|
|
| Payment Card Industry Data Security Standard (PCI DSS) Compliance |
The Payment Card Industry Data Security Standard (PCI DSS) is a world-wide benchmark mandated by the card schemes for the protection of cardholder identity and transaction information. To help organisations ensure that they are compliant with this new standard, The Logic Group has combined its well-established specialisms in card transaction processing and security consultancy to offer a package of PCI compliance consulting services that cover initial risk assessment through to compliance certification.
In recent years, cardholder security breaches have seriously harmed company reputations and damaged consumer trust and confidence. According to the DTI Security Breaches Survey, 64% of large companies reported staff misuse of IT systems, 39% reported unauthorised access by outsiders (including hacking attempts) and 49% reported computer-related theft or fraud. The average cost to a large company of a serious security incident is in the order of £120,000. To address these issues, Visa and MasterCard have developed the PCI data security standard in order to restore consumer confidence in card payments. The PCI standard aims to give cardholders the assurance that their card details are safe and secure when their debit or credit card is offered at the point of sale, over the Internet, on the phone or through mail order.
Merchants that do not comply with the standard face the prospect of substantial fines imposed by the card schemes in the order of hundreds of thousands of pounds or of being permanently barred from the card acceptance programme, should a security breach occur which involves their systems or processes. Although the initial focus is on online transactions, PCI compliance applies to any organisation that stores, processes or transmits cardholder data and consequently effects merchants with physical stores as well as banks, processors and service providers.
The Logic Group PCI compliance consultancy service includes risk assessment to identify non-compliant areas, followed by a set of remediation services to address any identified areas. The group will manage the overall project with the PCI compliance audit and certification being conducted by an independent qualified security assessor, ensuring that organisations can have confidence in the integrity of the audit. Our project managers have delivered many complex and multi-disciplinary IT projects on a national and international basis, using proven methodologies, such as Prince2, and delivered to a set of clearly defined milestones.
Logic Group Software Products
The majority of our software solutions are impacted by the PCI DSS standard. We have produced a series of communications to highlight the impacted products and detail the enhancements being undertaken to ensure compliance with the PCI DSS standard. Customers and partners can find this information by logging onto The Logic Group's extranet site, eXtra.
The latest communication on PCI DSS relates to the product roadmap for PCI compliance. This can be accessed through The Logic Group extranet site.
Enhanced Security Solution
The Logic Group Enhanced Security Solution has been developed to provide a path to PCI DSS compliance. It is made available as pre-defined packages of products and services that have been created specifically to help customers meet the requirements of the PCI Data Security Standard.
To view the PCI Enhanced Security Solution Product Sheet click here...
| PCI Compliance Consultancy Benefits: |
• |
Compliance with card security programmes (including the Visa Account Information Security Programme and MasterCard Site Data Protection Programme), avoiding card scheme penalties for non-compliance |
• |
PCI compliance identifies an organisation as one that upholds best business practise |
• |
Increased consumer confidence and spending |
• |
PCI compliance protects against potential loss of revenue and unwanted legal costs |
• |
Reduced cardholder disputes and costs resulting from fraudulent transactions generated by compromised data |
• |
PCI compliance protects public reputations and good customer relationships |
|
|