<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>CoCard Austin's Blog</title>
	<atom:link href="http://cocardaustin.com/blog/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://cocardaustin.com/blog</link>
	<description>Credit Card Processing Open Discussion</description>
	<pubDate>Mon, 06 Apr 2009 03:28:36 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.1</generator>
	<language>en</language>
			<item>
		<title>PCI-DSS COMPLIANCE -What to Do First?</title>
		<link>http://cocardaustin.com/blog/?p=11</link>
		<comments>http://cocardaustin.com/blog/?p=11#comments</comments>
		<pubDate>Mon, 06 Apr 2009 03:14:50 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://cocardaustin.com/blog/?p=11</guid>
		<description><![CDATA[ PCI-DSS has been around for a while and is now being mandated more effectively.
https://www.pcisecuritystandards.org/
Good news is that you do not need to hire a consulting firm with a price take of $2,000-$20,000 in most instances but you have to do something about the regulations associated with processing which are coming directly mandated from the card [...]]]></description>
			<content:encoded><![CDATA[<p> PCI-DSS has been around for a while and is now being mandated more effectively.</p>
<p><a href="https://www.pcisecuritystandards.org/">https://www.pcisecuritystandards.org/</a></p>
<p>Good news is that you do not need to hire a consulting firm with a price take of $2,000-$20,000 in most instances but you have to do something about the regulations associated with processing which are coming directly mandated from the card issuers (Visa/Mastercard). </p>
<p>The first step is identifying what level merchant you are considered you are.   Once you know then you can take the appropriate action.  Note   if you are a level 4 merchant you can wait for your processor to contact you with their mandated program </p>
<table class="MsoNormalTable" style="mso-cellspacing: 0in; mso-padding-alt: 0in 0in 0in 0in;" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr style="mso-yfti-irow: 0; mso-yfti-firstrow: yes; mso-yfti-lastrow: yes;">
<td style="padding-right: 0in; padding-left: 0in; padding-bottom: 11.25pt; padding-top: 0in; background-color: transparent; border: #ece9d8;">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><strong><span style="font-size: 10.5pt; color: #333333; font-family: Verdana;">PCI Data Security Standard Compliance for Merchants</span></strong></p>
</td>
</tr>
</tbody>
</table>
<table class="MsoNormalTable" style="width: 100%; mso-cellspacing: 0in; mso-padding-alt: 0in 0in 0in 0in;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr style="mso-yfti-irow: 0; mso-yfti-firstrow: yes;">
<td style="background: #333333; width: 15%; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" width="15%" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt; text-align: center;" align="center"><strong><span style="font-size: 9pt; color: #ffffff; font-family: Verdana;">Merchant Level</span></strong></p>
</td>
<td style="background: #333333; width: 25%; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" width="25%" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt; text-align: center;" align="center"><strong><span style="font-size: 9pt; color: #ffffff; font-family: Verdana;">Selection Criteria</span></strong></p>
</td>
<td style="background: #333333; width: 25%; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" width="25%" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt; text-align: center;" align="center"><strong><span style="font-size: 9pt; color: #ffffff; font-family: Verdana;">Validation Actions</span></strong></p>
</td>
<td style="background: #333333; width: 25%; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" width="25%" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt; text-align: center;" align="center"><strong><span style="font-size: 9pt; color: #ffffff; font-family: Verdana;">Validated By</span></strong></p>
</td>
</tr>
<tr style="mso-yfti-irow: 1;">
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong><span style="font-size: 18pt; color: #333333; font-family: Verdana;">1</span></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong></strong></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Any merchant - regardless of acceptance channel - processing more than 6,000,000 Visa transactions per year</span></p>
<p>Any merchant that has suffered a hack or an attack that resulted in an account data compromise</p>
<p>Any merchant identified by any card association as Level 1</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Annual On-Site Security Audit</span></p>
<p>and</p>
<p>Quarterly Network Scan</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Independent Security Assessor or Internal Audit if signed by an Officer of the company</span></p>
<p>Qualified Independent Scan Vendor</td>
</tr>
<tr style="mso-yfti-irow: 2;">
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong><span style="font-size: 18pt; color: #333333; font-family: Verdana;">2</span></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong></strong></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">1 million – 6 million Visa or MasterCard transactions per year </span></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Annual PCI Self-Assessment Questionnaire</span></p>
<p>and</p>
<p>Quarterly Network Scan</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Merchant</span></p>
<p>Qualified Independent Scan Vendor</td>
</tr>
<tr style="mso-yfti-irow: 3;">
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong><span style="font-size: 18pt; color: #333333; font-family: Verdana;">3</span></strong></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">20,000 – 1 million Visa or MasterCard e-commerce transactions per year </span></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Annual PCI Self-Assessment Questionnaire</span></p>
<p>and</p>
<p>Quarterly Network Scan</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Merchant</span></p>
<p>Qualified Independent Scan Vendor</td>
</tr>
<tr style="mso-yfti-irow: 4; mso-yfti-lastrow: yes;">
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 18pt; text-align: center;" align="center"><strong><span style="font-size: 18pt; color: #333333; font-family: Verdana;">4</span></strong></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Less than 20,000 Visa or MasterCard e-commerce transactions per year, and all other merchants processing up to 1 million Visa or MasterCard transactions per year </span></p>
</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Recommended Annual PCI Self-Assessment Questionnaire</span></p>
<p>and</p>
<p>Quarterly Network Scan</td>
<td style="background-color: transparent; mso-border-alt: solid #666666 .75pt; border: #666666 1pt solid; padding: 7.5pt;" valign="top">
<p class="MsoNormal" style="margin: 0in 0in 0pt; line-height: 10.5pt;"><span style="font-size: 8.5pt; color: #333333; font-family: Verdana;">Merchant</span></p>
<p>Qualified Independent Scan Vendor</p>
<p>Validation requirements and dates for Level 4 merchants are determined by the merchant&#8217;s acquirer. Submission of scan reports and/or questionnaires by level 4 merchants may be required.</td>
</tr>
</tbody>
</table>
<p class="MsoNormal" style="margin: 0in 0in 0pt;"><span style="font-size: small; font-family: Times New Roman;"> </span></p>
<div><span style="font-size: small; font-family: Times New Roman;"><strong>What does this all mean?</strong></span></div>
<div><span style="font-size: small; font-family: Times New Roman;">This compliance is what is required by MC/VISA of their processors, (First Data, NPC, Etc.) and the above chart is what is what they are being told they must have their merchants doing.  The processors have incurred significant expenses caused by this requirement and they will pass this on the the merchants.   These expenses are the process of contacting, supporting, and maintaining the records to show they have managed the regulation correctly.  </span></div>
<p><span style="font-size: small; font-family: Times New Roman;">Merchants should expect to see a monthly fee added to their statement or may see an annual fee ranging from 100-450  to pay for this whole process or if they ignore the requirements. </p>
<p style="text-align: center;">KEEP IN MIND ONCE YOU COMPLETE THE REQUIREMENTS IT DOES NOT MEAN YOU ARE NOT LIABLE FOR A BREACH OF SECURITY.</p>
<p> </p>
<p> </p>
<p></span></p>
]]></content:encoded>
			<wfw:commentRss>http://cocardaustin.com/blog/?feed=rss2&amp;p=11</wfw:commentRss>
		</item>
	</channel>
</rss>
