


Join your industry colleagues for three days of networking and one-of-a-kind partnership opportunities. Whether you want to learn more about updates in the payment card industry or showcase a new product, you’ll find it all at the 2016 Community Meetings.
Christopher Novak
Director, Investigative Response
Verizon RISK Team
Brian Muirhead
Chief Engineer
Mars Science Laboratory & Caltech/Jet Propulsion Laboratory
Ken Munro
Partner and Founder
Pen Test Partners LLP
| Tuesday, 20 September | |||
|---|---|---|---|
10:00 | 18:30 | Registration Open | |
13:00 | 13:15 | Welcome Remarks | |
13:15 | 14:30 | State of the Council Keynote and Fireside Chat Stephen W. Orfei, General Manager, PCI Security Standards Council joined by special guest Tracy Kitten, Executive Editor, BankInfoSecurity & CUInfoSecurity | |
14:30 | 15:00 | How to Communicate PCI to the Boardroom | Sponsored by:![]() |
15:00 | 15:45 | The Evolution of Payments…and Sometimes Security: A reflection on the changes in payment security and our standards over the past ten years and how that will help shape our future.Presented by: Troy Leach, Chief Technology Officer, PCI Security Standards Council | |
15:45 | 16:30 | Industry Keynote Forensics Understanding the Current Data Breach Landscape | |
16:30 | 17:00 | Frequent Questions Answered by the PCI Security Standards Council | |
18:30 | 20:00 | Welcome Reception | |
| Wednesday, 21 September | |||
|---|---|---|---|
7:30 | 9:00 | Networking Breakfast and Vendor Showcase Qualified Integrators and Resellers (QIRs) are invited to a specially designated area to meet members of the Council during the morning breakfast. | Sponsored by:![]() |
9:00 | 9:30 | Welcome Remarks | |
9:30 | 10:30 | Keynote: Architecting for Success Presented by: Brian Muirhead, Chief Engineer, Mars Science Laboratory, Caltech/Jet Propulsion Laboratory | |
10:30 | 11:00 | Networking Break and Vendor Showcase | Sponsored by:![]() |
Track Two |
|||
11:00 | 11:20 | PTS Updates | Announcing New Resources for Small Merchants |
11:20 | 11:40 | P2PE Updates | 2016 SIG Update: Best Practices for Securing E-commerce |
11:40 | 12:10 | In-depth look into PCI DSS v3.2 | Hunting Paper Tigers: A Security-First Approach to Compliance |
12:10 | 12:30 | All Things Mobile | Measuring Security and Compliance - a Proactive approach to PCI Score-carding |
12:30 | 13:30 | Networking Lunch and Vendor Showcase | Sponsored by:![]() |
13:30 | 13:50 | Cloud Security, Compliance, and Incident Response in the Amazon EC2 Cloud Presented by: Brad Dispensa, Senior Solutions Architect (WWPS), Amazon Cloud Services, Amazon Corporation, Payment Software Company (PSC) and Tom Arnold, Head of Digital Forensics, Payment Software Company (PSC) | Balancing Security and Compliance |
13:50 | 14:10 | Configuring TLS and the fundamentals of PKI | Setting Them Up For Failure Presented by: Joseph Pierini, Director of Technical Services, Security Assessor - Penetration Tester, Payment Software Company (PSC) , CISSP, GCIH, PCI: QSA, PA-QSA, PFI, QAE |
14:10 | 14:30 | EMVco 3D Secure | From Assessor to Assessed: Perspectives on PCI |
14:30 | 15:00 | Continuous Application Security | How to Communicate PCI to the Boardroom |
15:00 | 15:30 | Networking Break and Vendor Showcase | Sponsored by:![]() |
15:30 | 15:50 | The Evolving ATM Security Landscape | The Dark Web: Coming to a Retailer Near You |
15:50 | 16:20 | Qualified ROCs - An Experiment in Risk-Based PCI Compliance | EMV & P2PE: PCI-QIR Lessons Learned |
16:20 | 16:40 | The Song Remains the Same: A Decade of Unchanged Attack Vectors | The Zen of PCI: How to Maintain PCI Compliance Without Losing Your Mind |
16:40 | 17:00 | How did you get in? Managing Failed Penetration Tests Presented by: Stacy Hughes, Senior Vice President, IT Governance, Risk and Compliance and Kevin Simmonds, Director Cybersecurity & Privacy | Third Party Service Providers - at the Heart of the Compliance Web |
17:00 | 18:30 | Networking Reception and Vendor Showcase | Sponsored by:![]() |
| Thursday, 22 September | |||
|---|---|---|---|
7:30 | 9:00 | Networking Breakfast and Vendor Showcase Breakfast with the Council: Come and meet members of the Council. Enjoy breakfast while discussing hot topics and industry trends with Council members from the Standards, Certification and Training teams. | Sponsored by:![]() |
9:00 | 9:15 | Welcome Remarks | |
9:15 | 10:15 | Keynote: Ken Munro, Partner and Founder, Pen Test Partners LLP Presents: From Payment to Ransomware, via the Internet of Things | |
10:15 | 10:45 | Networking Break and Vendor Showcase | Sponsored by:![]() |
10:45 | 11:30 | Compliant vs. Secure: Can Security Governance Resolve the Dilemma? Panel Discussion with:Rocco Grillo, CISSP, Executive Managing Director - Cyber Resilience Leader, Chad Thiemann, Director Privacy, Compliance & Legal, CVS Health, Julie Schwartz, Director of Compliance and Risk, WorldPay Edward Currie, Assistant to the Special Agent in Charge Cyber Intelligence Section Criminal Investigative Division, United States Secret Service | |
11:30 | 12:00 | PCI's Quality Assurance Program: Then and Now Presented by: Brandy Cumberland, Director of Assessor Quality Management (AQM) Programs, PCI Security Standards Council | |
12:00 | 12:30 | Q&A with PCI Security Standards Council and Closing Remarks | |
12:30 | 15.30 | Assessor Lunch and Session (QSAs, ASVs, and ISAs only) Join your peers for an interactive session and Q&A with the PCI SSC team to discuss what is new for assessors and tips for ensuring your assessments get great feedback. | |
Register today to secure your spot at the 2016 North America Community Meeting.
Sponsorship Opportunities
An exclusive opportunity to position your company as a leader in the global payment security industry.
"The community meetings just keep getting better, both in terms of quantity and quality."
"Something for everyone from techs to execs."
"It was great to network with other payment system participants."
Employee Education is the Best Defense for Protecting your Organization’s Data Assets.
In conjunction with the North America Community Meeting, five instructor-led training classes are available, allowing attendees to make the most of their travel time and budgets. The trainings will take place at The Mirage.

