This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.
PCI-DSS
Abacode streamlines PCI compliance with expert assessments, security measures, and ongoing monitoring. Their holistic approach ensures organizations are audit-ready, minimizing risks and protecting cardholder data effectively.
-
Does Your Organization Handle Cardholder Data?
Find Out What Your Organization Has to Do to Comply with PCI DSS Security Regulations!
The PCI Security Standards Council is an international organization that established the Payment Card Industry standards for securing cardholder data around the world.
The requirements vary depending on the level of organization. Click here to figure out which level you are and get an idea of what you’ll need to do to comply.
Goals |
PCI DSS Requirements |
Build and Maintain a Secure Network |
|
Protect Cardholder Data |
|
Maintain a Vulnerability Management Program |
|
Implement Strong Access Control Measures |
|
Regularly Monitor and Test Networks |
|
Maintain an Information Security Policy |
|
4 Levels of PCI
LEVEL 1
Merchants that handle:
- 6 million+ Visa, Mastercard, or Discover transactions per year
- 2.5 million+ American Express transactions per year
- 1 million+ JCB transactions per year
Merchants that have suffered a data breach or cyberattack resulting in compromised cardholder data or that have been identified by a card issuer as Level 1
REQUIREMENTS
- Annual Report on Compliance (ROC) by a Qualified Security Assessor (QSA)
- Quarterly network scan by an Approved Scan Vendor (ASV)
- Attestation of Compliance Form
LEVEL 2
Merchants that handle:
- 1-6 million Visa, Mastercard, or Discover transactions per year
- 50,000 to 2.5 million American Express transactions per year
- less than 1 million JCB transactions per year
REQUIREMENTS
- Annual Self-Assessment Questionnaire (SAQ)
- Quarterly network scan by an Approved Scan Vendor (ASV)
- Attestation of Compliance Form
LEVEL 3
Merchants that handle:
- 20,000 – 1 million Visa e-commerce transactions per year
- 20,000+ Mastercard e-commerce transactions per year, and up to to 1 million total Mastercard transactions per year
- 20,000 – 1 million Discover card-not-present transactions per year
- less than 50,000 American Express transactions
REQUIREMENTS
- Annual Self-Assessment Questionnaire (SAQ)
- Quarterly network scan by an Approved Scan Vendor (ASV)
- Attestation of Compliance Form
LEVEL 4
Merchants that handle:
- less than 20,000 Visa or Mastercard e-commerce transactions per year
- up to 1 million Visa or Mastercard transactions per year
REQUIREMENTS
- Established by the merchant’s acquiring bank
- Usually include an SAQ and Quarterly Network Scan by an ASV
Why Choose Abacode as Your MSSP?
As certified cybersecurity & compliance experts (CISSP, CIA, CISA, CEH, PMP, etc.), PCI-DSS framework is one of our focuses. Abacode continuously prepares organizations for their 3PAO assessments throughout the year and help them maintain compliance moving forward.
Abacode’s compliance portal helps streamline continuous compliance and security control effectiveness tracking for organizations before, during, and after assessments.
Connect with us today to learn more about the PCI-DSS compliance process and the cost of implementing a PCI-DSS program.