Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking and Finance Review - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Top Stories > EMV AFTER THE HYPE: THREE IMPLEMENTATION STRATEGIES FOR THE LIABILITY SHIFT
    Top Stories

    EMV AFTER THE HYPE: THREE IMPLEMENTATION STRATEGIES FOR THE LIABILITY SHIFT

    Published by Gbaf News

    Posted on September 1, 2015

    7 min read

    Last updated: January 22, 2026

    A visual representation of the three implementation strategies for the EMV liability shift in the banking sector, highlighting key challenges and the importance of adopting secure payment solutions.
    Overview of EMV liability shift strategies in banking and finance - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    By J.D. Oder II, CTO and senior vice president of R&D, Shift4 Corporation

    October 1, 2015: This date has been burned into the consciousness of the U.S. payments industry. This is the date that signals the liability shift for EMV adoption. It would seem on the surface to be a straightforward concept; migrate to EMV cards or possibly be held liable for fraudulent activity. What makes it complicated is the complexity of the market itself, comprised of merchants, processors and payment terminal manufacturers, independent software vendors, merchant banks, credit and debit card issuers and more.

    The shift to EMV is not a particularly smooth one. Although U.S. merchants and issuers have already begun adopting EMV, there are frequent reports that a large number of U.S. merchants are not ready. Industry trade groups are contesting different aspects of the U.S. EMV liability shift, processors need more staff to complete certifications and,as it turns out, EMV won’t solve all of today’s security problems, namely the data breaches that retailers and others have been plagued with in recent years.

    Misleading Information About EMV

    The marketing of EMV has capitalized on the Target and Home Depot breaches to spur the migration, but that tactic has only added to the confusion surrounding the transition. And, as the EMV liability shift date gets closer — which at this time is not a mandate — the various parties pressuring merchants to immediately adopt EMV are creating a misplaced sense of panic, leading merchants to adopt the quickest EMV solution possible, not necessarily the best solution for their businesses.

    As an example, EMV proponents are in some cases recommending the deployment of EMV solutions that don’t incorporate point-to-point encryption (P2PE) or tokenization. These technologies help prevent breaches and simplify PCI compliance. Further, they can help prevent sensitive payment card data from being stolen in the first place, which is the primary source of counterfeit cards. Additionally, the implementation of systems that can’t employ EMV with P2PE and tokenization may in fact put merchants in harm’s way, as it may expose their networks and other POS infrastructures to card data and change their PCI DSS landscape.

    It’s gotten to the point that some merchants have been pressured to transition from an integrated payment solution to a standalone solution, simply because an organization they work with has certified for EMV with a standalone payment terminal, but not an integrated payment terminal. This move may get them ready for EMV by the liability shift, but is sacrificing key integrated payment functionalities that save them significant time and money worth it?

    Merchants need to step back, take a breath, and consider the benefits compared with the cost.How could an EMV implementation that further exposes their environment to breaches be considered a move forward? Why would they even consider sacrificing the key time- and money-saving accounting and security functionalities of an integrated payment solution that contribute to the success of their business operations? The possibility of moving to an implementation of EMV that does not strategically support an organization’s business operations is especially concerning when all merchants get in return is protection from a very specific segment of fraud, counterfeit fraud,which they may not be liable for anyway.

    J.D.Oder

    J.D.Oder

    This brings up a critical fact that is often overlooked or just misunderstood: a merchant’s current contract with their acquiring bank or merchant services provider (MSP) may not even take EMV into account. It is entirely possible that counterfeit fraud was traditionally considered “zero liability” (which is liability that was just part of the issuer doing business) and that a merchant’s agreements do not reflect or even anticipate a shift in counterfeit fraud liability. This means that, based on a merchant’s current contracts, it may not even be possible for the merchant to shoulder the responsibility for that fraud – unless that merchant signs a new contract waiving their protection from it. This is one very important reason why merchants need to be wary of any proposals that require them to re-sign a contract or get into a new contract with their MSP related to updates for EMV; any new or updated contract may also be asking the merchant to sign up for more liability than their current contract allows.

    Who Stands to Lose the Most?

    Of all those involved in the EMV liability shift, there are three groups that stand to bear the lion’s share of the burden: merchants, small card issuers and small merchant banks. Merchants must invest in EMV-compliant terminals and system solutions at a substantial cost. Small issuers and co-issuers are also burdened with the costly retooling of the cards they issue. EMV cards are much more expensive to produce than traditional magnetic stripe cards. And, if they issue contactless EMV cards, these can cost up to two times more than a typical EMV card. Finally, small merchant banks, independent sales organizations (ISOs) and agents have very little control or say over the makeup of the payments industry and stand to lose the most by this liability shift if they cannot influence change or get their merchant customers prepared for EMV.

