Aug 30 2005

Visa PCI Standards

Published by Martin at 7:31 pm under Simple Security

Visa Payment Card Industry Data Security Standards

If you haven’t already read this document, you probably should. This is a minimum standard set forth to protect your credit card data when you use it to purchase something from a merchant. And it bears repeating, minimum standards. I hope most merchants use this as a starting point and continue from there. The folks at CardSystems Solutions Inc. forgot several of the points in this document, such as:

3.1 Keep cardholder storage to a minimum.

I’m sure keeping live customer data for testing breaks this and several other rules.

[Slashdot] [Digg] [Reddit] [del.icio.us] [Facebook] [Technorati] [Google] [StumbleUpon]

One Response to “Visa PCI Standards”

  1. Phil H.on 30 Aug 2005 at 8:28 pm

    Too right, Martin. See http://www.openservice.com/blogs/2005/06/mastercard-pci-sdp-framework.jsp Got a lot of comments on this one - not everyone agreed with my cynical and strict interpretation of the standards and their enforcement.