No thanks, stay here.  

  We notice you are visiting from a U.S. Internet provider. Switch to our U.S. website.

Latest Industry News

Merchant Account

Credit Card Processing

Point-of-Sale Terminals

Security and Fraud

Press Releases


Get a Rate Quote
Call Us Today
Find us on Facebook

Industry News

Expert: PCI compliance not optional, and non-compliance can get costly

By Joseph Trigliari

05/02/2010 - Payment processing security - and the requisite PCI-DSS compliance - can be daunting to businesses of any size, but especially for smaller merchants that do not have an IT department to help them make sense of the requirements.

To help address some commonly asked questions about PCI-DSS compliance, security solutions provider Trustwave and the Electronic Transactions Association hosted a webinar in late January, the highlights of which were presented by payment processing magazine the Green Sheet.

The number one take-away point of the webinar, the magazine reported, was that PCI compliance is not optional.

"Failure to achieve and maintain PCI standards can result in noncompliance fees from the acquiring bank that are assessed on a regular basis, usually monthly," Kevin Mott, enterprise sales engineer for Trustwave, said in the webinar, the magazine reported.

Mott also added that the costs of reversing damages incurred by a breach are "significant," and that a breach brings "regulatory fines and penalties, higher costs to process card transactions or even losing the ability to do so completely, and stricter compliance requirements for the merchant."

The breach of Heartland Payment Systems is a good example - the company told SearchFinancialSecurity.com in May 2009 that the breach cost the firm $12.6 million, and this was before its recent multi-million dollar settlements to American Express and Visa.ADNFCR-2514-ID-19601374-ADNFCR

Related News - Security and Fraud

Cloud computing and payment processing security: Not mutually exclusive after all?

19/03/2010

With cloud computing becoming a more and more popular and attractive IT model for organizations, one serious concern that has arisen is what the implications are for PCI compliance and overall payment processing security.

Full Article

Discovered chip and pin exploit may not pose significant real-world threat to payment processing security

19/03/2010

The recent report from Cambridge University researchers showing the vulnerability of the chip card payment processing system to fraud may not have that many real-world consequences, said the Financial Post.

Full Article

PCI DSS compensating controls are not shortcuts, experts remind businesses

18/03/2010

Many businesses think of compensating controls as a shortcut to payment processing compliance. However, compensating controls in reality are nothing near a shortcut - they require research and analysis to correctly implement.

Full Article

PCI SSC: Level 4 merchants shouldn't hold breath for tiered payment processing security requirements

16/03/2010

A common complaint among small, Level 4 merchants is that the PCI compliance mandates are too intense and burdensome for them, and are better suited to larger merchants.

Full Article