Security and Compliance Flashcards
How can you secure data with roles and permissions?
12
- Only set permissions that are needed
- Include 2FA for all users
- Restrict access to users so they can’t change their own roles
- User acess expiration
- Commerce - limit permissions by website
- Prevent shared single log in
- Force password resets via configuration
- Set an SSL Cert
- Enable HTTPS
- Configure recaptcha
- apply security patches
- Unique URL Login
What are the 3 privacy laws/guidances
3
- PCI Compliance (card industries, the way card data is treated)
- DSS - Data security standards (Covers the organisation waking the payments)
- PA - DSS - Application DSecurity Stations (Covers Application)
What is Level 1 PCI
2 points
- merchant has more than 6 million card transactions a year or a breach
- Merchant cannot self assess.
Give an example of what you need to remain ADA compliant
- Images have tags
- Contrast between elements
What is GDPR
-
- Any site in the EU must comply with these points
- They are common sense
- Adobe is officially GDPR compliant
Key Points of Data Protection
3 points
- Reasonable Protection of User data
- Users have the right to see stored data
- Need a Data protection officer or Data Controller
What is the companies responsibility
- When there is a data breach notify the authority within 72 hours
- Communicate the impact to the customers
how is vat collected
collected incrementally from point of manufacture to final sale
How do you configure vat for European Companies
3 steps
- Import rates
- tax rules for B2C and select all B2C tax rates
- Select B2b group, select tax rates for current company.
What is Cross Border Trade
2. points
- Selling products into a different country
- The laws in the country in which you are selling are applicable
What are cross border taxes and what do you need to keep in mind
- Tax rate based on shipment destination
-Merchant may want to keep pricing the same across countries
What are the distance selling rules
4 points
Display :
1. Buisness name, contact and address
2. The price of the product (include taxes)
3. How they can pay for order
4. How to cancel
What are US tax Regulations and key point
- Final seller charges percentage of the purchase price to government
- Every city can charge their own rate
- May need 3rd party system or import tax rates
What Are EU tax regulations
- VAT
- Each country has its own tax