110 likes | 231 Views
Protecting Your Business from Card Data Theft. Presenter: Lucas Zaichkowsky. Why should I care?. The consequences of a card data security breach can be catastrophic to your business, resulting in: Lost customers Damaged reputation Hefty fines Costly audits Litigation.
E N D
Protecting Your Business fromCard Data Theft Presenter: Lucas Zaichkowsky
Why should I care? The consequences of a card data security breach can be catastrophic to your business, resulting in: • Lost customers • Damaged reputation • Hefty fines • Costly audits • Litigation
What is PCI compliance? PCI compliance is required for merchants and service providers that deal with cardholder data.
Who requires PCI compliance? Payment Card Industry Security Standards Protection of Cardholder Payment Data PCI Security Standards and Compliance
What is PCI Validation? • Annual SAQ recommended • Quarterly network scan by ASV, if applicable • Compliance validation requirements set by acquirer
The top reason to validate PCI compliance Visa Mandate: By July 1st, 2010, all merchants must use only PA-DSS or PABP-compliant applications
Three steps toward PCI compliance • Upgrade to a PABP or PA-DSS compliant version of your POS software • Ensure your system is securely configured • Join Mercury’s PCI Partner Program
Do you have a security checklist? Know the SAQ and make sure you understand what you need to do.
Common Problems and Solutions Problem: Non-PCI compliant remote access • Solution: LogMeIn Central with their two factor authentication Problem: Outdated software • Solution: Most current version of your POS software Problem: PCI compliance • Solution: Mercury’s PCI Partner Program
Mercury’s PCI Partner Program • Discounted security assessor services • Online annual merchant SAQs and network scans • Automated reporting and results • Breach reimbursement for qualified merchants