Browse » Home » » PCI Compliance Standards Secure Cardholder Data

PCI Compliance Standards Secure Cardholder Data

By Josie Lynn


The PCI Compliance standards or Payment Card Industry Compliance standards are security standards for businesses that deal with credit and debit cards. The pci compliance standards were created to increase controls around the card holders so as to reduce credit card fraud. Validation is done by Quality Security Assessor on a yearly basis. This is done to handle large volumes of transactions by the different organizations.

The PCI Compliance standards or Payment Card Industry Compliance standards are security standards for businesses that apply to credit and debit cards. The pci compliance standards were produced to enhance controls around the card holders so as to lessen credit card fraud. Validation is done by Quality Security Assessor every year.

Card holder data needs to be protected. Encryption of the transmission of cardholder data across open networks is very important. A vulnerability management program should be set up and maintained by the company. Antivirus software should be installed on all systems and secure systems and applications should be maintained.

Secondly, a vulnerability management program should be maintained. Applications should be secured and maintained properly. Anti-virus programs should be updated regularly. Thirdly, strong access control measures should be implemented. Card holder's data should be restricted by business need-to-know. Unique ID's should be assigned to each person.

The pci compliance standards apply to all merchant organizations no matter how many transactions they have. There are different merchant levels given by the pci compliance council to businesses. While these levels are based on how many transactions the company does, it is important to stress that no matter how many transactions are made, theses standards and rules still apply. Higher level merchants, like merchant 4 or above may have additional rules and regulations to follow. Any business that accepts or stores cardholder data must follow the pci compliance standards. It is very important, so don't overlook it.




About the Author:



0 comments:

Post a Comment

 
(c) Copyright Ikok Blog
-