci-dss

Software and Security - do you follow specific guidelines?


As part of a PCI-DSS audit we are looking into our improving our coding standards in the area of security, with a view to ensuring that all developers understand the importance of this area.

How do you approach this topic within your organisation?

As an aside we are writing public-facing web apps in .NET 3.5 that accept payment by credit/debit card.


Solution

  • Consider asking your QSA or ASV to provide some training to your developers.