Friday, March 14, 2008

PCI Compliance - Payment Card Industry Data Security Standard

PCI Security Standards Council developed the PCI DSS (Payment Card Industry Data Security Standard). This is a set of comprehensive requirements for enhancing payment account data security.

Who developed the standard?
The PCI Security Standards Council was founded by the industries leading payment brands. These companies include American Express, Discover Financial Services, JCB, MasterCard Worldwide and Visa International.

Their goal is to facilitate the broad adoption of consistent data security measures on a global basis. It helps to protect Cardholder data from being breached while in the possession of third parties performing financial transactions using buyers' credit cards.

So just what is the PCI DSS?
It is an in-depth security standard that includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures. This standard is designed to help organizations protect customer account data. PCI is a critical tool that can help stop the theft and fraudulent use of consumer data.

See PCI DSS REQUIREMENTS post for details on what you need to become compliant! Also search on my blog uner "PCI" for previous posts. Also helpful are posts on "SOX" for Sarbanes-Oxley compliance.

Jamie"s MOTTO.....

Don't follow the path that is already there....go instead where there is no path....and leave a trail....

This trail is a part of a long journey .....