Visa MasterCard Registration Procedures



Similar documents
THIRD PARTY AGENT REGISTRATION PROGRAM

Third Party Agent Registration Program Frequently Asked Questions

Agent Registration. Program Guide. (For use in Asia Pacific, Central Europe, Middle East, Africa)

Third Party Agent (TPA) Registration Program - TPA Types and Functional Descriptions

Agent Registration. Program Guidelines. (For use in Asia Pacific, Central Europe, Middle East and Africa)

A Compliance Overview for the Payment Card Industry (PCI)

FREQUENTLY ASKED QUESTIONS The MasterCard Site Data Protection (SDP) Program

Failure to follow the following procedures may subject the state to significant losses, including:

What To Do if Compromised. Visa USA Fraud Investigations and Incident Management Procedures

University Policy Accepting Credit Cards to Conduct University Business

Visa PIN Security Program Webinar May Alan Low PIN Risk Representative AP and CEMEA. Visa Public

RFP#15-20 EXHIBIT E MERCHANT SERVICES INFORMATION SHEET

Guide to Visa Inc. Agents

Appendix 1 Payment Card Industry Data Security Standards Program

How To Control Credit Card And Debit Card Payments In Wisconsin

Guide to Visa Inc. Agents

FREQUENTLY ASKED QUESTIONS The MasterCard Site Data Protection (SDP) Program

Registration and PCI DSS compliance validation

Third Party Agent Registration and PCI DSS Compliance Validation Guide

GLOSSARY OF MOST COMMONLY USED TERMS IN THE MERCHANT SERVICES INDUSTRY

What To Do if Compromised. Visa USA Fraud Investigations and Incident Management Procedures

Merchant Services Tool Kit TEXPO 2013

CREDIT CARD MERCHANT PROCEDURES. Revised 01/21/2014 Prepared by: NIU Merchant Services

Payment Card Industry Data Security Standard Training. Chris Harper Vice President of Technical Services Secure Enterprise Computing, Inc.

2015 Submission Requirements / Merchant Application

Merchant Account Glossary of Terms

Registry of Service Providers

ACS Technologies/ServiceU Information Sheet for Credit Card and ACH/EFT

PCI Compliance Overview

How To Ensure Account Information Security

Your Compliance Classification Level and What it Means

STOP Important Information Please Read

POLICY SECTION 509: Electronic Financial Transaction Procedures

UW Platteville Credit Card Handling Policy

PCI General Policy. Effective Date: August Approval: December 17, Maintenance of Policy: Office of Student Accounts REFERENCE DOCUMENTS:

PCI-DSS: A Step-by-Step Payment Card Security Approach. Amy Mushahwar & Mason Weisz

Information Technology

SCHEDULE A MODIFIED SCOPE OF SERVICES MERCHANT CARD PROCESSING SERVICES STATE OF NORTH CAROLINA AND SUNTRUST MERCHANT SERVICES

U.S. Merchant Class Settlement MasterCard Frequently Asked Questions Merchant

The following information was prepared to assist you in understanding potential Electronic Value Transfer terminology.

MasterCard PCI & Site Data Protection (SDP) Program Update. Academy of Risk Management Innovate. Collaborate. Educate.

Payment Methods. The cost of doing business. Michelle Powell - BASYS Processing, Inc.

Accepting Payment Cards and ecommerce Payments

VISA EUROPE ACCOUNT INFORMATION SECURITY (AIS) PROGRAMME FREQUENTLY ASKED QUESTIONS (FAQS)

WASHINGTON STATE UNIVERSITY MERCHANT ACCOUNT AGREEMENT FOR UNIVERSITY DEPARTMENTS

SECTION 509: Payment Card and Electronic Funds Transfer (EFT) Procedures

To ensure independence, PSC does not represent, resell or receive commissions from any third party hardware, software or solutions vendors.

Introduction and Background

Redwood Merchant Services. Merchant Processing Terminology

What a Processor Needs from a University to Validate Compliance

EDUCATION - TERMS 101

Payments Industry Glossary

The Comprehensive, Yet Concise Guide to Credit Card Processing

Q: What is PCI? Q: To whom does PCI apply? Q: Where can I find the PCI Data Security Standards (PCI DSS)? Q: What are the PCI compliance deadlines?

