Skip to main content
Skip table of contents

Payment Card Industry Data Security Standard 3.2 Compliance Automation Suite Deployment Guide


This guide describes how to implement the LogRhythm PCI-DSS 3.2 Compliance Automation Suite. This suite provides pre-bundled Investigations, Alarms, and Reports that are designed for version 3.2 of the Payment Card Industry Data Security Standard (PCI-DSS). In addition, this guide shows how to meet PCI-DSS 3.2 compliance regulations using the LogRhythm Investigations, Tails, Alarms, and Reports.

After you configure the automation suite, the LogRhythm Platform Manager (Event Manager) includes the proper components needed for PCI-DSS 3.2 compliance. Alarms, Investigations, and Reports are automatically associated with the correct PCI-DSS 3.2 asset categories. You can then schedule Reports for periodic generation and delivery, or generate them on demand. To identify areas of non-compliance in real-time, you can leverage Investigations and Alarms for immediate analysis of activities that impact your organization's cardholder data systems.

For an overview of LogRhythm’s PCI-DSS 3.2 Compliance Automation Suite, see PCI-DSS Compliance and the PCI-DSS Solutions Brief, which are available from LogRhythm’s main website.

Intended Audience

This guide is intended for LogRhythm SIEM administrators and analysts who are responsible for maintaining compliance with PCI-DSS 3.2. Further, weekly and daily Reporting Packages can be established to provide forensic evidence and audit data to appropriate audiences for distribution. These groups include Security Operations, Security Management, IT Operations, Audit, and Executive.

Module Contents

This module adds to an existing LogRhythm deployment, as follows:

  • 72 AI Engine Rules
  • 89 Investigations
  • 29 Lists. This includes four (4) LogRhythm pre-populated lists (ID #: -2067, -2080, -2081, -2082) and twenty-five (25) lists to be updated by the customer.
  • 98 Summary Reports and 95 Detail Reports
  • 6 Reporting Packages

Prerequisites

The PCI-DSS 3.2 Compliance Automation Suite is designed to work with the LogRhythm AI Engine.

Overview of Steps

This guide is divided into the following sections:


JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.