International Payment Schemes & Standards. Usman Qureshi Head Business Development torange Soft

Size: px
Start display at page:

Download "International Payment Schemes & Standards. Usman Qureshi Head Business Development torange Soft"

Transcription

1 International Payment Schemes & Standards Usman Qureshi Head Business Development torange Soft

2 Agenda The International card schemes Bank Card Associations Membership The integration dilemma How do we integrate? The business dilemma How do we work together? Domestic card schemes being launched among International Card Schemes Standardizing the banking IT infrastructure

3 The International Card Schemes

4 International Payment Systems The Card Schemes

5 The Market Share Total 8 Billion Payment Cards in circulation 29.2% Union Pay 28.6% Visa 20% Master Card 1.1% American Express 0.8% JCB 0.7% Discovery Iran currently has more than 300 million Payment Cards circulating cbi.ir

6 The Coverage by the Card Schemes Visa Master Card Discovery Iran Merchants 40 Million 34 Million 28.8 Million 2.6 Million ATMs 547, , Million 36,000 Iran has the largest ATM network in MEA and also the fastest growing in the ME RBR UK

7 Behpardakht Mellat 24th Parsian Electronic Co. 52nd Sadad Informatics 67th Saman e-pay 69th Iran Kish 82nd Pasargad Elec Payment 105th Asan Pardakht Persian 119th Fanava Card 131

8 The Integration Dilemma How do we Integrate?

9 Anatomy of a Card Scheme Transaction Authorization Clearing Settlement SMS (Single Message) DMS (Dual Message)

10 Authorization

11 Clearing

12 Settlement

13 What needs to be done on the Front-End ATMs POS Terminal Kiosks Mobiles e-commerce

14 What needs to be done by the Acquirers/Merchant Banks Interchange Module

15 What needs to be done by the Acquirers/Merchant Banks Interchange Module

16 Associate/affiliate and participant/agent members can perform all of the principal membership functions except sponsor other members What needs to be done by the Issuer/Cardholder Banks Bank Membership Both associations have three types of membership: principal, associate (VISA)/affiliate (MasterCard), and participant (VISA)/agent (MasterCard); Each membership type conveys different privileges. Principal membership allows members to solicit cardholders and issue cards, solicit and sign merchants, and sponsor other financial institutions for membership in the association.

17 The Business Dilemma How do we work together?

18 Well Established Domestic Card Schemes STET in France Voca Link in UK BankServ in South Africa Knet in Kuwait Shetab and Shaparak in Iran

19 Domestic Card Schemes vs. International Card Schemes At one extreme, a country can have domestic solutions for domestic payment needs (which are typically 95% of the total) and use the international solutions for cross-border situations The other extreme is for international solutions to be used for all situations whether domestic or cross-border, and then there are also intermediate approaches.

20 Benefits of a Domestic Card Scheme According to National Payments Schemes: Drivers of Economic and Social Benefits? By John Chaplin Andrew Veitch Prof. Dr. Jürgen Bott There were three key findings that came from the research. 1) Domestic schemes are the best way to achieve low transaction costs 2) Domestic schemes also innovate better for local markets 3) Domestic schemes have participation and governance benefits

21 Domestic Card Schemes being launched among International Card Schemes

22 Domestic Card Schemes among International Card Schemes RuPay a project by NPCI (National Payment Corporation of India) Launched in May 2014 EMV Enabled Cards with user data Accepted at all the ATMs in India 90% of POS and 10,000 e-commerece wesbites Recently signed a deal with Amazon and Jetairways The network is growing by 3 million users a months Offers low value payment services Financial inclusion for the un-banked and under banked

23 Domestic Card Schemes among International Card Schemes Mercury Payment System in the UAE Part of the National Payment System Launched in summer 2013 Initially only for use in UAE Now partnered with Discovery to be used internationally

24 Domestic Card Schemes among International Card Schemes Rumbles in Russia Russia Heavily depends on the two major card schemes Visa/Master Card The Country tried to build a national Payment system several times but failed till In March 2014 the banks were sanctioned and Visa and MasterCard stopped their activities completely In July 2014 the card schemes resumed their operations in Russia with an agreement If service was disrupted then Russia would confiscate 25% of the schemes average daily turn over The law also stipulates that all the card operations in Russia should be cleared within its borders through a national payment system. The Payment System Pro 1000

25 Iran Iran is in a great situation where the domestic network is very mature. In this era of increasing globalization retail banks should support domestic payment schemes as well as participate actively in the international schemes.

26 Standardizing the Banking IT infrastructure

27 Standardize Information Security (ISMS) IT Management System (ITMS) Business Continuity (BCMS) Payment Card Industry, Data Security Standard (PCI DSS)

28 Information Security and ISO Process Approach This International Standard adopts a process approach for: Establishing, Implementing, Operating, Monitoring, Reviewing, Maintaining and Improving an Organization's ISMS.

