credit card

Firms slow to apply card standards

Study shows 40 per cent of firms have no plans to achieve PCI standard

Written by Lara Williams

Forty per cent of companies admit they have no plans to achieve the Payment Card Industry (PCI) Data Security Standard, according to research published today (Thursday).

Figures from security firm CyberSource show only 36 per cent of organisations have started the compliance process.

The PCI standard provides a framework for customer data security processes, including preventing, detecting and reacting to security breaches.

The PCI Data Security Standard lists 12 security requirements that any merchant processing customer card details must achieve.

Only companies turning over more than six million transactions a year require an external audit. The remainder are required to self-audit.

Eventually all merchants will have to comply but for now the focus is on the larger firms, says Gartner analyst Avivah Litan.

She says acquiring banks that enforce the standards will probably start fining merchants that fail to become compliant

‘This standard is not going to go away. Banks want to be paid back for all the fraud losses they are experiencing and they will do this by fining merchants,’ she said.

Chris Gaines, senior manager at Deloitte and Touche, says companies should achieve compliance even if they do not need an external audit.

‘In the event of a breach an independent forensics investigation will take place and that is when non-compliance will become an issue,’ said Gaines.

‘Companies are seeing this as less of a compliance issue and more of a brand value protection exercise, which is the right thing to do,’ he said.

What do you think? Email feedback@computing.co.uk

Further reading:

Card standards ignored

reader comments

related articles

 

Review 2007: IT security and e-crime

Computing's review of the year looks back at the top IT security and cybercrime stories 20 Dec 2007

Online merchants call for greater co-operation

New research higlights fraud as number one technical concern for online retailers 15 Jan 2008

Online fraudsters target large merchants

Report identifies different targets for 'professional' and 'rookie' scammers 16 Jan 2008

related whitepapers

today's top stories

Learning from the credit crunch to avoid a broadband crunch

While it might be the most pressing issue de jour , the financial system isn’t the only area where government needs to... 10 Oct 2008

How careerism can warp IT procurement

Many working in IT put their career interests before those of their employer when weighing up purchasing options 10 Oct 2008

City in pressing need of skilled IT matchmakers

With the financial services sector plunging ever deeper into an M&A maelstrom, IT leaders are having their systems integration skills and due diligence expertise tested as never before 09 Oct 2008

The definitive guide to software development

Five key trends and five best practice tips to help you improve your programming capabilities 09 Oct 2008

Computing podcast - IT implications of the banking crisis, and the FSA clamps down on IT security

We discuss the effect of shotgun mergers and acquisitions on financial services IT staff, and examine the industry regulator's plan to fine directors for information security breaches 09 Oct 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job


IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you apply for a job that was advertised on Facebook or a similar social networking site?

Would you apply for a job that was advertised on Facebook or a similar social networking site?

The government is using Facebook to recruit IT staff - would you apply to such an ad?

Previous poll results

Latest audio and video articles

programming codeVideo

The definitive guide to software development

Five key trends and five best practice tips to help you improve your programming capabilities 09 Oct 2008

Podcast imageAudio

Computing podcast - IT implications of the banking crisis, and the FSA clamps down on IT security

We discuss the effect of shotgun mergers and acquisitions on financial services IT staff, and examine the industry regulator's plan to fine directors for information security breaches 09 Oct 2008

Latest in-depth articles

Financial Services Authority buildingAnalysis

FSA threatens executives with fines

Senior management to be held accountable for security lapses at banks 09 Oct 2008

Comment

Broadband must be a spending priority

For the economic health of the nation, the government would do better to bankroll an optical fibre rollout rather than prop up profligate banks 09 Oct 2008

Advertisement

Primary Navigation