Get Started


4 min read

Credit Card Processing PCI Compliance in 12 Steps

Apr 30, 2018 11:08:00 AM

Credit Card Processing PCI Compliance:  What can you do to protect cardholder data and meet security standards?

Credit Card Processing PCI ComplianceThere is no easier way to become PCI Compliant than working with the experts at APS Payments.  Back in the old days, criminals would rob banks and trains full of cold hard cash.  These days, criminals try to steal credit and payment card data from exposed networks among other modern-day tactics that leave companies and card holders vulnerable.  They are constantly searching for victims.  Thankfully, the Payment Card Industry Data Security Standard (PCI DSS) was developed in accordance to credit card processing PCI Compliance standards with several layers of protection against theft. Here are 12 steps you can take to protect your cardholder data and facilitate the broad adoption of consistent data security measures on a global scale.

For more information referenced in this blog, please review this document:  https://www.pcisecuritystandards.org/documents/PCI_DSS_v3-2.pdf.  PCI DSS provides a set of security standards to follow in order to protect payment account data.  PCI DSS applies to all entities involved in payment card processing—including merchants, processors, acquirers, issuers, and service providers. PCI DSS also applies to all other entities that store, process or transmit cardholder data (CHD) and/or sensitive authentication data (SAD). 

12 High Level Steps Toward Credit Card Processing PCI Compliance:

  1. Install and maintain a firewall configuration to protect cardholder data
  2. Do not use vendor-supplied defaults for system passwords and other
    security parameters
  3. Protect stored cardholder data
  4. Encrypt transmission of cardholder data across open, public networks
  5. Protect all systems against malware and regularly update anti-virus software or programs
  6. Develop and maintain secure systems and applications
  7. Restrict access to cardholder data by business need-to-know
  8. Identify and authenticate access to system components
  9. Restrict physical access to cardholder data
  10. Track and monitor all access to network resources and cardholder data
  11. Regularly test security systems and processes
  12. Maintain a policy that addresses information security for all personnel

For more details on these 12 steps, follow the PCI DSS requirements and testing procedures outlined on page 20-115 of the PCI DSS document provided  here:  

This document, PCI Data Security Standard Requirements and Security Assessment Procedures, combines the 12 PCI DSS requirements and corresponding testing procedures into a security assessment tool. It is designed for use during PCI DSS compliance assessments as part of an entity’s validation process. 

To get your business protected with credit card processing PCI Compliance, you can also hire an expert like the team at APS Payments.  We help remove the headache of compliance and work on your behalf to reduce any fees you’ve collected.   

Contact APS Payments today to find out how they can keep your company PCI compliant and help you streamline your payments.

New Call-to-action

APS Payments enables you to cut costs and offers the following streamlined credit card processing features:

  1. Convenient 24 hour access to payment processing and reporting
  2. Automated recurring billing
  3. Improved cash flow
  4. Fraud detection and prevention (volume thresholds, risk parameters)
  5. Reduce invoicing costs 
  6. No additional licensing fees
  7. Virtual Terminals (no integration needed, no software to install, simply use your web browser to securely log in to process transactions)
  8. Credit card tokenization for secure access to future customer transactions
  9. Real-time Payment Gateway 
  10. Level 3 supported gateway for US accounts, (significant savings for business to government or business to business transactions)
  11. Batch processing when real time approvals are not required 
  12. PCI-DSS compliant at no additional cost
  13. Some of the lowest American Express fees in the entire industry!
  14. Next Day Funding including American Express making reconciliation process easier

 

David Harper
Written by David Harper

Post a Comment