PCI DSS Compliance
Recently, MasterCard, Visa, American Express and Discover have joined forces and formed the Payment Card Industry (PCI) Data Security Standard (DSS) to help in the fight against system break-ins that result in compromised cardholder account information. This alliance is recognized by all payment card brands. Merchants who accept any of these cards must participate in this program.
The following websites will give you detailed information on the requirements of the program along with the certified scan vendors to help you become compliant: www.visa.com/cisp and https://sdp.mastercardintl.com. The PCI Standard states that all merchants who "process, store or transmit" cardholder data must be in compliance. As a rule of thumb, any merchant who could expose cardholder data or has a public IP address needs to have scans performed to demonstrate compliance with PCI DSS requirements. You may think you are secure, but that will not stop you from being fined. You must be compliant.
To be sure you are compliant, Newtek Merchant Solutions is requiring you to have an annual or quarterly Network Scan and Questionnaire completed and on file with Newtek, as per the PCI DSS requirements. Fines are being imposed by MasterCard and Visa when card data is compromised. The fines can be up to $250,000 or more depending on the amount of the compromised information. The card companies state that if a merchant is compromised and it is determined that they were not in compliance, a fine will be imposed. Because of these fines, Newtek Merchant Solutions is working with all of our merchants to validate compliance with the PCI DSS program.
Newtek Merchant Solutions. program is designed to bring your business into compliance with PCI Security Standard requirements. We have partnered with SecurityMetrics, a security provider certified by Visa, MasterCard, American Express and Discover. SecurityMetrics' staff is available to assist you in understanding the PCI requirements and how they apply in your specific situation. Newtek Merchant Solutions has negotiated preferred pricing with SecurityMetrics in an effort to help our merchants implement security measures quickly and cost effectively. This discounted price is for the entire year and does not include any hidden or extra costs. By complying with CISP, Cardholder Information Security Program, requirements, you not only meet your obligations to the Visa payment system, but also build a culture of security that benefits everyone.
Compliance is easy! First, determine your compliance requirements. If you need assistance determining how these requirements apply in your situation, SecurityMetrics. PCI Advisors are standing by to assist you. SecurityMetrics is assisting merchants of Newtek Merchant Solutions in making the determination of individual compliance requirements. Second, enroll with SecurityMetrics or another Visa and MasterCard approved scan vendor and third, schedule and complete a vulnerability scan on a quarterly or annual basis along with an annual self-assessment questionnaire.
You may choose to enroll with SecurityMetrics by calling 800-277-6980, option 9 or online at www.securitymetrics.com/compliance_summary.adp. For more information on your merchant requirements, please contact Newtek Merchant Solutions' Customer Service Department at 800-277-6980.










