Complying with the Payment Card Industry's Data Security Standard
The Payment Card Industry Data Security Standard (PCI DSS) was drawn up in order to reduce leakage and inappropriate use of credit card information. It contains over 100 clear information security requirements for all companies who process, store or transfer data about cardholders: banks, processing centers, service providers, retail stores, e-commerce businesses, etc. Compliance with PCI DSS has been enforceable since 2007. This year payment systems plan to fine any companies that have not undergone certification procedures. Even organizations that have an information security system in place can find it challenging to demonstrate compliance with PCI DSS. This whitepaper outlines PCI DSS requirements and measures that can be taken to comply.
|