Suggested search terms: geniusvx520ictbank accountfees

Articles tagged: cardholder data

What is PCI-DSS?

The Payment Card Industry Data Security Standards (PCI-DSS) are a set of requirements that you must follow to protect sensitive cardholder data.
Sensitive cardholder data is information from a payment card that an issuing bank can use to authorize a transaction.… Read More “What is PCI-DSS?”

How can I help keep sensitive cardholder data secure?

To help keep sensitive cardholder data secure, we recommend that you do the following:

Keep your software and applications up to date

Make sure you have the latest updates for any software or applications on your computer or POS system. For example, you need to keep the following up to date:

  • Antivirus software
  • Operating system
  • POS applications

Restrict access to sensitive cardholder data

You can restrict access to sensitive cardholder data and by doing the following:

  • Keep back-office equipment away from the front of your store.
Read More “How can I help keep sensitive cardholder data secure?”

What do I need to do to comply with PCI-DSS?

To comply with PCI-DSS requirements, you must do the following:

  • Use equipment and systems that comply with the PCI-DSS’s requirements for processing and storing sensitive cardholder data
  • Educate your employees about the best practices for working with cardholder data
  • Complete an annual self-assessment questionnaire (SAQ) or an on-site audit by an external assessor each year
  • Carry out software scans to discover potential flaws in your system

Best practices

You should also follow our best practices to help you secure your network, which include the following:

Do

  • Use only PCI-DSS approved PIN entry devices
  • Use a properly configured firewall on your network and computers
  • Use strong passwords and change the default passwords on hardware and software

Don’t

  • Share passwords with employees
  • Use passwords more than once
  • Use weak or insecure protocols for connecting to your access point
  • Connect to access points you don’t trust or haven’t set up yourself
  • Leave your POS devices unattended