Board logo

subject: Pci Vs. Pa-dss - Find Out The Differences [print this page]


The PCI compliance includes a broader elements and requirements than DSS and includes the certification of host of your web server not the shopping carts, applications or your website. The e-commerce hosting companies have to bear al the compliance of PCI by the Security Council. They must follow the rules and regulation by the Security Council by updating their antivirus, keeping their all transaction encrypted and maintaining the need to know basis access to all employee. If you are operating a business that makes use of credit card information and you host is not PCI compliance then it is equivalent to processing and illegal business.

Reasons for creating PCI

The creation of PCI was to cater the security beaches and unlawful uses of credit card information of customers stored on merchants system. It also protects banks as when a credit card was compromised the bank had to face problems by reissuing credit card. So the prime credit card owners came up with a general solution. This solution was some set of rules which to be imposed on each and every business which have any type of credit card information.

Need of PA-DSS

Many of websites uses the third party application and software and they may have some weakness that may result in security violation at servers. So a new standard that forced the developer or software vendors to follow certain rules and regulation to comply with PA-DSS. They must also have unit that handle all PCI compliance issues.

If you accept payment by credit cards and comply with PCI and new PA-DSS then your ecommerce business will run successfully and your consumers must also feels safe while transacting though your site.Since there are certain deadline for following PCI compliance and you also need to ensure that you have the audits in the given time otherwise you will risk your business.

by: Nitesh Patel




welcome to loan (http://www.yloan.com/) Powered by Discuz! 5.5.0