DATE: 3/28/2014 GETTING STARTED WITH THE INTEGRITY EASY PCI PROGRAM Presenter : Integrity Payment Systems Title: Easy PCI Program.

Slides:



Advertisements
Similar presentations
Surviving the PCI Self -Assessment James Placer, CISSP West Michigan Cisco Users Group Leadership Board.
Advertisements

Payment Card Industry Data Security Standard AAFA ISC/SCLC Fall 08.
National Bank of Dominica Ltd Merchant Seminar Facilitator: Janiere Frank Fraud & Compliance Analyst June 16, 2011.
Evolving Challenges of PCI Compliance Charlie Wood, PCI QSA, CRISC, CISA Principal, The Bonadio Group January 10, 2014.
.. PCI Payment Card Industry Compliance October 2012 Presented By: Jason P. Rusch.
The Payment Card Industry Data Security Standard (PCI DSS)
PCI DSS for Retail Industry
PCI Compliance: The Gateway to Paradise PCI Compliance: The Gateway to Paradise.
MARTAs Road to PCI Compliance 1 Presenter: Yolanda Curtis, PMP AFC Project Manager.
PCI-DSS Erin Benedictson Information Security Analyst AAA Oregon/Idaho.
Complying With Payment Card Industry Data Security Standards (PCI DSS)
This refresher course will:
JEFF WILLIAMS INFORMATION SECURITY OFFICER CALIFORNIA STATE UNIVERSITY, SACRAMENTO Payment Card Industry Data Security Standard (PCI DSS) Compliance.
Property of CampusGuard Compliance With The PCI DSS.
Credit Card Compliance Regulations Mandated by the Payment Card Industry Standards Council Accounting and Financial Services.
Payment Card PCI DSS Compliance SAQ-D Training Accounts Receivable Services, Controller’s Office 7/1/2012.
© Vendor Safe Technologies 2008 B REACHES BY M ERCHANT T YPE 70% 1% 9% 20% Data provided by Visa Approved QIRA November 2008 from 475 Forensic Audits.
Presented by : Vivian Eberhardt, Supervisor Cash and Credit Operations
PCI 101. Trustwave Corporate Profile Copyright Trustwave 2008 Confidential 2009 SC Magazine “Recommended” Managed Security Services Forrester 9 out of.
PCI Compliance Forrest Walsh Director, Information Technology California Chamber of Commerce.
Data Security Standard. What Is PCI ? Who Does It Apply To ? Who Is Involved With the Compliance Process ? How We Can Stay Compliant ?
Visa Cemea Account Information Security (AIS) Programme
Credit Card Changes that Impact You! Changes to Accounts Receivable, Cash Receipts and Student Billing 7.77 Wanda Mahon & Bucky Wall Corporate Readiness.
Payment Card Industry (PCI) Data Security Standard (DSS) Compliance Commonwealth of Massachusetts Office of the State Comptroller March 2007.
Why Comply with PCI Security Standards?
Northern KY University Merchant Training
PCI's Changing Environment – “What You Need to Know & Why You Need To Know It.” Stephen Scott – PCI QSA, CISA, CISSP
Disclaimer Copyright Michael Chapple and Jane Drews, This work is the intellectual property of the authors. Permission is granted for this material.
PCI DSS The Payment Card Industry (PCI) Data Security Standard (DSS) was developed by the PCI Security Standards Council to encourage and enhance cardholder.
Payment Card Industry Data Security Standard (PCI DSS) By Roni Argetsinger
PCI 3.0 Boot Camp Payment Card Industry Data Security Standards 3.0.
