Agenda
CONFERENCE AGENDA
Thursday 27th October 2011
8.30 Registration & Coffee
9.00 Opening Remarks from the Chair
Peter Cooper, Group Information Risk Manager, Woolworths Limited
9.10 MasterCard Site Data Protection Program and Payment Card Industry Data Security Standard
- Account Data Compromise Trends
- MasterCard's Role
- PCI Security Standards Council
- The Site Data Protection Program
- PCI 360 Education Program
Graeme Lunan, MasterCard Director Payment Systems Integrity Group, Australasia
9.50 Visa's Global Authentication Strategy, PCI DSS and TIP
Ian McKindley will provide an insight into Visa's Global Authentication Strategy and the impact on fraud in markets which have progressed towards dynamic data in both the physical and online environment. Ian will also talk about Visa's new Technology Innovation Program (TIP), and how it is designed to advance security practices that will help secure cardholder data, and what this means for merchant PCI DSS compliance.
Ian McKindley, Director Country Risk Management, Visa AP, Australia
10.30 Morning Tea
11.00 CASE STUDY: Woolworths
PCI Compliance is a Journey Not a Destination
- Keeping the focus on BAU as you progress your program
- Keeping up to date with the changing compliance requirements – PCI-DSS V2, VISA TIP, and the SIGs
- Using the best techniques to minimise risk
- Using the PCI prioritised approach to shape your roadmap and demonstrate a risk-managed approach
- Using data driven frameworks to allow reuse of your work
- Using the Board of Advisors to provide feedback
Peter Cooper, Group Information Risk Manager, Woolworths Limited
11.40 CASE STUDY:
The Suncorp Journey - Creating Positive Change
- Governance through project management
- Creating awareness and ownership through strong business engagement
- Maintaining the momentum
- Lessons learnt
Nichol Stark, Senior Programme Manager PCI DSS, General Insurance, Suncorp
Paul Muir, Executive Manager Risk Assurance, GI CRO Suncorp
12.20 Networking Opportunity and Lunch
1.30 Lifecycle of an Account Data Compromise
- Background
- High risk environments
- Event identification
- Investigations process
- Remediation activities
- Ongoing compliance
Alexander Milicevic, PCI DSS Compliance Manager, NAB
2.10 CASE STUDY:
The Qantas Journey to PCI Compliance
Charles Hanna, Project Manager PCI DSS Program Business Transformation, Qantas
Leonie Privett, Manager Alliances, Qantas Commercial
2.50 Afternoon Tea
3.20 CASE STUDY:
Guaranteeing Our Punters Returns - Tabcorp Holdings Limited
- Defining Tabcorp's PCI scope and consumer channels
- Engaging the business and achieving buy-in
- Developing a business case – Remediate vs outsource
- PCI Governance
- Running a BAU PCI program in parallel
- Generating awareness across the organisation
Christian Seely, Manager IT Governance, Tabcorp Holdings Limited
4.00 Round Table Discussion:
Managing the PCI DSS Compliance Process
- Becoming PCI compliant
- Identifying your vulnerabilities
- Tips and tricks
- What you might have done differently
- Maintaining PCI compliance
- Managing reassessment
Facilitated by:
Peter Cooper, Group Information Risk Manager, Woolworths Limited
Panelists:
Nichol Stark, Senior Programme Manager PCI DSS, General Insurance, Suncorp
Charles Hanna, Project Manager PCI DSS Program Business Transformation, Qantas
Leonie Privett, Manager Alliances, Qantas Commercial
Reanna Coetzee, PCI IT Manager, Qantas
5.00 Close of Conference
5.10 Networking Cocktail Drinks

