News

November 25, 2009 PRESS RELEASE
Digital Resources Group Joins Forces with Payment Processing, Inc. to Deliver PayPros PCI Compliance Program for Business
 
January 15, 2009 PRESS RELEASE
Digital Resources Group (DRG) Unveils Portfolio Of PCI Compliance Solutions In Latin America and Caribbean
 
December 6, 2008 PRESS RELEASE
AutoClerk, Inc. PMS Achieves Visa PABP Validation
 
September 29, 2008 PRESS RELEASE
WaiterPAD Handheld POS Achieves Visa PABP Compliance
 
April 17, 2008 PRESS RELEASE
Blue Bamboo Pocket POS® Receives Visa PABP Compliance Validation
 
Current Events

March 5, 2010
Green Room 133 Session ID #GRC-402
RSA Conference Speaking Engagement
Moscone Convention Center
San Francisco, CA
10:10 a.m.
Session ID# GRC-402 - Anatomy of a Forensic Audit: How Wireless Changes the Game
 
This session will explore what happens in an IT forensic audit after a security breach, with special emphasis on wireless security issues. The session will analyze the unique challenges wireless presents in conducting a forensic audit. The session will also detail the components of a forensic audit and provide tips on how organizations can properly prepare for and more importantly avoid post-breach audits.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 3.73 MB (.pdf)

A 20 minute video recording version will be available from RSA within 10 days
March 13, 2010 Speaking Engagement
Orange County Convention Center
Orlando, FL
9:30 a.m. - 10:30 a.m.
CAMEX - KISS: Keeping It Simple Securely
 
In this session, you will hear from Jim Cowing, Founder and CEO of Digital Resources Group, a prominent Internet security auditing firm and a recognized retail industry expert on credit security. From both Jim and a campus store POS system security expert, you will learn how to reduce scope to simplify security compliance through isolation and segmentation. You will learn from industry members with first-hand experience. Create and maintain a more secure system and environment for your software applications and data by avoiding unnecessary complexity. We will discuss the basic and effective security methods being used to comply with complex compliance requirements for protecting personal data, including the regulations being enforced by the payment card industry.
 
Jim Cowing
Managing Director, DRG
March 16, 2010 Speaking Engagement
Hyatt Regency Diamond Head Makai Ballroom
Waikiki, HI
8:30 a.m. - 4:30 p.m.
CompuTant POS Expo & Conference 2010
 
Credit Card Compliance (PADSS, PCI and CISP) – Is your business at risk? Learn how to protect yourself and your business. Presented by Jim Cowing, CEO, Digital Resources Group of California.
 
Jim Cowing
Managing Director, DRG

 
Past Events

Dec. 9, 2009 Webinar
PCI: Reducing the Burden of Compliance (A Joint Webinar with Digital Resources Group & Vindicia)
 
Over three years have passed since the introduction of the unified Payment Card Industry (PCI) Data Security Standard (DSS), and yet confusion over who must comply, by when and how is still rampant. In 2010 many merchants may suffer unnecessary consequences because they did not clearly understand the new PCI enforcement requirements, or focus on the right efforts to meet these changing requirements. Are you prepared to meet the challenges ahead?

Brett ThomasDuring this joint webinar, Digital Resources Group (DRG) and Vindicia will provide insight into how to prepare your company to meet the new standard, avoid the late rush as next year's deadline approaches and implement a program that will ensure your success in complying with a complex set of card industry requirements. In addition, we will provide an overview of how working with a PCI assessor who is familiar with Vindicia and its APIs can streamline the effort and reduce the costs associated with achieving and maintaining compliance.

DRG's Managing Director and CEO, James (Jim) Cowing, CISSP, QSA, a trusted advisor to industry leading financial institutions, merchants, and service providers, will provide an insightful look at changing PCI security requirements, share his insights on tips to avoid common PCI missteps and discuss security pitfalls that could lead to non-compliance.