    Three EMV Implementation Strategies
    It’s taken a long time for EMV to reach the U.S. This technology was created more than 20 years ago and doesn’t account for the proficiency with which hackers, some of whom are now working in large groups and are backed by nation-states, are compromising payment systems today.This means that a well-constructed EMV solution requires the use of layered security to protect sensitive cardholder data. Here are three crucial elements to implement during your EMV migration:

    1. EMV: Even though some in the industry have used questionable tactics to promote EMV,that doesn’t mean that EMV lacks merit for authenticating card-present transactions. Implement EMV in a strategic fashion with the layered security you need.
    2. P2PE: It is important to encrypt all transactional material—regardless of payment type—from the time it is keyed, swiped, inserted or tapped. Merchants should use a device that encrypts at the point a payment terminal interacts with a card so that no transactional information is ever in the clear and at risk of being stolen by hackers. This shrinks the merchant’s cardholder data environment to the secure device level, reducing much of the PCI DSS burden—a burden that remains with EMV. Again, EMV would not have stopped the breaches at Target or Home Depot, nor will it alone prevent future breaches.
    3. Tokenization: Removing all card data from the merchant environment is critical. It places the burden of storing that sensitive data on a vigilant and reliable organization that considers the security of their merchant customers’ transactions its primary job. To do this, merchants must implement a security- or storage-based tokenization solution, which protects the merchant’s environment by replacing sensitive cardholder data with non-decryptable information that is meaningless to hackers. This differs from emerging “payment token” solutions, such as those offered by mobile wallets, by providing security for merchant systems, not just individual consumers.

    EMV alone is not a complete payment security solution, but it does have its place in a well-rounded security plan. Because marketing tactics have been misleading at times, it’s critical that merchants get clarity about what the October liability shift date means for them and which solution will work best for them. EMV on its own cannot stop data breaches, so a comprehensive approach will include P2PE and tokenization to remove sensitive payment card data from the merchant environment and render that data useless to hackers.

    About the Author: J.D. Oder II serves as Shift4’s Senior Vice President of Research and Development and Chief Technology Officer. J.D. is a Certified Network Engineer with more than 15 years of experience. He leads Shift4’s systems operations and development efforts as well as the security and compliance teams. J.D. is the architect of the DOLLARS ON THE NET®payment gateway solution. He was also an early adopter/member of the PCI Security Standards Council. 

    Previous Top Stories PostKeynote speech in progress at the Middle East Banking Innovation Summit 2014
    Next Top Stories PostAmlak Wins Global Banking and Finance Review Awards
    More from Top Stories

    Explore more articles in the Top Stories category

    Image for Lessons From the Ring and the Deal Table: How Boxing Shapes Steven Nigro’s Approach to Banking and Life
    Lessons From the Ring and the Deal Table: How Boxing Shapes Steven Nigro’s Approach to Banking and Life
    Image for Joe Kiani in 2025: Capital, Conviction, and a Focused Return to Innovation
    Joe Kiani in 2025: Capital, Conviction, and a Focused Return to Innovation
    Image for Marco Robinson – CLOSE THE DEAL AND SUDDENLY GROW RICH
    Marco Robinson – CLOSE THE DEAL AND SUDDENLY GROW RICH
    Image for Digital Tracing: Turning a regulatory obligation into a commercial advantage
    Digital Tracing: Turning a regulatory obligation into a commercial advantage
    Image for Exploring the Role of Blockchain and the Bitcoin Price Today in Education
    Exploring the Role of Blockchain and the Bitcoin Price Today in Education
    Image for Inside the World’s First Collection Industry Conglomerate: PCA Global’s Platform Strategy
    Inside the World’s First Collection Industry Conglomerate: PCA Global’s Platform Strategy
    Image for Chase Buchanan Private Wealth Management Highlights Key Autumn 2025 Budget Takeaways for Expats
    Chase Buchanan Private Wealth Management Highlights Key Autumn 2025 Budget Takeaways for Expats
    Image for PayLaju Strengthens Its Position as Malaysia’s Trusted Interest-Free Sharia-Compliant Loan Provider
    PayLaju Strengthens Its Position as Malaysia’s Trusted Interest-Free Sharia-Compliant Loan Provider
    Image for A Notable Update for Employee Health Benefits:
    A Notable Update for Employee Health Benefits:
    Image for Creating Equity Between Walls: How Mohak Chauhan is Using Engineering, Finance, and Community Vision to Reengineer Affordable Housing
    Creating Equity Between Walls: How Mohak Chauhan is Using Engineering, Finance, and Community Vision to Reengineer Affordable Housing
    Image for Upcoming Book on Real Estate Investing: Harvard Grace Capital Founder Stewart Heath’s Puts Lessons in Print
    Upcoming Book on Real Estate Investing: Harvard Grace Capital Founder Stewart Heath’s Puts Lessons in Print
    Image for ELECTIVA MARKS A LANDMARK FIRST YEAR WITH MAJOR SENIOR APPOINTMENTS AND EXPANSION MILESTONES
    ELECTIVA MARKS A LANDMARK FIRST YEAR WITH MAJOR SENIOR APPOINTMENTS AND EXPANSION MILESTONES
    View All Top Stories Posts