« Sanity DOES Exist! | Main | PCI Validated, But Not Secure: Real-Life Stories of a PCI QSA »

NEWS FLASH: RBS WorldPay and Heartland Dropped from CISP Compliant List

You've probably seen the story by now... it's out there. Here is one link, and you can likely find MANY others.

Here's my question. If they are taking them off the list versus leaving them under review, are they saying that they never should have been certified in the first place? And if they are saying that, doesn't this mean they are declaring shenanigans on the review by the QSA of record? Do I sense a trickle down effect here?

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)