Vindicia's Chief Technology Officer, Brett Thomas, will discuss the challenges merchants face on the road to compliance and will provide useful tips on how to streamline and effectively manage ongoing PCI compliance initiatives based on his first-hand experience maintaining PCI Service Provider Level 1 compliance at Vindicia.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 3.36 MB (.pdf)
Oct. 29 - Nov. 1, 2009

Speaking Engagement
The National Banks Association of the Dominican Republic: XI Annual Security Convention

Dreams Hotel - La Romana, Dominican Republic
 
The XI Annual Security Convention

The National Security Committee from the Association of National Banks of the Dominican Republic (ABA) presents the most current themes in regards to strategic planning, prevention and reactions on all aspects of security and information security. This ABA forum offers key security professionals with responsibilities in security, risk and management an opportunity to gather and help each other with state of the art approaches and proven methodologies for success to all types of organizations in the DR and Latin-America. James Cowing, CISSP, QSA, CEO and Managing Director of DRG, will be presenting the organization with a PCI overview entitled PCI Technology, Increasing Security to a New Level, a bilingual presentation provided in both English and Spanish.

Who should attend:
Chief Security Officers from all types of companies and financials institutions or executives on the areas of: Fraud Prevention, Financial Operations, Risk Management, Operative and Production Risk, Physical Security, Credit Cards Security, Security of Information and Technology, Electronic Banking, Virtual Banking, Internal and External Auditing, Financial Intelligence among other subjects of related interest.

Conference Program:

  • Civil Responsibility in Terms of Security
  • Elements of Security for Alternative Channels
  • Importance of the Leadership in Terms of the Risk Management and Administration
  • Corporate Security, How to Bring Just in Time Equilibrium
  • Workshop, Techniques on Prevention and Criminal Investigation
  • Delinquent Nature and Analysis of General Delinquent in Latin America
  • PCI Technology, Increasing Security to a New Level
La Asociación Nacional de Bancos de la República Dominicana

Invita a todos a ser parte de su foro en el que los profesionales clave con responsabilidades en seguridad, y gestión de riesgos y se reúnen para ayudarse unos a otros con el estado del arte enfocando las mejores practicas y metodologías comprobadas para el éxito en todo tipo de organizaciones a fin de transmitir el mensaje a la República Dominicana y de América Latina.
La XI Convención Anual de Seguridad, es la actividad donde el Comité de Seguridad Nacional de la Asociación Nacional de Bancos de la República Dominicana se enorgullece de presentar los temas de mayor actualidad en materia de planificación estratégica, la prevención y reacción en todos los aspectos de la seguridad y la seguridad de la información.

Orientado a directores generales de seguridad de todo tipo de empresas, y la intermediación de las instituciones financieras o ejecutivos en las áreas de: Prevención, Operaciones Financieras, Gestión de Riesgos Operativos y producción de riesgos, seguridad física, Tarjetas de Crédito de Seguridad, Seguridad de la Información y Tecnología, Banca Electrónica , Banca Virtual, internos y externos de auditoría, cantidad de Inteligencia Financiera de otros temas de interés relacionados.

Programa de la Conferencia:

  • Responsabilidad civil en materia de seguridad
  • Elementos de seguridad de canales alternos
  • Importancia del liderazgo en términos de la Gestión de Riesgo y Administración
  • Seguridad corporativa, cómo lograr el equilibrio justo a tiempo
  • Taller de Técnicas de Prevención y de Investigación Criminal
  • Análisis General de la Naturaleza Delictiva en América Latina
  • La Tecnología PCI, aumentando la seguridad a un nuevo nivel

Jim Cowing
Managing Director, DRG

Presentation Download:
Presentation in English - 2.36 MB (.pdf)
Presentación en español - 2.36 MB (.pdf)
Oct. 14-15, 2009

Speaking Engagement
Hawaii's 16th Annual Discover Security Conference 2009
Hale Koa Hotel
Honolulu, Hawaii
 
Is Your Payment Application Placing Your Company at Risk?

