Payment Card Industry or PCI compliance is adherence to a set of security standards that were developed to protect card information during and after a financial transaction.  

PCI applies to all organizations or merchants, regarless of size or number of transactions, that accepts, transmits or stores any cardholder data.  This means that if any customer of that organization ever pays for the merchant directly using a credit card or debit card, then the PCI DSS requirements apply.

What are the requirements of PCI Compliance?

The vendor must:

  1. Build and Maintain a Secure Network 
  2. Protect Cardholder Data
  3. Maintain a Vulnerability Management Program
  4. Implement Strong Access Control Measures
  5. Regularly Monitor and Test Networks
  6. Maintain an Information Security Policy