PCI Compliance

 

What is PCI Compliance?

In September of 2006, a group of five leading payment brands including American Express, Discover Financial Services, JCB, MasterCard Worldwide and Visa International announced the formation of the PCI Security Standards Council (PCISSC). The PCISSC builds upon the earlier versions of Visa CISP compliance and the MasterCard SDP.

 

The goal of the council is to ensure that merchants and service providers who send data electronically have taken steps to protect transactions. These requirements apply to all payment card network members, merchants and service providers that store, process or transmit cardholder data, and affect all payment channels, including retail (brick-and-mortar), mail/telephone order and e-commerce websites.

 

The PCI Security Standards Council developed the PCI Data Security Standard (DSS) which is the standard to which all merchants and providers will be held accountable. The PCI Security Standards Council also defines qualifications for Qualified Security Assessors (QSAs) and Approved Scanning Vendors (ASVs); and trains, tests and certifies QSAs and ASVs.

 

Complete this form to have a PCI Scanning specialist contact you directly.

 

How will you know if you are not in PCI Compliance?

If you get a letter from your processor or credit card company, pay attention, it’s not a gimmick. Companies that do not meet the Data Security Standard (DSS) requirements may be barred from processing credit cards, incur higher processing fees, and even face fines up to $500,000.

 

Quest's "Compliance Vulnerability Scanning" Professional and Managed Services are MasterCard Site Data Protection Certified (SDP Compliant Certificate Number: 3845-01-01).

 

What to do if you get a letter stating you are not in compliance?

You need to determine what level your company falls under to determine the appropriate steps to take. We can help you determine which requirements apply to your company and perform the appropriate PCI Scan. After that, you can act on the results of your scan or, we can do the work for you. Either way, once you complete any deficiencies, you can rest assured that you are in compliance with current standards.

 

Quest is a PCISSC Approved PCI Scanning Vendor.

We have been approved by the PCISSC to perform PCI Scans. That means we have proven ourselves to be technically proficient to perform the scans and to help companies meet the new standards. When you are required to meet the PCI DSS, it's comforting to know the company you have chosen to help you has been approved by the same body that writes the standards. There's no guesswork involved. Quest can help you ensure your PCI Compliance.

 

More Information on PCI Scanning

For more information or to schedule a PCI Scan:

PCI Compliance PDF for more information.

PCI Compliance podcast: Join (Co-Hosts) Scott Draughon (My Technology Lawyer) and Oliver Rist (InfoWorld) as interview Mike Dillon and Jon Bolden (QUEST) as they discuss PCI (Payment Card Industry).

 

Contact Quest: 800.326.4220
questPCI@questsys.com

 

 

Register to have a PCI Scanning specialist contact you directly.