Is your Cash Register, PinPad, Web Shopping Cart, or Point of Sale system secure? Are these often neglected applications the weakest link in your network infrastructure?

In this discussion, Jim will discuss:

  • Common payment application exploits (including SQL injection, cross-site scripting and other OWASP top attacks)
  • What PA-DSS is, who must comply and by when
  • How PA-DSS can minimize payment application vulnerabilities
  • What security guidelines exist for unattended payment terminals (UPTs), harware security modules (HSMs) and PIN pads
  • What type of penalties and fines can non-compliant companies incur
  • How to set priorities and effectively manage PCI compliance programs

Jim Cowing
Managing Director, DRG

Presentation Download:
Presentation - 2.21 MB (.pdf)
Oct. 8, 2009

Webinar
Preparing for a Wireless Audit for PCI DSS Compliance

Whether or not wireless is deployed in your cardholder environment, every organization subject to PCI has a minimum set of wireless security requirements.

Join leading PCI Qualified Security Assessor (QSA) from Digital Resources Group and AirTight Networks for this live webinar to demystify the audit process and outline best practices for a strong wireless security policy.

Speakers:
Jim Cowing
Managing Director, DRG

Mike Baglietto
Director of Product Marketing, AirTight Networks

Webinar Registration:
Register to View

Jun. 8 - 12, 2009

Exhibition
PCS 2009 Annual User Group Meeting
Boulders Conference Center
Denison, Iowa
 
Speaking Enagement
PCS 2009 Annual User Group Meeting
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.18 MB (.pdf)

Jun. 23, 2009 Speaking Engagement
Hawaii State Society of CPA (HSCPA) Meeting & PCI Presentation

 
It has been over three years since the introduction of the Payment Card Industry (PCI) Data Security Standard (DSS). Yet card data breaches continue to occur and merchants are still suffering unnecessary consequences because they did not understand the requirements of the PCI-DSS or focus on the right efforts to meet the requirements. If you have clients who accept credit or debit cards for payments, this presentation will give you the facts you need to help protect your clients and assist them to understand PCI-DSS requirements and risks due to non-compliance. In this interactive session, Digital Resources Group (DRG) Managing Director and CEO, James (Jim) Cowing, a renowned speaker and trusted advisor to industry leading financial institutions, merchants, and service providers, will discuss the importance of PCI, penalties and fines for non-compliance, and how to get started with a successful PCI compliance program.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 2.16 MB (.pdf)
Invitation - 0.64 MB (.pdf)

May 19, 2009 Speaking Engagement
KeyBank Acquiring Industry Roundtable
Cleveland, Ohio
 
DRG's Vice President of Service Delivery will be a participant in a roundtable of Industry experts presenting to Key Banks Merchant Services and Security teams. DRG’s informational presentation covered topics such as types and qualities of security assessors, an overview of the PCI DSS and dealing with a compromise.
 
Dave Fosdick
Vice President of Service Delivery, DRG
 
Presentation Download:
Presentation - 1.0 MB (.pdf)
Apr. 28, 2009

Webinar
How Secure Is Your Data?
Sponsored by Brocade
 
DRG's Managing Partner Jim Cowing is a featured panelist in this webinar on data security and requirements for the implementation and enforcement of reliable operational practices, including an auditable, provable way to collect security metrics.
 
Jim Cowing
Managing Director, DRG
 
Webinar Recording:
Register to View

Mar. 12, 2009

Speaking Engagement
AITP (Association of Information Technology Professionals)
PCI 2009 what you really need to know
 
Jim Cowing, CISSP, QSA, PA-QSA and Managing Director of Digital Resources Group (DRG) will give you what you need to know to comply with the pervasive IT data and network security requirements. If you are new to PCI, Jim will be giving an overview on what every IT professional needs to know about complying with the data security requirements. If you are an experienced IT professional knee deep in compliancy bring your toughest questions to this session.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.0 MB (.pdf)

Feb. 25-27, 2009 Speaking Engagement
PCI Symposium - ISACA Silicon Valley Chapter
San Jose, CA
 
DRG's Managing Partner Jim Cowing, CISSP, QSA, will be the Moderator for a PCI Panel of Experts including Elvin Hay, Arriba, Larry Pingree, McAfee, and Deloitte & Touche. The PCI Panel will address the latest issues with recent breach announcements, what technologies are working to assist Merchants and what areas are giving organizations the most difficulty in becoming Compliant.
 