TREASURER S OFFICE ADMINISTRATIVE STANDARDS FOR THE TREASURER S FISCAL PROCEDURE No MERCHANT DEBIT AND CREDIT CARD RECEIPTS

Vanderbilt University

THE ABC S of CREDIT CARD TERMINOLGY

SAN DIEGO STATE UNIVERSITY RESEARCH FOUNDATION CREDIT CARD PROCESSING & SECURITY POLICY MERCHANT SERVICES POLICIES & PROCEDURES

Payment Card Industry (PCI) Data Security Standard

MEETING PCI COMPLIANCE WITH SONICWALL GLOBAL MANAGEMENT SYSTEM

E-Market Policy Accepting Online Payment for Conducting University Business

Attestation of Compliance for Onsite Assessments Service Providers

Payment Card Industry (PCI) Data Security Standard

GRINNELL COLLEGE CREDIT CARD PROCESSING AND SECURITY POLICY

PROTECTION OF OUR MERCHANTS AND REFERRAL PARTNERS IS OUR FIRST CONCERN

Town of Fairview, Texas Request for Proposal Merchant Card Services

General Industry terms

Attestation of Compliance for Onsite Assessments Service Providers

Attestation of Compliance for Onsite Assessments Service Providers

ACS Technologies/ServiceU Information Sheet for Credit Card and ACH/EFT

Fall Conference November 19 21, 2013 Merchant Card Processing Overview

The PCI DSS Compliance Guide For Small Business

The Interlink Network and Maestro U.S.A. Network rules and regulations (collectively National/International Networks );

Credit Card Processing Overview

Secure Credit Card Processing from EPX

* Any merchant that has suffered a hack that resulted in an account data compromise may be escalated to a higher validation level.

Payment Card Industry (PCI) Data Security Standard

Saint Louis University Merchant Card Processing Policy & Procedures

Giving Pricing and Merchant Account Information. Monthly Billing Pricing. Additional Merchant Account Fees

Request for Proposal. Merchant Credit Card Services

Payment Card Acceptance Administrative Policy

Merchant Card Processing Best Practices

TERMINAL CONTROL MEASURES

Transcription:

Effective May Visa Term Definition Registration Requirements Forms Initial Registration Annual Renewal An organization or individual, which is not a Member, whose *Enhanced /Service Provider bankcard-related business relationship with a Member Forms involves any of the following: * Merchant solicitation, sales, or services * Merchant Transaction processing solicitation * Cardholder solicitation or Card application processing services * Provides solicitation materials, information on discount rates, Merchant application forms or data capture equipment Due - Credit Review $5,000 $5,000 - Full Due Member Bank Penalties for Non-Registration Sign-off Required Independent Contractor- An individual (1099 employee of either a Member or an ) Independent Contractor has been eliminated by Visa as of May, 2005 N/A N/A N/A N/A N/A N/A N/A Sub-Contractor - not permitted per Visa Subcontracting occurs as in the following example: A 1099 or W2 employee of a registered which submits applications through a different registered to facilitate acceptance of "hard to place" Merchants. Sub-Contracting is not permitted per Visa employees must either be (i) W2 employees of the registered or (ii) registered 1099 employees of the registered or Visa Member and solicit only under the registered name. s can only accept Merchant applications from their W2 employees or Visa registered 1099 employees. N/A N/A N/A N/A N/A N/A Sub-Independent Sales Organization ()-selling under the name of primary An organization or individual, which is not a Member, whose bankcard related business relationship with a Member is *Merchant solicitation, sales or service and/or *Cardholder solicitation. **Sub may not use its name in the Sales process. They must sell only under the registered name. N/A N/A $5,000 - for the Primary only - not for the Sub- $5000 - for the Primary only - not for the Sub- N/A N/A First Violation - $10,000

Effective May Sub-Independent Sales Organization ()-selling under their own name An organization or individual, which is not a Member, whose bankcard related business relationship with a Member is *Merchant solicitation, sales or service and/or *Cardholder solicitation. *Enhanced /Service Provider Forms $5,000 $5,000 -Full Due

Effective May Third-Party Servicer (TPS) An organization that: * Has a Direct contractual relationship with the Member * Is not a Member of Visa USA & is not directly connected to VisaNet * Examples include but are not limited to: Gateways from a Merchant to a Processor Provider of Back Office Support Supporting loyalty programs Electronic Data Capture Fraud servicing, monitoring or scrubbing Credit Underwriting (issuing) Collections Voice authorization and routing Call referral processing/telemarketing Clearing file preparations and submissions Settlement processing Cardholder and merchant statement preparation Chargeback processing Merchant help desk support Loading software into terminals accepting cards Loading or injecting encryption keys into terminals or PIN pads *Enhanced /Service Provider Forms -Full Due Merchant Servicer (MS) An organization that: * Has a Direct contractual relationship with the Merchant * Is not a Member of Visa USA Is not directly connected to VisaNet * Provides response processing for Visa Members related to program solicitations, transaction processing, data capture, and/or other administrative functions, such as chargeback processing, risk/security reporting, and customer service. See Third-Party Servicer (above) for additional examples *Enhanced /Service Provider Forms -Full Due