29 Information Security and ISO Deliverables Gap Analysis Report Asset Inventory Risk Assessment Report Risk Treatment Plan List of the Control Statement of Applicability Information Security Policy Manual Information Security Policies and Procedures ISMS Templates, Forms and Procedures

30 ISO 20,000 for IT Service Management System ISO/IEC (20K) is the first international standard for IT Service Management. IT Service Management (ITSM) is a discipline for managing information technology (IT) systems, Centered on the customer's perspective of IT's contribution to the business. ITSM stands in contrast to technology-centered approaches to IT management and business interaction. The following represents a characteristic statement from the ITSM literature: Providers of IT services can no longer afford to focus on technology and their internal organization, they now have to consider the quality of the services they provide and focus on the relationship with customers.[1] ITSM is process-focused and relay on common Frameworks like ITIL

31 ISO 20,000 for IT Service Management System Deliverables A. Gap Analysis Report B. Policies, Procedures & Templates as per ISO 20,000 Incident Management Problem Management Change Management Release Management Capacity Management Information Security Availability Management IT Service Continuity Management IT Budget and Accounting Service Level Management and Service Reporting Configuration Management Supplier and Business Relationship Management C. Trainings D. Internal Audit and Internal Audit Report E. Certification

32 What is the source of Disaster? ISO 22301, Disaster Recovery & Business Continuity Management

33 Deliverables 1. BCM policy 2. BIA (business impact analysis) 3. Risk and threat assessment 4. BCM strategy 5. Awareness program 6. Training program 7. Incident management plans 8. BCM plans 9. Business Recovery Plans 10. Exercise schedule and reports 11. SLA and contracts 12. Internal Audit and Training 13. Management Review 14. Mock Audit 15. Certification Audit and Certification ISO 22301, Disaster Recovery &Business Continuity Management

34 PCI Security Standards Council (SSC) PCI DSS

35 PCI Key Players & Stakeholders PCI - DSS

36 The Big Picture PCI - DSS

37 Use the Right Tools & Software Use the right tools and software Know the right use of the tools

38 No Standardization is No Excuse Follow the International Standards if you wish to operate in the international world!

39 Thank You

What is SEPA? Fact Sheet. Streamlining Payments in Europe

What is SEPA? Fact Sheet. Streamlining Payments in Europe Fact Sheet Streamlining Payments in Europe The Single Euro Payments Area (SEPA) is the area where citizens, companies and other economic players will be able to make and receive payments in euros (whether

More information

ISO/IEC 20000 ITIL Service Management V.2 V s V.3 Project ACE Andy Evans Programme Director and Strategic Programme Advisor

ISO/IEC 20000 ITIL Service Management V.2 V s V.3 Project ACE Andy Evans Programme Director and Strategic Programme Advisor ISO/IEC 20000 ITIL Service Management V.2 V s V.3 Project ACE Andy Evans Programme Director and Strategic Programme Advisor Introduction Andy Evans 7 years with the Global Brand Leader in IT Service Management

More information

Domestic Payment Card Networks

Domestic Payment Card Networks Payments the way we see it Domestic Payment Card Networks Emerging opportunities and challenges Contents 1 Overview 3 2 Payment Card Network Landscape 4 2.1 Global Payment Card Industry 4 2.1 Processing

More information

Building A Framework-based Compliance Program. Richard E. Mackey, Jr. Vice President, SystemExperts Corp. dick.mackey@systemexperts.

Building A Framework-based Compliance Program. Richard E. Mackey, Jr. Vice President, SystemExperts Corp. dick.mackey@systemexperts. Building A Framework-based Compliance Program Richard E. Mackey, Jr. Vice President, SystemExperts Corp. dick.mackey@systemexperts.com Agenda The compliance process Assembling requirements Useful frameworks

More information

PCI DSS Overview. By Kishor Vaswani CEO, ControlCase

PCI DSS Overview. By Kishor Vaswani CEO, ControlCase PCI DSS Overview By Kishor Vaswani CEO, ControlCase Agenda About PCI DSS PCI DSS Applicability to Banks, Merchants and Service Providers PCI DSS Technical Requirements Overview of PCI DSS 3.0 Changes Key

More information

Meet The Family. Payment Security Standards

Meet The Family. Payment Security Standards Meet The Family Payment Security Standards Meet The Family Payment Security Standards Payment Processing Electronic payments are increasingly becoming part of our everyday lives. For most people, it can

More information

PCI DSS Compliance Services January 2016

PCI DSS Compliance Services January 2016 PCI DSS Compliance Services January 2016 20160104-Galitt-PCI DSS Compliance Services.pptx Agenda 1. Introduction 2. Overview of the PCI DSS standard 3. PCI DSS compliance approach Copyright Galitt 2 Introduction

More information

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different information systems.