Jim Cowing
Managing Director, DRG
Dec. 1-2, 2008 Speaking Engagement
PCI Symposium - ISACA LA Chapter
Los Angeles, PriceWaterhouseCoopers Offices
 
DRG's Managing Partner Jim Cowing will be a featured instructor in this two day ISACA educational conference addressing the PCI Data Security Standard v1.2 and the latest technical discussions with practitioners and stakeholders.
 
Jim Cowing
Managing Director, DRG
Nov. 20, 2008 Speaking Engagement
Monthly Meeting - ISACA Silicon Valley Chapter
Santa Clara, CA
 
DRG's Managing Partner Jim Cowing will be a featured panelist in this meeting discussing PCI 1.2’s changes and the challenges implementing these in today’s economic environment.
 
Jim Cowing
Managing Director, DRG
Nov. 18, 2008 Speaking Engagement
BrightTALK Summit - IT Governance
Webcast - Los Angeles, CA
 
DRG's Managing Partner Jim Cowing will be a speaker discussing leveraging PCI to build your enterprise GRC program.
 
Jim Cowing
Managing Director, DRG
 
Viewable Webcast:
Webcast
Nov. 5, 2008 Speaking Engagement
Utilites Industry and PCI DSS Professional Computer Systems, PPI and DRG
 
This presentation will educate attendees from the Utilities indusry with their PCI DSS compliance requirements, the services available from DRG, and our Merchant PCI Compliance Program (MCP).
 
Pat Smart
Senior Vice President, DRG
 
Presentation Download:
Presentation - 1.2 MB (.pdf)
Oct. 25, 2008 Speaking Engagement
Tecdo 2008
Santo Domingo, Dominican Republic
 
Payment Card Industry Compliance and it's impact on the Dominican Republic
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 2.13 MB (.pdf)
Oct. 22, 2008 Speaking Engagement
15th Annual Discover Security Conference
Honolulu, Hawaii
 
New PCI Standards for V1.2 and what to expect in 2009
 
The implications of PCI are all around us and there are many new things to address with the changes released earlier this week. In this discussion, Jim will present what's new with PCI DSS version 1.2 and provide his insights and views on the major implications of the changes.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 457 KB (.pdf)
Oct. 19 - 20, 2008 Industry Event
Best Western International Annual Conference
Honolulu, Hawaii
 
DRG will be attending the major hotel chain Best Western International annual North American convention along with our customer AutoClerk Inc's Annual User Group Meeting. The events are expected to attract over 2,900 participants from around the world, including executives, managers and hotel owners fromÊthe hospitality industry. DRG will talk about the importance of PCI data security to hoteliers and attendees.
Sept. 26, 2008 Webinar
PCI 1.2 - Advice from QSA Digital Resources Group
 
Jim will discuss what's new with the soon to be publicly released PCI DSS version 1.2 and provide his insights and views on the major implications of the changes.
 
Jim Cowing
Managing Director, DRG
 
Audio Presentation:
Presentation - 45 MB (.wmv)
PDF Presentation:
Presentation - 1.55 MB (.pdf)
Sept. 23 - 25, 2008 PCI Industry Key Event
PCI Security Standards Council (SSC) Community Meetings 2008
Omni Orlando Resort at Champions Gate - Orlando, FL
 
The PCI Security Standards Council's annual community meetings provide an exclusive opportunity for Qualified Security Assessors (QSAs), Approved Scanning Vendors (ASVs), PIN Entry Device (PED) laboratories and Payment Application QSAs (PA QSAs) to learn firsthand about the upcoming release of version 1.2 of the Data Security Standard, as well as gain insight into other Council programs and standards. Each session will provide extensive opportunities for questions and answers with representatives from each of the payment brands.
 
