130 likes | 312 Views
Preparing for & Maintaining PCI Compliance. Topics of Discussion. About Link2Gov Establishing security policy and e-commerce infrastructure Preparing for the audit Facility and resource requirements during the audit Responsiveness to findings Maintaining security standards following audit
E N D
Preparing for & Maintaining PCI Compliance CONFIDENTIAL
Topics of Discussion • About Link2Gov • Establishing security policy and e-commerce infrastructure • Preparing for the audit • Facility and resource requirements during the audit • Responsiveness to findings • Maintaining security standards following audit • Marketing PCI compliance • Questions CONFIDENTIAL
About Link2Gov • Our mission is to be the premier provider of integrated IP payment services using web, telephony, point of sale and other transaction technologies. CONFIDENTIAL
Payment methods include: Credit Cards ATM/Debit Cards (PIN-Secured) Check Cards (Signature-Debit) Electronic Checks (Conversion, Verification and Guarantee) Payment channels include: Point-of-Sale (POS) Internet Interactive Voice Response (IVR) Mail and Kiosks About Link2Gov CONFIDENTIAL
About Link2Gov • IP Gateway • Virtual Terminal: LINK2POS • Network Controlled VeriFone POS Terminals • Web & IVR Application Generator & Hosting • Consolidated Real-Time Internet Reporting • Flexible Funding Models CONFIDENTIAL
Establishing security policy and e-commerce infrastructure • Ecommerce Infrastructure • Documentation • Implementation • Enforcement • Policy CONFIDENTIAL
Preparing for the audit • Yearly Changes • Computer Security Test Plan Review • Configuration Management Plan • Risk Assessment Plan • Disaster Recovery Plan • Trusted Facilities Manual CONFIDENTIAL
Facility and resource requirements during the audit • Staffing • Travel • Infrastructure CONFIDENTIAL
Responsiveness to findings • Reviewing Findings • Verify Results • False Positives • Exceptions • Implementation • Configuration Management CONFIDENTIAL
Maintaining security standards following audit • Security Policy Documentation • Enforcement • Audit Trail • System Logs • Accounting • Change Control CONFIDENTIAL
Marketing PCI compliance • Cost Avoidance Through L2G Products • Pass Thru • Web / IVR • Security Validation by Third Party • Certifications CONFIDENTIAL
Questions CONFIDENTIAL