Visa creates guidance for merchants wanting to encrypt #PCI

Visa on Monday released a best practices document for merchants considering adoption of end-to-end encryption, an emerging technology used to mask cardholder data from point-of-swipe through processing.
The guidance is meant to fill a temporary void until industry standards are established by the American National Standards Institute, Jennifer Fischer, senior business leader in Visa’s payment system [...]

Rising Costs And a PCI Upgrade Drive Gas Sellers to Reconsider PIN Debit

Rising processing costs and Visa Inc.’s mandate that point-of-sale terminals be upgraded to do Triple-DES encryption for PIN-based debit transactions are prompting gas sellers to rethink PIN debit acceptance.
via News.

PCI Report Poses a Quandary: Where Did 1.5 Million Merchants Go?

Visa’s latest report, posted in mid-August, reveals another curious numerical quirk. It estimates the number of Level 4 merchants at about 5 million. But in a PCI report for June 2007, Visa estimated the number of Level 4 merchants at about 6.5 million, says Gartner Inc. technology and security analyst Avivah Litan. She interprets that [...]

MasterCard Vs. Visa: Dueling Compliance Philosophies

People don’t seem to “get” MasterCard. For most of the last 4 years, MasterCard has been criticized for their apparent willingness to let Visa play the “bad guy” who issues fines to acquiring banks (and, through them, to merchants), who extends the PCI standards to application vendors (through PABP, now PA-DSS) and who generally takes [...]

Making PCI Stand For Coordination & Impact : Daniel Wallace

Onsite PCI assessments are not cheap. First make certain that you have to comply with the onsite assessment requirement.
Although all of the major card brands are partners in PCI-DSS the number of transactions are counted by individual card brand.
For example, a merchant that processes 2 million credit card transactions will not necessarily be a Level [...]

MasterCard Gets PCI Tough With Level 2 Retailers?

MasterCard has changed its PCI rules and is now insisting that all Level 2 merchants have on-site assessments.
“This is a dramatic change from the current, industry wide requirement of self-assessing for merchants processing less than six million transactions annually,” wrote Branden Williams, in his excellent Security Convergence Blog, which seems to have broken the story [...]

RBS Gets an OK on PCI, But Is It Back in Visa’s Good Graces

Atlanta-based RBS WorldPay didn’t say anything in its news release about if or when it would reappear on Visa Inc.’s widely watched list of PCI-compliant processors. The company is not on the current list posted on Visa’s risk-management site for merchants. Typically, an acquirer sends its annual report of validated PCI compliance to Visa for [...]

U.S. PCI DSS Compliance Validation Update as of 03/31/09

VISA CISP U.S. PCI DSS Compliance Validation Update as of 03/31/09
http://usa.visa.com/download/merchants/cisp_pcidss_compliancestats.pdf.

Heartland Hit With $12M Breach Tab – InternetNews.com

Compliance was already on every manager’s mind before Heartland Payment Systems reported that a breach early this year cost it $12.6 million during Q1, 2009 in expenses and accruals.
Of those costs, $6 million were in fines from MasterCard and almost $1 million from Visa for alleged failures in PCI compliance.
via Heartland Hit With $12M Breach [...]

Heartland Payment Systems (HPY…

Heartland Payment Systems (HPY) has made it back onto Visa’s list of PCI DSS Validated Service Providers. The announcement comes almost …