PA-QSA Training | 15-16 September
PA-QSA training provides you the tools to become an expert on the requirements for PA-DSS compliance and have an impact on the consistent and proper application of security measures and controls for your client’s payment applications. Enrollment is restricted to existing QSAs only.

P2PE Training | 15-16 September
The Point-to-Point Encryption Qualified Security Assessor (P2PE QSA) and Payment Application Point-to-Point Encryption Qualified Security Assessor (P2PE PA-QSA ) training programs prepare candidates to perform validation of Point-to-Point Encryption solutions and applications against the latest standard in order for those solutions and applications to be listed on the PCI Council website.

Internal Security Assessor Training | 18-19 September
The Internal Security Assessor (ISA) Program provides large merchants, acquiring banks, and processors the opportunity to build their internal payment data security expertise, as well as increase their efficiency in complying with PCI Standards.

Qualified Security Assessor Training | 18-19 September
Qualified Security Assessor (QSA) training provides instruction on how to conduct assessments of merchants, institutions and service providers who must be compliant with the PCI DSS.

PCI Acquirer Training | 19 September
Payment Card Industry (PCI) Acquirer Training is for acquirers and processors who wish to have a deeper understanding of the PCI DSS in order to better assist their merchant clients in their security and compliance efforts.
Get the latest updates on the North America Community Meeting by joining our mailing list.