PCI DSS Compliance - what is it?

Payment Card Industry Data Security Standards (PCI DSS) are a set of guidelines implemented by the card schemes Visa and MasterCard to assist your business to control risk associated with internal and external data compromises.

More specifically, and in relation to the internet, PCI DSS is designed to protect your customer’s credit card data due to increasing credit card fraud by building and maintaining secure networks and regularly monitoring and testing these networks for businesses that process and transmit credit card data over the internet.

If your business is currently involved, or intends to become involved in either storing, processing or transmitting credit card data, you are required to become PCI DSS compliant. This applies to any business that maintains an online shop or payment gateway that accepts credit card payments where you have your own merchant facility or payment application. Even if you only transact one or two credit card payments a year - you are still required to become PCI DSS compliant.

It is important to undertake and attain compliance to avoid exposure to possible fines from the card schemes and service suspension or cancellation from your bank or financial institution which provide your service.

What we can do for you

SPI New Media offer a service to businesses involved in credit card data transactions which utilise the internet. We assist you in becoming PCI DSS compliant and maintaining compliance on an ongoing basis.

To become compliant, our service includes assisting you in completing the set of validation tasks required. This includes:

  • Assisting you in undertaking and completing a quarterly vulnerability scan carried out by an Approved Scanning Vendor (ASV) of your system/s in line with Tier 2, 3 or 4;
  • Assisting you completing an annual Self-Assessment Questionnaire;
  • Assisting you preparing and maintaining your Information Security Policy.

What will it cost?

Fees to provide our services are as follows: prices are effective from 01/01/2010 and based on a twelve month period commencing from the date of our engagement.

  • Annual scheduled quarterly scans and compliance reports - full vulnerability remediation support: $399.00 p/a*
  • Assistance in completion of Self-Assessment Questionnaire and/or assistance  preparing your Information Security Policy:  charged at hourly rate of $125.00 *

*prices exclude GST

Please don’t hesitate contacting us if you require assistance.