America Outdoors
Don't miss the most powerful
3 days of marketing and management seminars, industry insights, networking, and trade show deals for your
outfitter business!

> Program Agenda
> Registration Info.
> Tradeshow Exhibitors
> Join AO
> Questions?
 

 

 
Member Resources Member Benefits
& Join HERE
Government
Affairs
Marketing &
Management Conference
About
America Outdoors
 > HOME  > CONTACT US  > MEDIA & NEWS  > ADVERTISING  > JOIN AMERICA OUTDOORS

PCI Compliance Update - Yes, this means you too!

The Payment Card Industry, including MasterCard and Visa, require banks, online merchants and Member Service Providers (MSPs) to protect cardholder information by adhering to a set of security standards. The Payment Card Industry security standard (PCI) includes MasterCard's Site Data Protection (SDP) program and Visa's Cardholder Information Security Program (CISP).

Good news for America Outdoors members! LaSalle has postponed implementation of the PCI non-response fee to at least January. This should provide relief for members immersed in their busy summer season.

To clarify the requirements, merchants that use dial terminals for processing and do not store credit card information on a computer only need to complete the Self-Assessment Questionnaire. Members can obtain an abbreviated version (15 questions) from SecurityMetrics for a nominal fee. SecurityMetrics can be reached at 1-800-557-4797 or at their website of www.securitymetrics.com. If members chose to complete the questionnaire independently, PDF and Word versions can be located at https://www.pcisecuritystandards.org/tech/supporting_documents.htm. Completed questionnaires should be emailed to melane@bankofamerica.com.

Here are some additional considerations for merchants utilizing networks, websites, or store credit card information. These members will be required to have vulnerability scans performed and submit the results to LaSalle. The guidelines below are commonly referred to as the Digital Dozen. Many of the guidelines would benefit all applications, not just credit card data.

Build and Maintain a Secure Network

Requirement 1: Install and maintain a firewall configuration to protect cardholder data
Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters

Protect Cardholder Data

Requirement 3: Protect stored cardholder data
Requirement 4: Encrypt transmission of cardholder data across open, public networks

Maintain a Vulnerability Management Program

Requirement 5: Use and regularly update anti-virus software
Requirement 6: Develop and maintain secure systems and applications

Implement Strong Access Control Measures

Requirement 7: Restrict access to cardholder data by business need-to-know
Requirement 8: Assign a unique ID to each person with computer access
Requirement 9: Restrict physical access to cardholder data

Regularly Monitor and Test Networks

Requirement 10: Track and monitor all access to network resources and cardholder data
Requirement 11: Regularly test security systems and processes

Maintain an Information Security Policy

Requirement 12: Maintain a policy that addresses information security

 
 
 
 

Home  I   Contact Us  I  Privacy Policy  I   Sponsors I  Plan Your Vacation I Links  I  AO Newsletters  I  Hot Issues I   Sitemap

© 2007 America Outdoors PO Box 10847, Knoxville, TN 37939     1-800-524-4814