26/08/2010 -
As part of its continued commitment to security, Visa has announced another set of global industry best practices for payment application vendors, integrators and resellers that employ payment-related systems such as credit-debit machines.The new practices, developed in collaboration with the SANS Institute, are designed to be a companion to the Payment Card Industry Payment Application Data Security Standards, which regulate payment applications from storing prohibited data.
Due to a quickly changing security and technology environment, Visa introduced the standards to ensure that merchant payment application are not left open to data theft. The practices will require merchants to enact such measures including performing background on new employees and contractors, being PA-DSS compliant and maintaining software security training and certification curriculum.
"Visa's best practices can help mitigate security issues that may lead to data compromises, but it's vitally important to maintain ongoing compliance with the PCI DSS, which remains the best protection against a data compromise," said Eduardo Perez, head of Visa's global payment system security.
In July, the credit card company released global best practices for card data tokenization, which requires credit or debit card numbers on receipts or print-outs to be replaced by proxy numbers.

We notice you are visiting from a U.S. Internet provider. 