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different information systems. PRODUCT FLYER General Routing Financial System is modular software suite designed to support enterprises providing a MOTO Gateway (Mail Order Telephone Order), complete with tokenization, multi-acquiring

More information

An Implementation Roadmap

An Implementation Roadmap An Implementation Roadmap The 2nd Abu Dhabi IT s Forum P J Corum, CSQA, CSTE, ITSM Managing Director Quality Assurance Institute Middle East and Africa Dubai, UAE Quality Assurance Institute Middle East

More information

AN OVERVIEW OF INFORMATION SECURITY STANDARDS

AN OVERVIEW OF INFORMATION SECURITY STANDARDS AN OVERVIEW OF INFORMATION SECURITY STANDARDS February 2008 The Government of the Hong Kong Special Administrative Region The contents of this document remain the property of, and may not be reproduced

More information

PCI Security Standards Council

PCI Security Standards Council PCI Security Standards Council Jeremy King, European Director 2013 Why PCI Matters Applying PCI How You Can Participate Agenda 2 Why PCI Matters Applying PCI How You Can Participate Agenda About the PCI

More information

ISO20000: What it is and how it relates to ITIL v3

ISO20000: What it is and how it relates to ITIL v3 ISO20000: What it is and how it relates to ITIL v3 John DiMaria; Certified Six Sigma BB, HISP BSI Product Manager; ICT (ISMS,ITSM,BCM) Objectives and Agenda To raise awareness, to inform and to enthuse

More information

Benchmark of controls over IT activities. 2011 Report. ABC Ltd

Benchmark of controls over IT activities. 2011 Report. ABC Ltd www.pwc.com/cy Benchmark of controls over IT activities 2011 Report ABC Ltd... 2012 Scope and approach We wish to provide you with our IT Benchmarking report over IT activities at ABC Ltd (the Company)

More information

Emerging gtrends and Innovation in Payments

Emerging gtrends and Innovation in Payments Emerging gtrends and Innovation in Payments Introduction & Agenda Transaction Network Services is the strategic partner driving payments behind the Civica ICON solution Some headline facts about TNS: We

More information

Payment Card Industry Update and Cyber Risk Management

Payment Card Industry Update and Cyber Risk Management Payment Card Industry Update and Cyber Risk Management CRAIG A. HOFFMAN, ESQ. BAKERHOSTETLER ADAM COTTINI, MANAGING DIRECTOR, CYBER LIABILITY PRACTICE, ARTHUR J GALLAGHER & CO. OCTOBER 22, 2015 2014 ARTHUR

More information

PayEase Payment Gateway

PayEase Payment Gateway PayEase Payment Gateway Your Passport to China Expand your business in China 461 Million Digital Buyers $300 Billion Retail ecommerce Annual sales $1 Trillion Chinese consumers demand the quality and familiarity

More information

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different payment methods.

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different payment methods. PRODUCT FLYER Internet Gateway Financial Systems is a modular software suite designed to support financial institutions and enterprises, providing a single interface for the optimized management of e-commerce

More information

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different payment methods.

ACFS PRODUCT FLYER. Its modular architecture allows a tailored integration, with a short time-to-market for different payment methods. PRODUCT FLYER Internet Gateway Financial Systems is a modular software suite designed to support financial institutions and enterprises, providing a single interface for the optimized management of e-commerce

More information

PCI Data Security Standards. Presented by Pat Bergamo for the NJTC February 6, 2014

PCI Data Security Standards. Presented by Pat Bergamo for the NJTC February 6, 2014 PCI Data Security Standards Presented by Pat Bergamo for the NJTC February 6, 2014 Introduction 3/3/2014 2 Your Speaker Patrick Bergamo, CISSP Director of Information Security & Delivery Delta Corporate

More information

PCI DSS Overview and Solutions. Anwar McEntee Anwar_McEntee@rapid7.com

PCI DSS Overview and Solutions. Anwar McEntee Anwar_McEntee@rapid7.com PCI DSS Overview and Solutions Anwar McEntee Anwar_McEntee@rapid7.com Agenda Threat environment and risk PCI DSS overview Who we are Solutions and where we can help Market presence High Profile Hacks in

More information

Secure Financial Transactions Any Time, Any Place

Secure Financial Transactions Any Time, Any Place Secure Financial Transactions Any Time, Any Place Euronet Software Solutions Gold-Net Global Payment Solution Become a Processor Providing Authorization, Clearing, Settlement, Value Added Services and

More information

PCI DSS Payment Card Industry Data Security Standard. Merchant compliance guidelines for level 4 merchants

PCI DSS Payment Card Industry Data Security Standard. Merchant compliance guidelines for level 4 merchants Appendix 2 PCI DSS Payment Card Industry Data Security Standard Merchant compliance guidelines for level 4 merchants CONTENTS 1. What is PCI DSS? 2. Why become compliant? 3. What are the requirements?

More information

Payments Gateways Opportunities for Acquirers

Payments Gateways Opportunities for Acquirers Payments Gateways Opportunities for Acquirers Peter Jones November 2011 Europe s acquiring market place has never been more competitive. All players are chasing revenues and volumes with the expectation

More information

Microsoft s Compliance Framework for Online Services

Microsoft s Compliance Framework for Online Services Microsoft s Compliance Framework for Online Services Online Services Security and Compliance Executive summary Contents Executive summary 1 The changing landscape for online services compliance 4 How Microsoft

More information

ACQUIRER OR ACQUIRING BANK A financial institution (often a bank) where a merchant has an account to process transactions and card payments

ACQUIRER OR ACQUIRING BANK A financial institution (often a bank) where a merchant has an account to process transactions and card payments A TO Z JARGON BUSTER A ACQUIRER OR ACQUIRING BANK A financial institution (often a bank) where a merchant has an account to process transactions and card payments ATM Automated Teller Machine. Unattended,

