Latest Payment Application Security Standard Released
By:
Biztech2 Staff
| Apr 18, 2008
The PCI Security Standards Council, a global, open industry standards body providing management of the Payment Card Industry Data Security Standard (DSS), and the Payment Application Data Security Standard (PA-DSS), has announced the release of version 1.1 of the Payment Application Data Security Standard (PA-DSS). The Council will also roll out a program to include maintenance of a list of validated payment applications. This list will enable buyers to identify the payment applications that have been recognised by the PCI SSC and meet the new standard.
Increasingly criminals are targeting vulnerabilities in payment applications to steal payment card data, and some software may be storing sensitive card data on a user's system unknowingly.
"Many merchants and retailers rely on third-party software vendors for applications that run payment processing," said J Joseph Finizio, Executive Director, Retail Solutions Providers Association. "Having the Council manage a globally-recognised list of validated payment applications will make it easier for merchants of all sizes to select validated payment applications that are accepted by all the major payment brands, ensuring that cardholder data continues to be secure."
PA-DSS is the Council-managed program formerly managed by Visa Inc and known as the Payment Application Best Practices (PABP). The goal of PA-DSS is to help software vendors and others develop secure payment applications that do not store prohibited data, such as full magnetic stripe, other sensitive authentication data or PIN data, and ensure their payment applications support compliance with the PCI DSS. PA-DSS requirements apply to payment applications that are sold, distributed or licensed to third parties.
PA-DSS requirements do not apply to in-house payment applications developed by merchants or service providers that are not sold to a third party, but these applications must still be secured in accordance with the PCI DSS.
Increasingly criminals are targeting vulnerabilities in payment applications to steal payment card data, and some software may be storing sensitive card data on a user's system unknowingly.
"Many merchants and retailers rely on third-party software vendors for applications that run payment processing," said J Joseph Finizio, Executive Director, Retail Solutions Providers Association. "Having the Council manage a globally-recognised list of validated payment applications will make it easier for merchants of all sizes to select validated payment applications that are accepted by all the major payment brands, ensuring that cardholder data continues to be secure."
PA-DSS is the Council-managed program formerly managed by Visa Inc and known as the Payment Application Best Practices (PABP). The goal of PA-DSS is to help software vendors and others develop secure payment applications that do not store prohibited data, such as full magnetic stripe, other sensitive authentication data or PIN data, and ensure their payment applications support compliance with the PCI DSS. PA-DSS requirements apply to payment applications that are sold, distributed or licensed to third parties.
PA-DSS requirements do not apply to in-house payment applications developed by merchants or service providers that are not sold to a third party, but these applications must still be secured in accordance with the PCI DSS.
| Ads by Google | ||
Post a Comment on “Latest Payment Application Security Standard Released”
LATEST NEWS
- Automation of Insurance Application Process Results In Huge RoI
- Vodafone Brings BlackBerry Storm To The Market
- Tata Consultancy Services To Acquire Citigroup Global Services
- Nuance Signs Agreement With Nokia Spanning Open Development Framework
- Constant Team Changes By IT Consultants Are 'Unacceptable'
- Who Will Own The Mobile Internet?
- DECT Technology Penetration In Untapped Markets Driving Growth
- India Numero Uno Spamming Nation In Asia: Trend Micro
- Telenor To Deploy Subex Data Integrity Mgmt Solution
- Spanco Telesystems, Spice Televentures To Form Onshore Domestic BPO
| Ads by Google | ||
RELATED
- Automation of Insurance Application Process Results In Huge RoI
- Vodafone Brings BlackBerry Storm To The Market
- Tata Consultancy Services To Acquire Citigroup Global Services
- Nuance Signs Agreement With Nokia Spanning Open Development Framework
- Constant Team Changes By IT Consultants Are 'Unacceptable'
| Ads by Google | ||
Hot Searches & Keywords :
AMD
APAC
Acquisition
Asia Pacific
Asian Paints
BFSI
BI
BPO
BSNL
Bangalore
Bharti Airtel
Blackberry
Broadband
Business Objects
Business intelligence
CA
CIO
CRM
Cisco
Cisco Systems
Compliance
Data
Data Centre
Datacentre
Dell
EMC
ERP
Frost & Sullivan
Gartner
Google
Growth
HDFC Bank
HP
IBM
IDC
IPTV
IT
India
Innovation
Intel
Internet
Linux
Manish Choksi
McAfee
Microsoft
Mobile
Mobile Banking
Nasscom
NetApp
Network
Networking
Novell
Open Source
Oracle
PLM
ROI
Red Hat
Retail
SAP
SMB
SMBs
SME
SOA
SaaS
Security
Servers
Software
Storage
Sun Microsystems
Symantec
TCS
VMware
Virtualisation
VoIP
Web
Web 2.0
Websense
WiMax
Wipro
e-governance
healthcare
outsourcing
partnership
telecom
|
|
||
| Ads by Google |
Sections
Applications |
Audits&surveys |
Bfsi |
Bookreviews |
Businessintelligence |
Businessprocesses |
Ciscosmenews |
Ciscowhitepapers |
Computing |
Contactcenters |
Contributedvideos |
Crm |
Ctoprofiles |
Datasecurity |
Databases |
Datacenters |
Education |
Energy |
Erp |
Focusspecials |
Government |
Guruspeak |
Hardwaresecurity |
Indialogue |
Innovation&leadership |
Innovators |
Intrusiondetection |
Intrusionprevention |
Ites |
Knowledgeprocess |
Lenovo |
Linux |
Managedservices |
Manufacturing |
Media |
Mobile |
Mobility |
Movement |
Networking |
Oncuewithitleaders |
Peoplemanagement |
Pharma |
Platforms |
Policies&compliance |
Recruitment |
Retail |
Saas |
Scm |
Securitymanagement |
Servers |
Services |
Softwaresecurity |
Softwareservices |
Specialreports |
Storage |
Storagesolution(apps) |
Techaction |
Telecom |
Telecommunications |
Theinsider |
Trendwatch |
Web |
Webisodescisco |
Weeklywrapup |
About Us | Copyright © 2006, Biztech2.com India - A Network18 Venture

