Security & Compliance for Point-of-Sale (POS) Systems

Bringing security and compliance to point-of-sale (POS) systems

Next Steps:

Overview

McAfee point-of-sale (POS) solutions demonstrate PCI compliance and improve security through a scalable, extensible, and centralized architecture. Achieving greater ROI on legacy systems, reducing patch urgency, and ensuring that investments in modern solutions don’t compromise the integrity of customer data are just three of the distinct advantages of McAfee’s solutions.

In the retail business, certain security issues — such as regulatory penalties, breaches, and unscheduled downtime — can impact customer confidence and the bottom line. Retailers know they need to address these issues, but the security solutions they deploy often include increased labor costs and require system or network upgrades. Retailers need solutions that extend the ROI of their existing IT infrastructures, which can be complex and distributed, typically including stores with POS checkout terminals, self-check units, cash drawers, information and web kiosks, PCs, and back-office servers.

McAfee offers a comprehensive approach to demonstrating PCI compliance and securing retail store POS, back-office, and related purpose-built solutions across various platforms, regardless of whether they’re legacy, end-of-life, or recently purchased systems. McAfee solutions are equally effective in environments in which network bandwidth is constrained, store assets have limited resources, and frequent patching and anti-malware updates are not an option.

Key Benefits

  • Mitigate unwanted and malicious programs
    Prevent the installation and propagation of internal and external threats — as well as unwanted and malicious programs — through change control and dynamic whitelisting.
  • Get alternatives to traditional, signature-based, anti-malware solutions
    Address the concerns that traditional anti-malware solutions can’t meet, with platform extensibility designed for retail environments. McAfee’s solutions are ideal for this industry because they have small system footprints and do not require .DATs, updates, or network access. They can also run on common platforms such as Microsoft Windows XP Embedded (XPE).
  • Reduce patch urgency
    Decrease the need for reactive patching and allow more thorough evaluations. Dynamic whitelisting only permits the installation and operation of approved programs, which reduces the urgency of frequent patches across multiple locations with limited network bandwidth and disparate platforms.
  • Maximize ROI on legacy and end-of-life systems
    Extend the operational life of older systems and applications. This allows retailers — who are especially sensitive to ROI because of thin margins — to maximize their IT investments without compromising security.
  • Demonstrate PCI compliance
    Provide the security controls outlined in PCI requirements to demonstrate compliance to auditors. Through a combination of products, services, and partners, McAfee is uniquely able to address all sections of PCI.

Products

McAfee offers a comprehensive portfolio of security solutions that keep your systems, network, and data protected. For a complete list of our products, please see our Products and Solutions page.

Risk & Compliance

product box shot
McAfee Integrity Control

McAfee Integrity Control combines industry-leading whitelisting and change control technology, ensuring that only trusted applications run on fixed-function devices, such as point-of-service (POS) systems, ATMs, and kiosks.

Security Management

product box shot
McAfee ePolicy Orchestrator

McAfee ePolicy Orchestrator (ePO) is a key component of the McAfee Security Management Platform, and the only enterprise-class software, to provide unified management of endpoint, network, and data security. With end-to-end visibility and powerful automations that slash incident response times, McAfee ePO software dramatically strengthens protection and drives down the cost and complexity of managing risk and security.

Services

Resources

Podcasts

Casey Ketcham of NPC International (the world’s largest Pizza Hut franchisee), a McAfee customer, is interviewed

Brian Contos, McAfee’s director of global security strategy and risk management discusses security and compliance within the retail industry with Casey Ketcham.

Dr. Anton Chuvakin, author of books “Security Warrior” and “PCI Compliance” is interviewed

Brian Contos, McAfee’s director of global security strategy and risk management discusses security and compliance within the retail industry with Dr. Anton Chuvakin.

Solution Briefs

Community

Forums

No results found

Blogs

  • Security Considerations in Enabling Big Data – Snake in the Grass (Part 1)
    Kim Singletary - April 30, 2012
    Big Data holds a lot of promise – from the potential to change business models to the ability to rapidly refine services and goods that traditionally took years of industry speculation. But the utilization of Big Data isn’t just about mining data within your organization. It’s also about tying it to larger data stores and Read more...
  • Visa, Mastercard: When Business Issues Trump Security
    Archive - February 16, 2010
    The companies that have the greatest ability to impact security generally have the least financial incentives to do so.
  • We Can Require Passwords, But Who Forces Them To Be Good?
    Archive - February 02, 2010
    Study reveals passwords consumers and retail employees choose are obvious and either written down or repeated ad nauseam.
  • What to do After the Breach?
    Archive - October 27, 2009
    There is no shortage of advice on how to prevent a data breach, but what if you become a victim of a breach? Do you have a plan of precisely what to do next? While very few retailers do, I'll offer some suggestions. Before we delve into what you should do next