More information

University Policy Accepting Credit Cards to Conduct University Business

University Policy Accepting Credit Cards to Conduct University Business BROWN UNIVERSITY University Policy Accepting Credit Cards to Conduct University Business Purpose Brown University requires all departments that are involved with credit card handling to do so in compliance

More information

PCI Security Standards Council

PCI Security Standards Council PCI Security Standards Council Bob Russo, General Manager 2013 Why PCI Matters Applying PCI How You Can Participate Agenda About the PCI Council Open, global forum Founded 2006 Guiding open standards for

More information

Il nuovo standard ISO 22301 sulla Business Continuity Scenari ed opportunità

Il nuovo standard ISO 22301 sulla Business Continuity Scenari ed opportunità Il nuovo standard ISO 22301 sulla Business Continuity Scenari ed opportunità Massimo Cacciotti Business Services Manager BSI Group Italia Agenda BSI: Introduction 1. Why we need BCM? 2. Benefits of BCM

More information

Checklist of ISO 22301 Mandatory Documentation

Checklist of ISO 22301 Mandatory Documentation Checklist of ISO 22301 Mandatory Documentation 1) Which documents and records are required? The list below shows the minimum set of documents and records required by ISO 22301:2012 (the standard refers

More information

PayLeap Guide. One Stop

PayLeap Guide. One Stop PayLeap Guide One Stop PayLeap does it all. Take payments in person? Check. Payments over the phone or by mail? Check. Payments from mobile devices? Of course. Online payments? No problem. In addition

More information

Security Controls What Works. Southside Virginia Community College: Security Awareness

Security Controls What Works. Southside Virginia Community College: Security Awareness Security Controls What Works Southside Virginia Community College: Security Awareness Session Overview Identification of Information Security Drivers Identification of Regulations and Acts Introduction

More information

Business Continuity Management

Business Continuity Management Business Continuity Management Policy Statement & Strategy July 2009 Basildon District Council Business Continuity Management Policy Statement The Council is committed to ensuring robust and effective

More information

PCI Compliance: How to ensure customer cardholder data is handled with care

PCI Compliance: How to ensure customer cardholder data is handled with care PCI Compliance: How to ensure customer cardholder data is handled with care Choosing a safe payment process for your business Contents Contents 2 Executive Summary 3 PCI compliance and accreditation 4

More information

Need to protect your business from potential disruption? Prepare for the unexpected with ISO 22301.

Need to protect your business from potential disruption? Prepare for the unexpected with ISO 22301. Need to protect your business from potential disruption? Prepare for the unexpected with. Why BSI? Keep your business running with and BSI. Our knowledge can transform your organization. For more than

More information

<COMPANY> P01 - Information Security Policy

<COMPANY> P01 - Information Security Policy P01 - Information Security Policy Document Reference P01 - Information Security Policy Date 30th September 2014 Document Status Final Version 3.0 Revision History 1.0 09 November 2009: Initial release.

More information

PCI Impact on the Payment Processing Industry Landscape. Presented by: Ted McKendall

PCI Impact on the Payment Processing Industry Landscape. Presented by: Ted McKendall PCI Impact on the Payment Processing Industry Landscape Presented by: Ted McKendall Recent Trends in PCI DSS Compliance Level 1 Merchants Level 2 Merchants 95% of Level 1 merchants are compliant (> 6 million

More information

115 th Annual Convention

115 th Annual Convention 115 th Annual Convention Date: Saturday, October 12, 2013 Time: 11:00 am 12:00 pm Location: The Walt Disney World Swan and Dolphin Resort, Southern Hemisphere Salon 4-5 Title: Activity Type: Speaker: Data

More information

Payment Card Industry Data Security Standards

Payment Card Industry Data Security Standards Payment Card Industry Data Security Standards Discussion Objectives Agenda Introduction PCI Overview and History The Protiviti Difference Questions and Discussion 2 2014 Protiviti Inc. CONFIDENTIAL: This

More information

Financial Transactions: making sure you are secure

Financial Transactions: making sure you are secure Financial Transactions: making sure you are secure Erdovan Ates Payment System Integrity MasterCard Europe Jason Hancock Global Business Development enett International Card Fraud an industry perspective

More information

ACFS PRODUCT FLYER MTFS

ACFS PRODUCT FLYER MTFS PRODUCT FLYER Mail Telephone Order Financial Systems is a fully-featured, modular software suite designed to support financial institutions and enterprises in the management and optimization of recurring

More information

Merchant Processing. Trends and Truths. Roger Raney TransFirst Regional Sales Manager rraney@transfirst.com 941.704.5858

Merchant Processing. Trends and Truths. Roger Raney TransFirst Regional Sales Manager rraney@transfirst.com 941.704.5858 Merchant Processing Trends and Truths Karen Miles US Rice Producers Association Financial Director karen@usriceproducers.com 713.974.7423 Roger Raney TransFirst Regional Sales Manager rraney@transfirst.com

More information

We make cards and payments work for people as a part of everyday life. We bring information to life

We make cards and payments work for people as a part of everyday life. We bring information to life We make cards and payments work for people as a part of everyday life We bring information to life 2 EVRY is a leading IT company in the Nordic region. Through advice, technology and solutions, EVRY brings

