How To Program A Credit Card Terminal To Be A Pca Compliant (Cpo) Or Not (Pca) Compliant (Dns) (Cisp) (Dhs) (Pci) (Susu) (Usu/



Similar documents
Payment Card Industry Data Security Standard (PCI DSS) and Payment Application Data Security Standard (PA-DSS) Frequently Asked Questions

Don Roeber Vice President, PCI Compliance Manager. Lisa Tedeschi Assistant Vice President, Compliance Officer

La règlementation VisaCard, MasterCard PCI-DSS

A Compliance Overview for the Payment Card Industry (PCI)

Payment Card Industry Data Security Standard (PCI DSS) Q & A November 6, 2008

Payment Card Industry Data Security Standard

Payment Card Industry Compliance Overview

POLICY SECTION 509: Electronic Financial Transaction Procedures

Appendix 1 Payment Card Industry Data Security Standards Program

How To Ensure Account Information Security

TREASURER S OFFICE ADMINISTRATIVE STANDARDS FOR THE TREASURER S FISCAL PROCEDURE No MERCHANT DEBIT AND CREDIT CARD RECEIPTS

PCI DSS FAQ. The twelve requirements of the PCI DSS are defined as follows:

Merchant guide to PCI DSS

What are the PCI DSS requirements? PCI DSS comprises twelve requirements, often referred to as the digital dozen. These define the need to:

1/18/10. Walt Conway. PCI DSS in Context. Some History The Digital Dozen Key Players Cardholder Data Outsourcing Conclusions. PCI in Higher Education

Credit Card Processing Overview

PAYMENT CARD INDUSTRY (PCI) ANNUAL TRAINING DECEMBER 10, 2009 WESTERN ILLINOIS UNIVERSITY OFFICE OF THE CTSO & BUSINESS SERVICES

Understanding Payment Card Industry (PCI) Data Security

Josiah Wilkinson Internal Security Assessor. Nationwide

PCI Compliance Overview

The Petroleum Marketer s PCI compliance Reference Guide

COLORADO STATE UNIVERSITY Financial Procedure Statements FPI 6-6

CardControl. Credit Card Processing 101. Overview. Contents

Worldpay s guide to the Payment Card Industry Data Security Standard (PCI DSS)

How To Protect Your Business From A Hacker Attack

GRINNELL COLLEGE CREDIT CARD PROCESSING AND SECURITY POLICY

Why Is Compliance with PCI DSS Important?

A MERCHANTS GUIDE TO THE PAYMENT APPLICATION DATA SECURITY STANDARD (PA-DSS)

POLICY & PROCEDURE DOCUMENT NUMBER: DIVISION: Finance & Administration. TITLE: Policy & Procedures for Credit Card Merchants

Payment Card Industry Data Security Standards Compliance

PCI Standards: A Banking Perspective

Your Compliance Classification Level and What it Means

Validation of PCI Compliance Requirements NC Office of the State Controller June 23, 2015

Cyber Security: Secure Credit Card Payment Process Payment Card Industry Standard Compliance

PCI Compliance Information Packet for Volunteers - Credit Card Processing for Product Sales and Online Camp / Event Registration

How To Protect Your Credit Card Information From Being Stolen

This appendix is a supplement to the Local Government Information Security: Getting Started Guide, a non-technical reference essential for elected

Payment Card Industry Data Security Standard Explained

Office of Finance and Treasury

CREDIT CARD PROCESSING POLICY AND PROCEDURES

Questions and Answers PCI Compliance (Updated May 23, 2014)

E Pay. A Case Study in PCI Compliance. Illinois State Treasurer. Dan Rutherford

Payment Card Industry Data Security Standards.

Section 3.9 PCI DSS Information Security Policy Issued: June 2016 Replaces: January 2015

COLUMBUS STATE COMMUNITY COLLEGE POLICY AND PROCEDURES MANUAL

Payment Card Industry Data Security Standard (PCI DSS)

Clark University's PCI Compliance Policy

University of Oregon Policy Statement Development Form

FREQUENTLY ASKED QUESTIONS The MasterCard Site Data Protection (SDP) Program

Security Breaches and Vulnerability Experiences Overview of PCI DSS Initiative and CISP Payment Application Best Practices Questions and Comments

PROTECTION OF OUR MERCHANTS AND REFERRAL PARTNERS IS OUR FIRST CONCERN

Credit Card Acceptance Policy. Vice Chancellor of Business Affairs. History: Effective July 1, 2011 Updated February 2013

Policy Title: Payment Cards Policy Effective Date: 5/5/2010. Policy Number: FA-PO-1214 Date of Last Revision: 11/5/2014

Becoming PCI Compliant

Payment Card Industry Compliance

PCI Compliance Training

Data Security & PCI Compliance & PCI Compliance Securing Your Contact Center Securing Your Contact Session Name :

Payment Cardholder Data Handling Procedures (required to accept any credit card payments)

FREQUENTLY ASKED QUESTIONS The MasterCard Site Data Protection (SDP) Program

* Any merchant that has suffered a hack that resulted in an account data compromise may be escalated to a higher validation level.

Registry of Service Providers

Q: What is PCI? Q: To whom does PCI apply? Q: Where can I find the PCI Data Security Standards (PCI DSS)? Q: What are the PCI compliance deadlines?

SecurityMetrics Introduction to PCI Compliance

How To Comply With The Pci Ds.S.A.S

It is important to note, the payment brands and acquirers are responsible for enforcing compliance, not the PCI council.

Two Approaches to PCI-DSS Compliance

PCI DSS. CollectorSolutions, Incorporated

This policy applies to all GPC units that process, transmit, or handle cardholder information in a physical or electronic format.

