Network Logo
Translate Page To German Tranlate Page To Spanish Translate Page To French Translate Page To Italian Translate Page To Japanese Translate Page To Korean Translate Page To Portuguese Translate Page To Chinese
  Number Times Read : 2      
Categories

Advice
Aging
Automotive
Break-up
Business
Business Management
Cancer Survival
Career
Cheating
Computers and Technology
Cooking
Culture
Culture and Society
Death
Disease & Illness
Entertainment
Etiquette
Family Concerns
Finances
Food and Drinks
Health & Fitness
Hobbies
Home & Family
Home Management
Humor
Internet
Jobs
Legal
Marketing
Medical Business
Medicines and Remedies
Opinions
Pets
Politics
Real Estate
Recreation
Recreation & Sports
Reference & Education
Relationships
Religion
Self Help
Self Improvement
Short Stories
Society
Wellness, Fitness and Di
Womens Interest
World Affairs
Writing
 
Stats
Total Articles: 59043
Total Authors: 6330
Total Downloads: 119948


Newest Member
Glen Peebles
 


   

Does Your Business Need to be PCI DSS Compliant?



[Valid RSS feed]  Category Rss Feed - http://www.LeadershipShop.com/rss.php?rss=382
By : Amy Nutt    zero times read
Submitted 2008-08-05 13:19:07
Despite increasingly heightened security by merchants and service providers, credit and debit card fraud is still on the rise. Perpetrators are using even more sophisticated methods of infiltration to access sensitive payment card information. The financial cost of fraud to any sized corporation can be huge and the price of preventing it is vast.

Any company which stores, processes or transmits payment card data bearing the logo of the five major payment companies has to comply with the Payment Card Industry Data Security Standards (PCI DSS). These five companies include American Express, Discover, JCB, MasterCard and Visa. These standards were devised in 2004 to provide a common set of industry tools for the storage of payment card data in order to prevent, detect, and react to security incidents.

As well as merchants or banking institutions, compliance is required by any third party who accepts or processes payment cards. This includes call centres who receive cardholder data which they are unable to delete. If merchants use payment gateways to process transactions on their behalf, compliance is not required but they must ensure contractual obligation from the third party that they comply with PCI DSS and are responsible for the security of cardholder data.

Fines for non compliance or security breaches can be huge, reaching $500,000. High profile cases involving huge corporations have hit the headlines. Some card brands have threatened huge fines against larger merchants of up to $25,000 per month until compliance is obtained. In severe cases, they have even threatened to remove the ability to process credit card payments, which could be economically fatal for any merchant.

While Visa reports that the majority of security breaches occur in small enterprises, any company that stores, processes, or transmits card information has to comply with a strict set of guidelines. Although intended to create a global standard which protects both consumers and corporations alike, these guidelines can be time consuming, costly, and complex to implement. Corporations that require PCI DSS compliance are prevented from storing sensitive credit card information, including security codes, track data from the magnetic strip, and PIN numbers. Information which can be stored includes credit card numbers, expiration dates and customer details, but the method of storage needs to meet certain requirements.

How to obtain PCI DSS compliance

The recommended first step to obtaining compliance is to hire the services of a Quality Security Assessor, who can advise on steps needed to reach compliance as well as completing the official assessments required. Smaller companies that process less than 80,000 transactions per year are permitted to complete a self assessment questionnaire.

Compliance covers 6 areas of security:

1. Construction and maintenance of a secure network including installation of a firewall to protect cardholder data

2. Protection of cardholder data including encryption during data transmission

3. Vulnerability management with regular updates of anti virus software

4. Access control to prevent and restrict access to sensitive data

5. Regular monitoring and testing of networks

6. Maintenance of an information security policy

The latest updated guidelines for PCI DSS are due for release in October 2008.

The benefits of PCI DSS compliance

• Protection from PCI related fines if compliant at the time of breach

• Increased customer confidence in data protection

• Advice on how to remediate any data security risks

• Advice on how to prevent service providers from putting your business at risk from data security

• Increased protection from fraudsters

• Protection from unwanted negative media attention

With this said, there is no question as to why PCI DSS compliance is as important as it is. It both protects the consumer and the merchant, making transactions considerably safer than they would be otherwise.
Author Resource:- Managed Hosting provider for companies with applications that demand the highest levels of security and availability. http://www.fusepoint.com
Article From The Leadership Shop

HTML Ready Article. Click on the "Copy" button to copy into your clipboard.




Firefox users please select/copy/paste as usual
New Members
select
Sign up
select
learn more
Affiliate Sign in
Affiliate Sign In
 
Nav Menu
Home
Login
Submit Articles
Submission Guidelines
Top Articles
Link Directory
About Us
Contact Us
Privacy Policy
RSS Feeds

Actions
Print This Article
Add To Favorites

 
Sponsors

Purchase this software

 

From Family Stew



The Free Ride In Public Schools
27 Nov 2008 at 11:28am
Why should public-school students bother doing homework or studying hard if they advance to the next grade no matter how bad they do in class? That would be dumb, and these kids are not dumb.
Punishing the Victim -- Why Public Schools Pressure Parents To Give Their Kid...
27 Nov 2008 at 11:28am
It is normal for bright, energetic kids to be bored in public school. To solve the problem of "unruly" children, public schools now pressure parents to give their kids potentially dangerous mind-altering drugs.
The Graceful Art of Defrazzling - For Mothers
27 Nov 2008 at 11:28am
An introduction to a "defrazzled" method of surviving life as a mother

From Expanding Links



What Can You Do To Beat Your Competition?
26 Nov 2008 at 3:57pm
Your competition is more established than your website is. How do you get ahead of them?
Methods of Website Promotion
26 Nov 2008 at 3:57pm
Some thoughts and experiences related to website promotion and methods for gaining added exposure...
How to Get Directories to Submit Your Site - With this 5 Steps Guide!
26 Nov 2008 at 3:57pm
Simple 5 steps guide to get all those directories for your site submission campaign.



If you are interested in learning about and discussing social services and social services agency management, please visit SocialServicesAgencyManagement.com where you will also learn about the new ecological model of excellence.

A Service Of: (©) Leadership Village - all rights reserved