 |
PCI Compliance Resources
As a merchant who accepts credit cards you must validate PCI compliance at least annually. This may be handled by your merchant services provider, gateway provider or other entity..... BUT it's up to you to ensure your providers are in compliance!
PayPal has a pretty good Flash presentation of the process needed to be compliant from their perspective - click here
Click here to view a list of the providers who ARE compliant.
Click here to review the VISA standards for compliance.
According to payment brand rules, all merchants and their service providers are required to comply with the PCI Data Security Standard in its entirety. There are five Self Assessment Qusetionairre validation categories, shown briefly in the table below and described in more detail in the following paragraphs. Use the table to gauge which SAQ applies to your organization, then review the detailed descriptions to ensure you meet all the requirements for that SAQ.
Click here to review the VISA standards for compliance.
Network Security Scans are required of all merchants and service providers with external-facing IP addresses that collect, process or transmit payment account information. However, even if an entity does not offer Web-based transactions, there may be other services that make systems Internet accessible. Basic functions such as email and employee Internet access may result in the Internet-accessibility of a company's network.
These seemingly insignificant paths to and from the Internet can provide unprotected pathways into merchant and service provider systems and can potentially expose cardholder data if not properly controlled.
Please refer to the table at the page to help you determine which SAQ form you will need to complete and whether or not you require Network Security Scans to fulfill your PCI compliance requirements. If you do please let us know by emailing us at support@readywebgo.com
http://www.pcicomplianceguide.org
N O T E : The information provided here is "as is" and we make no warranty as to the accuracy of the information. It is provided solely by the PCI Security Standards Council. For more about PCI Security click here.
|  |