Does an insecure website compromise the security of a payment system in an iframe?

added by Paul Wheeler
11/18/2014 2:13:53 PM

PCI is a necessary thing and it’s something you want ticks in boxes on, no doubt. But don’t for one minute assume that those ticks make your overall service “secure” and certainly don’t assume “fully secure”. Customers care about the overall security position, not the semantics of compliance docs.