The ABC’s of PCI DSS Eric Beschinski Relationship Manager Utility Payment Conference Kay Limbaugh Specialist, Electronic Bills & Payments &
MasterCard Site Data Protection Program Program Alignment.
PCI DSS Managed Service Solution October 18, 2011.
Protecting Your Credit Card Security Environment (PCI) September 26, 2012 Jacob Arthur, CPA, QSA, CEH Timothy Agee, CISA, CGEIT, QSA FDH Consulting Frasier,
An Introduction to PCI Compliance. Data Breach Trends About PCI-SSC 12 Requirements of PCI-DSS Establishing Your Validation Level PCI Basics Benefits.
Visa Europe Confidential PCI DSS Protecting your business Lara Fiorani, Visa Europe Basel 25 April, 2006.
The Payment Card Industry (PCI) Data Security Standard: What it is and why you might find it useful Fred Hopper, CISSP TASK - 27 March 2007.
PCI requirements in business language What can happen with the cardholder data?
Brian Cloud August 06, Overall Digital Security  What is Digital Security  Murphy’s Law Since 2005, over 263M records breeched (privacyreports.com)
PCI: As complicated as it sounds? Gerry Lawrence CTO
PCI DSS Readiness Presented By: Paul Grégoire, CISSP, QSA, PA-QSA
Payment Card PCI DSS Compliance SAQ-A Training Accounts Receivable Services, Controller’s Office 7/1/2012.
Identity Protection (Red Flag/PCI Compliance/SSN Remediation) SACUBO Fall Workshop Savannah, GA November 3, 2009.
Introduction To Plastic Card Industry (PCI) Data Security Standards (DSS) April 28,2012 Cathy Pettis, SVP ICUL Service Corporation.
Walter Conway, QSA 403 Labs, LLC Sneak Preview: What to Expect from PCI DSS v. 2.0  Changes  Clarifications  Guidance.
PCI Compliance: The Gateway to Paradise PCI Compliance: The Gateway to Paradise.
Data Security and Payment Card Acceptance Presented by: Brian Ridder Senior Vice President First National September 10, 2009.
Payment Card PCI DSS Compliance SAQ-B Training Accounts Receivable Services, Controller’s Office 7/1/2012.
ThankQ Solutions Pty Ltd Tech Forum 2013 PCI Compliance.
e-Learning Module Credit/Debit Payment Card Acceptance and Security
Langara College PCI Awareness Training
BUSINESS CLARITY ™ PCI – The Pathway to Compliance.
Jon Bonham, CISA, QSA Director, ERC
Standards in Use. EMV June 16Caribbean Electronic Payments LLC2.
The Payment Card Industry Data Security Standard (PCI DSS) is a proprietary information security standard for organizations that handle branded credit.
WHAT NEW, WHAT NEXT IN PAYMENT PROCESSING. EMV WHAT IS EMV? 3  An acronym created by Europay ®, MasterCard ® and Visa ®  The global standard for the.
PCI 3.1 Boot Camp Payment Card Industry Data Security Standards 3.1.
Payment Card Industry (PCI) Rules and Standards
PCI-DSS Security Awareness
Payment Card Industry (PCI) Data Security Standard (DSS) Compliance
Payment card industry data security standards
Internet Payment.
Breaches by Merchant Type
Payment Card Industry (PCI) Data Security Standard (DSS) Compliance
PCI Compliance : Whys and wherefores
PCI DSS Erin Carrick.
Payment Card Industry (PCI) Data Security Standard (DSS) Compliance
Utility Payment Conference
Presented by: Jeff Soukup
Presentation transcript:

