Who needs a pci-dss assessment?



Any organisation irrespective of size that stores, processes or transmits credit card holder data must undertake a PCI DSS assessment, this applies to both service providers and merchants.

The PCI DSS is a worldwide standard designed to help businesses process payments safely and securely. By becoming PCI DSS compliant, this demonstrates that an organisation takes handling cardholder data seriously and values its customers.

PCI
Standards


The PCI Data Security Standard consists of the following steps that mimic security best practices:

 
  • Build and maintain a secure network
  • Protect cardholder data
  • Maintain a vulnerability management programme
  • Implement strong access control measures
  • Regularly monitor and test networks
  • Maintain an information security policy