Kubera Payments
604.484.9278 Free statement review
Security

PCI Compliance 3.0 Overview - Part 2

The changes to PCI appear to be minor in the grand scheme of things, however the Payment Card Industry Data Security Standards 3.0 (PCI DSS 3.0) has great advantages. These include clarity on security standards, real-life examples and new standards that are flexible – allowing merchants to meet the requirements of PCI DSS 3.0.

In Part 1 we went over the basis of the update and named some key components. Below you will find more details on what PCI Compliance 3.0 means to your business.

What are the key themes of PCI DSS 3.0?

Education & Awareness

A More Customizable Approach

Security Is A Shared Responsibility

How will this affect your business?

Audit Costs

The new standards could place more responsibility on organizations, as there will be a clarified common definition and approach to achieve compliance. These standardizations will decrease inconsistencies with assessment. It’s possible that this may increase/decrease the costs of audits, as it may be more time consuming or efficient.

Increased maintenance

The new requirement to “maintain an inventory of system components in scope for PCI DSS” may create volatility for in-scope systems which would ultimately affect your organization should you have to constantly update to these in-scope systems.

Terminal Protection

It is still not certain what the Council will recommend however the update will focus on refined training of POS devices to avoid theft/breaches. There may be technological components associated however it’s unknown.

Frequent Security Breaches

An updated list of common vulnerabilities is to be provided. This could constrain organizations to worry only about what’s on this list and not beyond. Increasing merchants and organizations risk to data breaches.The intentions of these updates are in the best interest of the merchant and organizations. In fact they should be easier for merchants to follow and stay safe from credit card fraud.

Security is a duty. Companies should remind themselves that their customers are entrusting them with their personal data.

Want to stay ahead of the curve in Data Security?

Contact us to learn more about PCI Compliance.

A recommended payments partner of the BC Chamber of Commerce

Find out what you are actually paying

Send us a recent statement. We read it line by line and come back within 1 to 2 business days with exactly what you are paying and whether the structure matches how you run. No obligation, just numbers.

Get my free statement review

Built for businesses that expect more from their payment systems.

More from the blog