DATE: 3/28/2014 GETTING STARTED WITH THE INTEGRITY EASY PCI PROGRAM Presenter : Integrity Payment Systems Title: Easy PCI Program

1.Integrity Easy PCI Program 2.About Trustwave 3.PCI Basics 4.The Risk of Non-Compliance 5.Using TrustKeeper PCI Manager AGENDA

Who We Are WHO IS TRUSTWAVE? Company facts and figures ESTABLISHED TRUSTED GLOBAL GROWING INNOVATING 1995 BY OVER 2.5 MILLION BUSINESSES NOW OVER 1,200 EMPLOYEES CUSTOMERS IN 96 COUNTIRES OVER 50 PATENTS & COUNTING Global Threat Database feeds technologies and services with threat intelligence Selected by more enterprises for compliance – chosen more often than the next 10 service providers combined Industry’s most holistic portfolio of security technologies delivered through TrustKeeper®

PCI BASICS The Payment Card Industry Data Security Standard (PCI DSS) is a set of 12 requirements designed to protect cardholder data It is applied to all merchants, systems, networks and applications that process, store, and/or transmit card numbers PCI DSS Defined

PCI BASICS Cardholder data is any personally identifiable data associated with a cardholder, including: –Primary Account Number –Expiry Date –Name All merchants accepting debit/credit cards must comply with the PCI DSS at all times. PCI DSS Defined

PCI DSS Self-Assessment Questionnaire (SAQ) –A questionnaire designed to assist organizations in self-evaluating their IT and payment processing environment Vulnerability Scanning –Helps secure your business by identifying weaknesses in your network and applications Qualified Security Assessor (QSA) –Certified to validate that a company is compliant with the PCI DSS Approved Scanning Vendor (ASV) –Certified to perform vulnerability scanning Key Terms

THE RISK OF NON-COMPLIANCE Large corporations that have been breached make the news daily What doesn’t make the news is that small merchants are at the greatest risk of a data breach Trustwave found that 90% of merchants that have data stolen are small businesses

PCI DSS COMPLIANCE Fundamental Best Security Practices –Avoid fraud –Helps to understand own system better –Clarifies where data is stored Upholds Brand Name –Adds value to name –Increases consumer confidence Non-compliant, compromised business could expect: –Damage to their brand/reputation –Investigation costs –Remediation costs –Fines and fees Sound Business Practice

Integrity Data Breach Protection Data Breach Coverage is a new and unique indemnification program designed specifically to meet the expenses resulting from a suspected or actual breach of credit card data. Audit Costs – Employee Theft, Fraud, Stolen Computers, Hacked Networks, etc. Why do I need Data Breach Coverage? If you suffer a suspected or actual data breach, you could incur thousands upon thousands of dollars of unexpected costs in the form of audit expenses, card monitoring and replacement expenses, and fines. These costs could significantly affect revenue... and even jeopardize the existence of your business. This inexpensive program reduces your monetary exposure when a presumed or actual data compromise occurs, thus providing peace of mind! $100,000 in Protection for Your Merchant

Other Data Breach FAQ’s 85% of Data Breaches happen in small, level 4 merchant locations. No deductible on the $100,000 Insurance Policy Even if you are compliant, a data breach can still happen! Claims are processed quickly, within 30 days. You will have an insurance company working to reduce the fees. How big a problem is this?

GETTING STARTED WITH TRUSTKEEPER PCI MANAGER

USING TRUSTKEEPER PCI MANAGER

REGISTRATION – THREE EASY STEPS Step 1: Enter merchant information

REGISTRATION – THREE EASY STEPS Step 2: How does your business accept credit cards?

REGISTRATION – THREE EASY STEPS Step 3: Create User Account and Register

SAQ OR PCI WIZARD? Simplify completion by selecting the Step-By-Step Wizard

USING THE PCI WIZARD

PCI WIZARD (INET-PA)

PCI WIZARD Click the “?” icon for help

PCI WIZARD Click the “i” icon to learn why it’s important

PCI WIZARD Answer a question wrong...

PCI WIZARD A task is added to the To Do List

SCAN SETUP Add a scan location

SCAN SETUP E-commerce website or physical location?

SCAN SETUP Enter information about the scan location

CERTIFICATE OF COMPLIANCE

TRUSTED COMMERCE SEAL

SECURITY POLICY ADVISOR Sample security policies and supporting documents

SECURITY AWARENESS EDUCATION Select training based on different industries and employee roles

RESOURCES PCI Security Standards Council: – VISA CISP: – MasterCard SDP: – Discover DISC – American Express –

QUESTIONS? Integrity Easy PCI Starting Page: – –Have your Merchant ID handy Customer Support – Trustwave –(877) We’re here to help!

THANK YOU