Connect with us

Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website. .

Top Stories

PCI COMPLIANCE – WHY YOUR CUSTOMERS SHOULD KNOW ABOUT PCI DSS

Rob Crutchington

By Rob Crutchington – Director of Encoded

If you were to ask shoppers in the street to name an online payment protection process the chances are they would know about Verified by Visa, 3D Secure, Mastercard SecureCode or even Safekey from American Express but most would draw a blank at the mention of PCI DSS.  Why is this and why doesn’t it come as a surprise?

Rob Crutchington

Rob Crutchington

The Payment Card Industry Data Security Standard (PCI DSS) was created by Visa®, MasterCard®, JBC®, Discover® and American Express® and is made up of 12 requirements designed to secure business systems that store, process or transmit card holder data and is meant to protect consumers and merchants against security breaches. However, beyond the payment industry including merchants, suppliers, acquirers, VISA and Mastercard what does it really mean to people and why aren’t consumers aware of its importance?

Customers need confidence
For customers to transact with an organisation either via a contact centre or online they need to be confident that their payment cards will not be compromised, their personal details are secure and their identities cannot be stolen.  By complying with PCI DSS, merchants and service providers meet their obligations to the payment system and build a culture of security that benefits everyone.  However, not enough is being done to advertise this fact.

Who pays the fine?
In the event of a loss of data or cards being used fraudulently, fines are passed down the chain from VISA and MasterCard at the top to the merchant/retailer at the bottom.  The consumer doesn’t suffer financially as measures are in place and assurances given to prevent this happening.  The fact remains that something has gone wrong and individuals will be inconvenienced and could suffer from emotional stress at the thought of their details being stolen and used fraudulently.  In time this could lead to a reduction in customer confidence in both the method of payment and a reduction in confidence of the retailer who caused the problem.  Surely, all those involved in the card payment industry including merchant acquirers have a duty of care to improve public awareness.  This in turn would benefit consumers as card processing, security and compliance, fraud, fines and penalties are all part of the ‘retail cost structure’ which can lead to increased prices.

Some merchant acquirer companies have started to levy a surcharge on suppliers and merchant organisations that are not PCI compliant to encourage them to go through the full process of compliance.  This can be an expensive exercise because to achieve the top level of compliance, Level 1, an Attestation of Compliance (AOC) is needed which must be completed by an independent Qualified Security Assessor (QSA) along with a Report on Compliance.  QSAs cost money and have very exacting standards.  But do the benefits outweigh the costs and time involved?

Matthew Tyler, CEO and QSA at Blackfoot believes so, “Only greater public awareness will prove the real value of PCI DSS and lead to reduced fines and improved security.  People will ultimately choose to transact with those organisations they have confidence in and they know are PCI compliant.”

Greater Public Awareness
To achieve this greater awareness some of the money paid in fines and surcharges should be used to promote the advantages of dealing with PCI compliant operations.  Once card holders have a greater knowledge and know what questions to ask of their merchants and the payment system as a whole, the benefits will become apparent.
If the public had a clearer understanding of the importance of PCI DSS people would only purchase from those organisations who demonstrate full PCI compliance, therefore reducing the instances of lost data and fraudulent activities.  The welcome result of this would be fewer fines, lower prices and less sleepless nights worrying about security.

To my mind it is simple – use the money raised in fines and levies to promote the relevance of PCI DSS so that customers look out for the PCI Sign when making a purchase and paying by card.  This will benefit everyone, improve security and raise the profile of PCI DSS to level it deserves.

Global Banking & Finance Review

 

Why waste money on news and opinions when you can access them for free?

Take advantage of our newsletter subscription and stay informed on the go!


By submitting this form, you are consenting to receive marketing emails from: Global Banking & Finance Review │ Banking │ Finance │ Technology. You can revoke your consent to receive emails at any time by using the SafeUnsubscribe® link, found at the bottom of every email. Emails are serviced by Constant Contact

Recent Post