Jim Cowing
Managing Director, DRG
Sept. 11, 2008 Speaking Engagement
PCI Panel Discussion
SecureWorld - Santa Clara Convention Center
 
Jim Cowing
Managing Director, DRG
July 22, 2008 Speaking Engagement
Privacy and Security Law Institute (Ninth Annual)
University of Chicago (Gleacher Center) - Chicago, IL
 
"Implementing Security Standards: What Businesses Need to Know About the Payment Card Industry (PCI) Security Standard"
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 813 KB (.pdf)
June 3, 2008 Speaking Engagement
Privacy and Security Law Institute (Ninth Annual)
San Francisco, CA
 
"Implementing Security Standards: What Businesses Need to Know About the Payment Card Industry (PCI) Security Standard"
 
Jim Cowing
Managing Director, DRG
 
PowerPoint Presentation:
Presentation - 926 KB (.zip)
Whitepaper Presentation:
Presentation - 234 KB (.pdf)
May 17-18, 2008 Speaking Engagement
Layer One
Pasadena, CA
 
"PCI Overview"
 
David Zendzian
Consultant, DRG
May 1, 2008 Webinar
PCI Compliance: Debunking the Myths
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.7 MB (.pdf)
Apr. 23, 2008 Special Event
Cisco Executive Briefing
San Jose, CA
 
"PCI Compliance: Debunking the Myths"
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.5 MB (.pdf)
Mar. 25, 2008 Speaking Engagement
ISACA e-Symposium
 
"PCI & IT Governance"
 
This presentation will explore why companies are elevating PCI compliance to the highest levels of governance and suggest ways to successfully blend PCI compliance with other audit and regulatory requirements. We will also examine the advantages that PCI DSS adds to the ISO framework.
 
Jim Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.2 MB (.pdf)
Jan. 31, 2008 Speaking Engagement
SNIA Storage Security Industry Forum
Santa Clara, CA
 
"Security and Its Impact on Worldwide Payment Card Industry"
 
Jared Hufferd
Vice President of Sales, DRG
 
Presentation Download:
Presentation - 5.06 MB (.pdf)
Jan. 24, 2008 Speaking Engagement
OWASP Bay Area Meet Up
San Francisco, CA
 
"Application Security and PCI Compliance"
 
James Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.27 MB (.pdf)
Nov. 29, 2007 Webinar
Merchant Risk Council: Platinum Members
 
"PCI Compliance Update"
 
James Cowing
Managing Director, DRG
Oct. 17-19, 2007 Speaking Engagement
14th Annual ISSA-Hawaii Chapter's Conference
Honolulu, HI
 
"PCI - Overcoming Obstacles and Avoiding Fines"
 
James Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 2.74 MB (.pdf)
Sept. 11, 2007 Speaking Engagement
ACI Customer Exchange (ACE) Annual Meeting
 
"Protecting Your Brand"
 
James Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 1.67 MB (.pdf)
May 22, 2007 Speaking Engagement
2007 Secure360 Conference
 
"Compensating Controls - How to Identify, Document and Assess Risk in Areas where Data Security Compliance is Critical"
 
James Cowing
Managing Director, DRG
 
Presentation Download:
Presentation - 562 KB (.pdf)
May 16, 2007 Webcast
DRG and Protegrity present:
 
"Top Priority PCI DSS Actions: How to Avoid Fines and Gain from VISA's CAP Incentives"
 
Webcast Overview:
This Webcast will help you understand the impact of Visa's PCI Compliance Acceleration Program on your organization and address your questions about PCI compliance. With an up-to-date understanding of Visa's CAP and PCI DSS top priority actions, you will be able to implement a realistic PCI compliance plan, avoid non-compliance fines and capitalize on lower interchange rates.
 
Presentation Download:
PowerPoint Presentation - 664 KB (.zip)