Mixed Mode and PCI DSS 2.0 standard
One way to get the spidey sense of a savvy security professional tingling is to mention the use of “Mixed Mode” virtualization in some kind of IT initiative related to compliance. Companies are trying to figure out how to build security into their virtualized environments in a way that will cover themselves from both a security and compliance perspective, and the industry in general is quite divided over this issue. Mixed mode, in the context of this post, is a term used to describe a virtual infrastructure that hosts both guests with PCI DSS data on them, and those without. Before we delve into the issues associated with the security concerns here, let’s levelset. PCI DSS, in it’s purest sense, is ...
Continue Reading