Ensuring secure credit card transactions and PCI DSS compliance is a major challenge for any enterprise managing customer payments and data. Orion helped a major media client develop a solution through detailed security assessments and secure access implementation, enhancing overall payment security.
The client is a prominent global media and entertainment conglomerate with a rich history spanning several decades. They operate a diverse range of businesses across multiple platforms, including television networks, film production and distribution, theme parks, and digital media.
Challenge
One of the critical requirements for the client is the secure processing of credit card transactions on their websites and in their amusement parks. In order to meet the stringent standards, set by the Payment Card Industry Data Security Standard (PCI DSS), organizations are mandated to undergo annual assessments. These assessments include a comprehensive Penetration Test that covers the internal network, external network, and web applications.
Solution
To fulfill their security obligations, the client engaged Orion to conduct yearly Penetration Testing, Segmentation Testing, and Web Application Assessments across their various operational divisions. As part of these testing procedures, it was necessary to establish secure internal access. Orion’s highly skilled security engineers collaborated directly with the client’s network engineers to implement secure internal access to Kali Linux-based test virtual machines.
Impact
By partnering with the Orion team, the client successfully conducts their annual tests with utmost efficiency, ensuring compliance with the PCI DSS. This collaboration ensures a safe and secure payments environment for the client’s customers, fostering trust and confidence in their media and entertainment offerings.