Main Menu
Technology & Internet
• Website Development Credit Card Equipment
• Verifone Other Merchant Services
• Cash Advance Human Resources
News
Questions?
Opening a new account
|
Major Data Breach Puts Millions At Risk PCI DSS COMPLIANT VIDEO - Security Standards Council The Payment Card Industry Data Security Standard (PCI DSS) provides an enterprise structure for improving operational, security, and audit performance. The benefits of the PCI DSS go beyond audit costs and results, however. As a security model, PCI requirements can help companies control compliance costs and build a more efficient and reliable IT infrastructure that delivers better service while incurring less risk. There are six categories of PCI standards that must be met in order for a retailer to be deemed compliant. Maintain a secure network In short, whenever any personal information about a cardholder is stored on a computer (which is also connected to a network), that computer is behind a firewall and all reasonable measures have been taken to protect that particular network. Protect Cardholder Data Commerce businesses need to be especially critical of the way that cardholder data is transmitted. When a customer makes a purchase on a web site, his/her cardholder information is sent across the Internet. During that transmission, cardholder data must be encrypted with at least a 128 bit SSL certificate in order to meet this standard. Maintain a Vulnerability Management Program Implement Strong Access Control Measures Regularly Monitor and Test Networks Maintain an Information Security Policy The first step in PCI compliance is to meet the above standards. Credit card companies and financial institutions validate that vendors are abiding by the regulations, giving them ratings based on their volume of transactions. The rating that a company receives determines the process that they must go through in order to be validated. Next month, we'll take a look at the four validation ratings, and what each rating means to a company. |
Are you PCI Compliance? |