More information

TOURISM INNOVATIVE PAYMENT SOLUTIONS. Efficient, flexible, worldwide and secure

TOURISM INNOVATIVE PAYMENT SOLUTIONS. Efficient, flexible, worldwide and secure TOURISM INNOVATIVE PAYMENT SOLUTIONS Efficient, flexible, worldwide and secure 2 THE FUTURE OF PAYMENT FOR THE TOURISM AND TRAVEL BUSINESS The PERFECT PARTNER Wirecard is one of the world s leading independent

More information

What a Processor Needs from a University to Validate Compliance

What a Processor Needs from a University to Validate Compliance What a Processor Needs from a University to Validate Compliance Lisa T. Conroy Merchant Compliance Manager Vantiv May 24, 2016 Disclosures The information included in this presentation is for information

More information

Protecting Your Customers' Card Data. Presented By: Oliver Pinson-Roxburgh

Protecting Your Customers' Card Data. Presented By: Oliver Pinson-Roxburgh Protecting Your Customers' Card Data Presented By: Oliver Pinson-Roxburgh Agenda Trustwave Overview PCI Scope Compromise Statistics PCI Makes Business Sense Registration Process TrustKeeper Features Support

More information

2.1.2 CARDHOLDER DATA SECURITY

2.1.2 CARDHOLDER DATA SECURITY University of Oxford Finance Division FINANCIAL POLICY 2.1.2 CARDHOLDER DATA SECURITY Date: 21 March 2013 Version: 2.1.2 Status: Approved Author: Simon Blee Bridget Midwinter TABLE OF CONTENTS Page EXECUTIVE

More information

Information Security Management Systems. Chief Operating Officer, Director of Strategy and Business Development, Chief Information Security Officer

Information Security Management Systems. Chief Operating Officer, Director of Strategy and Business Development, Chief Information Security Officer Information Security Management Systems Chief Operating Officer, Director of Strategy and Business Development, Chief Information Security Officer atsec information security, 2013 ISO/IEC 27001 and related

More information

Preparation Guide. Side entry to the EXIN Expert in IT Service Management based on ISO/IEC 20000

Preparation Guide. Side entry to the EXIN Expert in IT Service Management based on ISO/IEC 20000 Preparation Guide Side entry to the EXIN Expert in IT Service Management based on ISO/IEC 20000 Edition June 2015 Copyright 2015 EXIN All rights reserved. No part of this publication may be published,

More information

Business Continuity Management

Business Continuity Management Business Continuity Management Version 1 approved by SMG December 2013 Business Continuity Policy Version 1 1 of 9 Business Continuity Management Summary description: This document provides the rationale

More information

By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd

By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd BS 25999 Business Continuity Management By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd 1 Contents slide BSI British Standards 2006 BS 25999(Business Continuity) 2002 BS 15000

More information

Cash Solutions. Making cash flow. G4S Cash Solutions, and what we can do for you

Cash Solutions. Making cash flow. G4S Cash Solutions, and what we can do for you Cash Solutions Making cash flow G4S Cash Solutions, and what we can do for you Making your cash count for more Efficiency is everything in a climate like this. Tough economic conditions, rising costs and

More information

B a n k i n g A u t o m a t i o n B U L L E T I N

B a n k i n g A u t o m a t i o n B U L L E T I N E X T R A C T Issue Issue 228327 September August 2014 2004 B a n k i n g A u t o m a t i o n B U L L E T I N The interrelationship between cards and cash More than 200 billion card payments worldwide

More information

ISO/IEC/IEEE 29119 The New International Software Testing Standards

ISO/IEC/IEEE 29119 The New International Software Testing Standards ISO/IEC/IEEE 29119 The New International Software Testing Standards Stuart Reid Testing Solutions Group 117 Houndsditch London EC3 UK Tel: 0207 469 1500 Fax: 0207 623 8459 www.testing-solutions.com 1 Stuart

More information

World-wide trends in innovation on the acquiring side

World-wide trends in innovation on the acquiring side World-wide trends in innovation on the acquiring side CPSS-World Bank retail payments forum Perugia, March 19 th 2013 Edgar, Dunn & Company, 2013 Yogesh Oka Yogesh.Oka@edgardunn.com David Poe David.Poe@edgardunn.com

More information

AWS (Amazon Web Services) Managed

AWS (Amazon Web Services) Managed AWS (Amazon Web Services) Managed Services A New World constant change needs Agility T h e world is changing fast and IT infrastructure has become in creasingly complex. Enterprises are keen to adopt the

More information

Questions & Answers clarifying key aspects of the SEPA Cards Framework

Questions & Answers clarifying key aspects of the SEPA Cards Framework Doc. EPC075-08 (Version 10.0) 11 June 2008 Questions & Answers clarifying key aspects of the SEPA Cards Framework Circulation: Publicly available Restricted: No SEPA a Guide to the Single Euro Payments

More information

Course: Information Security Management in e-governance. Day 1. Session 3: Models and Frameworks for Information Security Management

Course: Information Security Management in e-governance. Day 1. Session 3: Models and Frameworks for Information Security Management Course: Information Security Management in e-governance Day 1 Session 3: Models and Frameworks for Information Security Management Agenda Introduction to Enterprise Security framework Overview of security

More information

Varonis Systems & The Payment Card Industry Data Security Standard (PCI DSS)

Varonis Systems & The Payment Card Industry Data Security Standard (PCI DSS) CONTENTS OF THIS WHITE PAPER Overview... 1 Background... 1 Who Needs To Comply... 1 What Is Considered Sensitive Data... 2 What Are the Costs/Risks of Non-Compliance... 2 How Varonis Helps With PCI Compliance...

