brainlink
left_cor
PCI-DSS Compliance
 

Needless to say, credit cards have become prevalent in the financial world and as their popularity increases, so too do the potential security risks. The PCI DSS, Payment Card Industry Data Security Standard, applies to all payment channels, be they retail, mail/telephone, or the web. The standard is supported by major credit card brands (VISA, MasterCard, American Express, JCB International and Discover) under the PCI Security Standards Council.

Creation and management of security standards is separated from enforcement.


It is one unified security standard supported by all 5 brands, with the goal of securing cardholder data, reducing ID theft, and credit card fraud to “build a culture of security”




The Twelve Basic Requirements include

  1. Install and maintain a firewall configuration to protect data
  2. Do not use vendor-supplied defaults for system passwords and other security parameters
  3. Protect stored data
  4. Encrypt transmission of cardholder data and sensitive information across public networks
  5. Use and regularly update anti-virus software
  6. Develop and maintain secure systems and applications
  7. Restrict access to data by business need-to-know
  8. Assign a unique ID to each person with computer access
  9. Restrict physical access to cardholder data
  10. Tract and monitor all access to network resources and cardholder data
  11. Regularly test security systems and processes
  12. Maintain a policy that addresses information security


If you're unsure about how to comply with PCI-DSS or want to build a strong culture of security, contact Brainlink.
We help clients increase revenues and profits by being PCI compliant.
 
 
 

Why not leverage Brainlink's IT expertise to provide additional peace of mind to your clients? white

 
 
 
© 2008 by Brainlink International, Inc. All Rights Reserved.
212-221-8660 | fax 212-221-8667
87-90 118 Street, Richmond Hill, NY 11418