• PCI DSS compliance requires effective event log management (requirement 10). This should be interpreted as logging all administrator actions and to make sure that log actions are tied to user names. Furthermore logs should be stored on a centralized secure system and access to logs should be logged as well.

    With the new architecture of the WP Security Audit plugin 2.0 this is now achievable which is a big win from a compliancy perspective.

    I think this is one of the best, if not the best, security log & audit plugins available for WordPress.

  • The topic ‘A must have for PCI DSS compliance’ is closed to new replies.