Why Choose DPD
  Products and Services
  Privacy and Confidentiality
  Portfolio
  Testimonials


  Careers Available
  30-05-2009
   DPD Software Ltd. is expandi...
  click here for the full story

  Sonicwall Announces BOX-TO-BOX back-up capabliity
  31-07-2007
   June 13 , 2007SONICWALL ...
  click here for the full story

  Symbol Technologies Earns Five-Star Rating
  06-04-2005
  Symbol Technologies Earns Five...
  click here for the full story


What is PCI compliance?
2007-10-31 06:00:00

We have had requests from concerned clients wondering what is this new PCI compliance that has been coming at them. This small note is meant to serve as a brief description of what this is all about. For a more formal explaination contact the PCI Standards Council.

Payment Card Industry (PCI) is a Standards Council that develoves security requirements for credit card companies
If you issue, assess or process credit card data, you can join PCI. It's an industry standard not a governmental one so it is globally applicable. The key is to have corporate policies in place and follow them

Basically, what is required for PCI Compliance?
  • Build and Maintain a Secure Network
    Install and maintain a adequate infrastructure to protect cardholder data (firewalls, secure access to your servers)
  • Do not use vendor-supplied defaults for system passwords and other security parameters (like the ones that come with firewalls).
  • Protect Cardholder Data
    • Protect any stored cardholder data (or avoid having to store card holder data by using a 3rd party certified service provider)
    • Encrypt transmission of cardholder data across open, public networks (Use SSL keys on your web site).
    • Maintain a Vulnerability Management Program.
    • Use and regularly update anti-virus software.
    • Develop and maintain secure systems and applications.
    • Implement Strong Access Control Measures.
    • Restrict access to cardholder data by business need-to-know.
    • Assign a unique ID to each person with computer access.
    • Restrict physical access to cardholder data.
    • Regularly Monitor and Test Networks.
    • Track and monitor all access to network resources and cardholder data.
    • Regularly test security systems and processes.
  • Maintain an Information Security Policy.
  • Maintain a policy that addresses information security.

 

Sell-It! Inventory Management | Privacy and Confidentiality | Sell-It! Catalogue Management | Comcash Hospitality System | Mission Statement | Sell-It! Content management | Sell-It! ASP Module Basic Functionality | Sell-It! Business Process Support | Voucher Entry System - Taxi cab charge | Philosophy | Foreword | Why Choose DPD | Careers at DPD Software Ltd | Adagio Accounting Software |
Affiliations | Portfolio | Testimonials | Contact Us |

Built and Managed by the Team at DPD Software Ltd.