The Banktastic Blog

from the community of The Garland Group 
« Back to blog

Can you achieve PCI compliance with cloud based solutions?

I’ve long said that as it currently stands, it’s going to be nearly impossible to become PCI compliant using any of the cloud based solutions.  Scanning, auditing and even the contractual requirements of PCI guarantee that you won’t be able to be compliant if you’re using the cloud.

Great article showing the transparency of Amazon when it comes to stating that they can't ensure PCI compliance via their EC2/S3 services. Why would they want to do though? They're on-demand type of services that would not make sense for Amazon to do. I think cloud based compliance is a possibility and we are working to solve this problem ourselves! :)

Loading mentions Retweet