ABSTRACT

This chapter discusses basic security basics and concepts, including cybersecurity, payment card industry (PCI), information security, compensating controls, and risk management. Cybersecurity refers to the practice of information security controls applied to communications and control systems. The term “cybersecurity” is a portmanteau, a linguistic blending of words and sounds to create a new word with a new meaning. The origin of the word “cyber” is attributed to the 1940s study of cybernetics, the control and communications in animals and machines. Cryptography can provide confidentiality, integrity, and authentication. The service code is a three-digit value encoded in the magnetic track data that defines how the card can be used. Information security controls protect data, data users, or data systems. In general, information security (IS) protects information technology (IT) during the storage, transmission, or processing of data. Data confidentiality is an information security control to prevent unapproved entities from accessing information.