More information

Guide to Payment Processing

Guide to Payment Processing Guide to Payment Processing What s Inside: Industry Players Components of Payment Processing Reading Your Merchant Statement Understanding Fees Processing Methods Trends Need-to-Know Vocabulary Guide to

More information

Interchange Optimization: Are you getting the best rate?

Interchange Optimization: Are you getting the best rate? 2012 Interchange Optimization: Are you getting the best rate? Northpark Town Center 1200 Abernathy Road, Suite 1700 Atlanta, Georgia 30328 (800) 846-1305 www.optimizedpmts.com There are many costs associated

More information

BC / DR Implementation Tying Disaster Recovery Investment to Measurable Business Value

BC / DR Implementation Tying Disaster Recovery Investment to Measurable Business Value BC / DR Implementation Tying Disaster Investment to Measurable Business Value Continuity Insights Conference May 16-18, 2005 Agenda Purpose Discuss best practice process and tools that might be leveraged

More information

Preparing yourself for ISO/IEC 27001 2013

Preparing yourself for ISO/IEC 27001 2013 Preparing yourself for ISO/IEC 27001 2013 2013 a Vintage Year for Security Prof. Edward (Ted) Humphreys (edwardj7@msn.com) [Chair of the ISO/IEC and UK BSI Group responsible for the family of ISMS standards,

More information

A Compliance Overview for the Payment Card Industry (PCI)

A Compliance Overview for the Payment Card Industry (PCI) A Compliance Overview for the Payment Card Industry (PCI) Many organizations are aware of the Payment Card Industry (PCI) and PCI compliance but are unsure if they are doing everything necessary. This

More information

Are You Ready For PCI v 3.0. Speaker: Corbin DelCarlo Institution: McGladrey LLP Date: October 6, 2014

Are You Ready For PCI v 3.0. Speaker: Corbin DelCarlo Institution: McGladrey LLP Date: October 6, 2014 Are You Ready For PCI v 3.0 Speaker: Corbin DelCarlo Institution: McGladrey LLP Date: October 6, 2014 Today s Presenter Corbin Del Carlo QSA, PA QSA Director, National Leader PCI Services Practice 847.413.6319

More information

India Card Payment Report FY 12-13

India Card Payment Report FY 12-13 India Card Payment Report FY 12-13 Contents About AtosWorldline... 2 Foreword... 4 Credit Card Issuance... 5 Debit Card Issuance... 6 POS Terminals... 6 Transactions and Spends... 8 Emerging Trends...

More information

Continuous compliance through good governance

Continuous compliance through good governance PCI DSS Compliance: A step into the payment ecosystem and Nets compliance program Continuous compliance through good governance Who are the PCI SSC? The Payment Card Industry Security Standard Council

More information

How To Comply With The Pci Ds.S.A.S

How To Comply With The Pci Ds.S.A.S PCI Compliance and the Data Security Standards Introduction The PCI DSS, a set of comprehensive requirements for enhancing payment account data security, was developed by the founding payment brands of

More information

Project Title slide Project: PCI. Are You At Risk?

Project Title slide Project: PCI. Are You At Risk? Blank slide Project Title slide Project: PCI Are You At Risk? Agenda Are You At Risk? Video What is the PCI SSC? Agenda What are the requirements of the PCI DSS? What Steps Can You Take? Available Services

More information

Hedge Fund Investment Thesis Payment Networks and MasterCard. What I Learnt on Wall Street June 2016

Hedge Fund Investment Thesis Payment Networks and MasterCard. What I Learnt on Wall Street June 2016 Hedge Fund Investment Thesis Payment Networks and MasterCard What I Learnt on Wall Street June 2016 What is it? 2 MasterCard is a payment technology and network company, operating the world s second largest

More information

Geoff Harmer PhD, CEng, FBCS, CITP, CGEIT Maat Consulting Reading, UK www.maatconsulting.com

Geoff Harmer PhD, CEng, FBCS, CITP, CGEIT Maat Consulting Reading, UK www.maatconsulting.com COBIT 5 All together now! Geoff Harmer PhD, CEng, FBCS, CITP, CGEIT Maat Consulting Reading, UK www.maatconsulting.com 1 Copyright Notice COBIT is 1996, 1998, 2000, 2005 2012 ISACA and IT Governance Institute.