Sales Rep Frequently Asked Questions

AheevaCCS and the Payment Card Industry Data Security Standard

Payment Card Security

University Policy Accepting Credit Cards to Conduct University Business

Payment Card Industry (PCI) Data Security Standard. Attestation of Compliance for Self-Assessment Questionnaire C-VT. Version 2.0

PAI Secure Program Guide

CREDIT CARD MERCHANT POLICY. All campuses served by Louisiana State University (LSU) Office of Accounting Services

The PCI DSS Compliance Guide For Small Business

PAYMENT CARD INDUSTRY (PCI) COMPLIANCE HISTORY & OVERVIEW

PCI Security Compliance

Frequently Asked Questions

Payment Card Industry (PCI) Data Security Standard Self-Assessment Questionnaire

PCI Compliance. How to Meet Payment Card Industry Compliance Standards. May cliftonlarsonallen.com CliftonLarsonAllen LLP

Cyber - Security and Investigations. Ingrid Beierly August 18, 2008

Transcription:

Integrating Credit Card Processing CLEAR

Objectives Non-Compatible Terminals Compatible Terminals Common Error Messages Steps on how to program a credit terminal PCI Compliant

Businesses Credit Card processing is the bread and butter for a business.

Keeping Our Customers Happy As professionals we want to make sure the customer is happy with our product. We need to know as much a possible how to integrate CLEAR with credit card terminals.

Terminals Right now with CLEAR VoIP voice credit card terminals that can be used with CLEAR VoIP voice are few. However, there are some terminals that can be used with CLEAR VoIP voice.

* Omni 3750 * Omni 3200 These Terminals are non-compatible with CLEAR VoIP/RSU. When trying to program terminal you will receive an error. COMM ERROR 1 COMM ERROR 2 Omni terminals can not be programmed. These terminals are not compliant. *Will continue to add terminals

Nurit 2085 Nurit 8320 Nurit 8400 Hypercom 1mb t7 plus Hypercom T4210 Hypercom T4220 VeriFone Vx570 These terminals are compatible with CLEAR VoIP voice. This terminal can reprogrammed to use CLEAR.

Programming Here are the steps to program terminal: 1. Ask customer for merchant phone number and merchant number. 2. Technical support prompt. 3. You will need to give technical support the merchant no. and address. 4. Say, I would like to program this terminal with code *99. 5. To program the terminal you will need an analog phone line.

Terminals There is an alternative for terminals that are not compatible with CLEAR VoIP voice. These credit card terminals can be used with CLEAR RSU.

First Data FD50 First Data FD100 First Data FD200 First Data FD300 These Terminals are compatible with CLEAR RSU. If a customer already has this terminal we can reprogram the terminal to use CLEAR.

Programming Here are the steps to program terminal: 1. Ask customer for merchant phone number and merchant number. 2. Technical support prompt. 3. You will need to give technical support merchant no. and address. 4. Say, I would like to program terminal to process through IP. 5. To program the terminal you will need an analog phone line.

PCI Compliant Terminals As a brand we want to make sure when using CLEAR products we use best practices. We want to make sure the terminals we program are PCI compliant. This protects the customer and CLEAR as the brand.

PCI Compliance What is PCI DSS? The Payment Card Industry (PCI) Data Security Standards (DSS) is a set of requirements for enhancing payment account data security. These standards were developed by the PCI Security Standards Council, which was founded by American Express, Discover Financial Services, JCB International, MasterCard Worldwide and Visa, Inc. to facilitate industry-wide adoption of consistent data security measures on a global basis. I have never heard of PCI Compliance before, is this new? No. Merchants have been required to take the PCI self-assessment provided by the Visa /MasterCard association and be compliant for the past 3 years. The framework of the PCI data security standards has existed in different forms for some time now and continues to evolve. You may be more familiar with the payment brands programs that promote the implementation of the PCI DSS MasterCard: Site Data Protection (SDP) program Mastercard.com/sdp Visa: Cardholder Information Security Program (CISP) Visa.com/cisp Discover Network: Discover Information Security & Compliance (DISC) Discovernetwork.com/fraudsecurity/disc.html American Express: Data Security Operating Policy AmericanExpress.com/datasecurity What are merchants required to do to become PCI compliant? The minimum requirement is that the merchant perform a PCI DSS self-assessment questionnaire on an annual basis. If the merchant electronically stores cardholder information or if his/her processing systems have any internet connectivity, a quarterly scan by an approved scanning vendor is also required. What about a merchant that is not processing, why do they have to be PCI compliant? All merchants, whether small or large, need to be PCI compliant. The payment brands have collectively adopted PCI DSS as the requirement for organizations that process, store or transmit payment cardholder data. Inherent in having a merchant account is the ability to handle cardholder data. Why do merchants using PCI compliant terminals/gateways have to certify their PCI compliance? The PCI Security Standards Council has various requirement programs. The Payment Application Data Security Standards (PA-DSS) is a set of requirements to help software vendors and others develop secure payment applications that do not store prohibited data, such as full magnetic stripe, CVV2 or PIN data, and ensure their payment applications support compliance with the PCI DSS. Use of a terminal/gateway that runs PA-DSS certified software is one of many components that are evaluated in the assessment of a merchant s PCI DSS compliance.

PCI Compliant Terminals Here is a List of PCI compliant terminals Nurit 2085 Nurit 8320 Nurit 8400 Hypercom 1mb t7 plus Hypercom T4210 Hypercom T4220 VeriFone Vx570 First Data FD50 First Data FD100 First Data FD200 First Data FD300

Non Compatible Terminals If a terminal cannot be programmed by CLEAR there are alternatives Customer has the option of receiving a compatible terminal at no charge. Please feel free to contact me. (404) 952-4592 E: denise.harrell@clear.com Customer will need to fax over merchant statement Customer will receive terminal within 72 hours