Effective May Encryption and Support Organization (ESO) An organization that is not a Member, whose debit business relationship involves any of the following activities: * Loading software into an ATM or terminal that accepts cards * Loading or injecting encryption keys into an ATM or terminal/pin Pad *Providing help-desk support that includes re-programming of ATM/terminal software * Generating, storing, or loading/injecting cryptographic keys into PIN Pads or ATMS * Distributing new DES keys or destroying old DES keys * Decommission or commissioning PIN-entry devices * Providing general key custodial support services *Enhanced /Service Provider *Must be PCI PIN compliant - providing a current TG-3 and Visa PIN Security Audit Forms member, effective -Full Due VisaNet Processor Referral Effective June 6, 2007, a Member, or Visa approved nonmember who is directly connected to VisaNet, that provides Authorization, Clearing, or Settlement services for Merchants and/or Members. Visa Guide: A referral occurs when an individual or organization recommends that a Merchant consider processing credit transactions through a specific Visa Member. The individual or organization may provide (i) general information regarding credit card processing and (ii) the Visa Member's phone number for further information. The referring entity may not quote rate, fees, terms and conditions. A referral can only be made by an individual whose primary function is not merchant solicitation. Individuals who refer merchants to a particular Visa Member to obtain credit card processing are not required to register in the Agent Registration Program.

Effective May MasterCard Term Definition Registration Requirements Forms Initial Registration Annual Renewal An is any MSP that provides Program Services, other * MSP application - thru MC than transaction and cardholder processing, to a MasterCard Connect.MRP, executed Forms member in furtherance of the member's Program. * By way of example and not limitation, such services include merchant solicitation, cardholder solicitation, and customer service Due - Credit Review $5,000 $5,000, Full Due Member Sign-off Required Penalties for Violation Independent Contractor- MasterCard does not acknowledge as a MSP N/A N/A N/A N/A N/A N/A N/A N/A Sub Contractor - not N/A N/A N/A N/A N/A N/A N/A N/A permitted by MasterCard Sub-Independent Sales Organization ()-selling under the name of primary An organization or individual, which is not a Member, whose bankcard related business relationship with a Member is: * Merchant solicitation, sales or service and/or * Cardholder solicitation. **Sub may not use its name in the Sales process. They must sell only under the registered name. N/A N/A N/A N/A N/A N/A Sub Independent Sales Organization ()-Selling under their own name An is any MSP that provides Program Services, other than transaction and cardholder processing, to a MasterCard member in furtherance of the member's Program. * By way of example and not limitation, such services include merchant solicitation, cardholder solicitation, and customer service * MSP application - thru MC, executed Forms $5,000 $5,000, Full Due Type II Third-Party Processor (TPP) A TPP is an MSP that performs transaction and cardholder processing services for one or more members (such services are referred to as "TPP" Services) and is contracted by the Member. * Program Services include, but are not limited to, terminal operation, authorization routing, voice authorization, gatway and switching services, call referral processing, electronic data capture, clearing file preparation and submission, settlement processing (excluding possession,ownership,or control of settlement funds, which are prohibited), cardholder and merchant statement preparation, and chargeback processing * MSP application - thru MC, executed Forms $5,000 per Member $5,000 per Member, Full Due

Effective May Type I Third Party Processor (TPP) A TPP is defined as a Member Service Provider (MSP) that performs transaction and cardholder processing Program Services. * Type I TPPs generally are those that provide Program Service to a large number of Members or that otherwise could significantly impact the integrity of the Interchange. *A Type I TPP classification is based on, but not limited to, the annual number of authorized credit and debit transactions processed by the TPP. *MasterCard, in its sole discretion, will determine which TPPs to classify as Type I TPPs. * MSP application - thru MC, executed *A third-party risk assessment every two years. Personal identification number (PIN) security review annually and as determined necessary by MasterCard MSP risk operations review (a Risk Assessment Program [RAMP] Level 1 review or an onsite review as determined by MasterCard) annually Forms $50,000 $50,000 N/A N/A After MasterCard identifies a processor as a Type I TPP and notifies such processor accordingly, MasterCard will grant the processor 90 days from the notification date to provide documentation required under the Type I TPP Evaluation Program rules. Failure to provide the required documentation to MasterCard within 90 days of the notification date will result in a noncompliance assessment of USD 25,000 each month until such documentation is received. Otherwise, MasterCard will reclassify the processor as a Type II TPP. Data Storage Entity (DSE) A DSE is defined as an entity other than a member, merchant,, or TPP that stores, transmits, or processes card or transaction data for or on behalf of a merchant,, or TPP. *Must be PCI compliant *Registration required Forms N/A N/A, Full Due Encryption and Support Organization (ESO) An ESO is categorized and registered as a DSE ONLY if the entity is loading/injecting cryptographic keys. If the entity is performing any additional functions, then they would be categorized as an and/or TPP and follow their respective registration requirements as outlined. *Must be PCI compliant *Registration required - based on functions being performed Forms DSE - N/A DSE - N/A, Full Due