More information

Introduction to Element Payment Services:

Introduction to Element Payment Services: Introduction to Element Payment Services: Presented by: Stefan Prue, Relationship Manager Element Payment Services September 2013 Element Payment Services Founded in 2003, Headquartered in Chandler, AZ

More information

Merchant guide to PCI DSS

Merchant guide to PCI DSS Merchant guide to PCI DSS Contents What is PCI DSS and why was it introduced?... 3 Who needs to become PCI DSS compliant?... 3 BOIPA Simple PCI DSS - 3 step approach to helping businesses... 3 What does

More information

Configuration Management Aids Compliance

Configuration Management Aids Compliance Configuration Management Aids Compliance Wednesday, November 9, 2005 1:00 p.m. Eastern / 10:00 a.m. Pacific Sponsored by Hosted by Conquering Complexity and Compliance with Configuration Management Ronni

More information

ITIL Foundation Certification Course

ITIL Foundation Certification Course ITIL Foundation Certification Course About the Programme While most IT divisions are organized by functions such as desktop management, application management, Network management, System & database administration,

More information

PIN Entry Device Security Requirements: Frequently Asked Questions

PIN Entry Device Security Requirements: Frequently Asked Questions PIN Entry Device Security Requirements: Frequently sked Questions Contents PCI and PED Security Requirements...1 Laboratory Testing...4 pproval Process...5 PCI PED Testing and EMVco Terminal Type pproval...6

More information

Retail Business Technology Expo 2011

Retail Business Technology Expo 2011 Retail Business Technology Expo 2011 Press Pack Stand # 212 March 16-17, 2011 For further information please contact: Clare Cockroft PR Manager Tel: +44 (0)114 292 6416 ccockroft@tnsi.com ANNOUNCES PLANS

More information

PCI Standards: A Banking Perspective

PCI Standards: A Banking Perspective Slide 1 PCI Standards: A Banking Perspective Bob Brown, CISSP Wachovia Corporate Information Security Slide 2 Agenda 1. Payment Card Initiative History 2. Description of the Industry 3. PCI-DSS Control

More information

Agent Registration. Program Guidelines. (For use in Asia Pacific, Central Europe, Middle East and Africa)

Agent Registration. Program Guidelines. (For use in Asia Pacific, Central Europe, Middle East and Africa) (For use in Asia Pacific, Central Europe, Middle East and Africa) January 2012 Contents 1 INTRODUCTION... 3 1.1 BACKGROUND... 3 1.2 PURPOSE OF DOCUMENT... 4 1.3 WHO NEEDS TO BE REGISTERED?... 5 1.4 WHY

More information

Key USP s. Multiple PCI level GRC tool

Key USP s. Multiple PCI level GRC tool PCI GRC tool Introduction GP history Visa level 1 approved hosting facility Niche product for a specific problem Reduce BAU cost and cost of PCI compliance Reduce cost in managing 3rd parties PCI stakeholder

More information

1 ARE PCI SECURITY MEASURES SUITED TO THE FRENCH MARKET?

1 ARE PCI SECURITY MEASURES SUITED TO THE FRENCH MARKET? 1 ARE PCI SECURITY MEASURES SUITED TO THE FRENCH MARKET? As part of its task of monitoring the security policies implemented by issuers and acquirers, the Observatory conducted an assessment in 2010 to

More information

ITIL Introduction and Overview & ITIL Process Map

ITIL Introduction and Overview & ITIL Process Map ITIL Introduction and Overview & ITIL Process Map Barbara Re 1 Where we are? IT organization has a long trouble to improve service level to their customers without adding cost, reducing quality or introducing

More information

PCI DSS Investing wisely...

PCI DSS Investing wisely... PCI DSS Investing wisely... Hotel webinar Neira Jones Head of Payment Security Barclaycard Global Payment Acceptance 25 th July 2011 Leading the way in secure payments global payment acceptance Hotel Security

More information

ITIL: What is it? How does ITIL link to COBIT and ISO 17799?

ITIL: What is it? How does ITIL link to COBIT and ISO 17799? ITIL: What is it? How does ITIL link to COBIT and ISO 17799? 1 What is ITIL? The IT Infrastructure Library A set of books comprising an IT service management Best Practices framework An industry of products,

More information

Payment Methods. The cost of doing business. Michelle Powell - BASYS Processing, Inc.

Payment Methods. The cost of doing business. Michelle Powell - BASYS Processing, Inc. Payment Methods The cost of doing business Michelle Powell - BASYS Processing, Inc. You ve got to spend money, to make money Major Industry Topics Industry Process Flow PCI DSS Compliance Risks of Non-Compliance

More information

Dates VISA MasterCard Discover American Express. support EMV. International ATM liability shift 2

Dates VISA MasterCard Discover American Express. support EMV. International ATM liability shift 2 Network Updates Summer 2013 We are committed to working closely with you on achieving your business goals. As a part of this commitment, we carefully monitor Network changes and summarize them for your

More information

PAYMENT CARD INDUSTRY (PCI) COMPLIANCE HISTORY & OVERVIEW

PAYMENT CARD INDUSTRY (PCI) COMPLIANCE HISTORY & OVERVIEW PAYMENT CARD INDUSTRY (PCI) COMPLIANCE HISTORY & OVERVIEW David Kittle Chief Information Officer Chris Ditmarsch Network & Security Administrator Smoker Friendly International / The Cigarette Store Corp

More information

Introduction to PCI Compliance

Introduction to PCI Compliance Introduction to PCI Compliance Who is HALOCK Security Labs? Established in 1996 Focused 100% on security since 1999 One of less than 5 QSA approved companies based in Chicago All Partners and Directors

More information

Euronet Software Solutions Integrated Credit Card System Improve your organization s marketability, profitability and revenue

Euronet Software Solutions Integrated Credit Card System Improve your organization s marketability, profitability and revenue Secure Financial Transactions Any Time, Any Place Euronet Software Solutions Integrated Credit Card System Improve your organization s marketability, profitability and revenue Serving millions of people

More information

PCI DSS COMPLIANCE DATA

PCI DSS COMPLIANCE DATA PCI DSS COMPLIANCE DATA AND PROTECTION EagleHeaps FROM CONTENTS Overview... 2 The Basics of PCI DSS... 2 PCI DSS Compliance... 4 The Solution Provider Role (and Accountability).... 4 Concerns and Opportunities

More information

ITIL Intermediate Qualification: Service Offerings and Agreement. Webinar presentation 8 May 2009

ITIL Intermediate Qualification: Service Offerings and Agreement. Webinar presentation 8 May 2009 ITIL Intermediate Qualification: Service Offerings and Agreement Webinar presentation 8 May 2009 Team Lead SOA Vernon Lloyd FISM IT Industry before it was IT (1970) Done most things in most places ITSM

More information

PCI Risks and Compliance Considerations

PCI Risks and Compliance Considerations PCI Risks and Compliance Considerations July 21, 2015 Stephen Ramminger, Senior Business Operations Manager, ControlScan Jon Uyterlinde, Product Manager, Merchant Services, SVB Agenda 1 2 3 4 5 6 7 8 Introduction

More information

Puzzled about PCI compliance? Proactive ways to navigate through the standard for compliance

Puzzled about PCI compliance? Proactive ways to navigate through the standard for compliance Puzzled about PCI compliance? Proactive ways to navigate through the standard for compliance March 29, 2012 1:00 p.m. ET If you experience any technical difficulties, please contact 888.228.0988 or support@learnlive.com

More information

Payment Card Industry Data Security Standard Training. Chris Harper Vice President of Technical Services Secure Enterprise Computing, Inc.

Payment Card Industry Data Security Standard Training. Chris Harper Vice President of Technical Services Secure Enterprise Computing, Inc. Payment Card Industry Data Security Standard Training Chris Harper Vice President of Technical Services Secure Enterprise Computing, Inc. March 27, 2012 Agenda Check-In 9:00-9:30 PCI Intro and History

More information

SEPA - Frequently Asked Questions

SEPA - Frequently Asked Questions SEPA - Frequently Asked Questions Contents SEPA Overview Questions... 2 What is SEPA?... 2 What is the aim of SEPA?... 3 Where did SEPA come from?... 3 What countries are included in SEPA?... 3 What currencies

More information

Security Risk Management Strategy in a Mobile and Consumerised World

Security Risk Management Strategy in a Mobile and Consumerised World Security Risk Management Strategy in a Mobile and Consumerised World RYAN RUBIN (Msc, CISSP, CISM, QSA, CHFI) PROTIVITI Session ID: GRC-308 Session Classification: Intermediate AGENDA Current State Key

More information

ACCEPTING PAYMENT CARD ASSESSMENT Pre-Selection Questionnaire

ACCEPTING PAYMENT CARD ASSESSMENT Pre-Selection Questionnaire ACCEPTING PAYMENT CARD ASSESSMENT Pre-Selection Questionnaire Overview This pre-implementation questionnaire is designed to provide the Boston College Internal Audit Department with a general understanding

More information

De Nieuwe Code voor Informatiebeveiliging

De Nieuwe Code voor Informatiebeveiliging De Nieuwe Code voor Informatiebeveiliging Piet Donga, ING Voorzitter NEN NC 27 - IT Security 1 Agenda Standardisation of Information security The new Code of Practice for Information Security The Code

More information

EMP's vision is to be the leading electronic payments processing company in the emerging markets of Africa and the Middle East.

EMP's vision is to be the leading electronic payments processing company in the emerging markets of Africa and the Middle East. EMP's vision is to be the leading electronic payments processing company in the emerging markets of Africa and the Middle East. EMP's mission is to be at the forefront of the region's electronic payments

More information

Securing The Cloud. Foundational Best Practices For Securing Cloud Computing. Scott Clark. Insert presenter logo here on slide master

Securing The Cloud. Foundational Best Practices For Securing Cloud Computing. Scott Clark. Insert presenter logo here on slide master Securing The Cloud Foundational Best Practices For Securing Cloud Computing Scott Clark Agenda Introduction to Cloud Computing What is Different in the Cloud? CSA Guidance Additional Resources 2 What is

More information

PCI DSS 101 FOR CTOs AND BUSINESS EXECUTIVES

PCI DSS 101 FOR CTOs AND BUSINESS EXECUTIVES PCI DSS 101 FOR CTOs AND BUSINESS EXECUTIVES CUTTING THROUGH THE COMPLEXITY AND CONFUSION Over the years, South African retailers have come under increased pressure to gain PCI DSS (Payment Card Industry

More information