Quantcast
OCT 29, 2009 5:28pm ET

Web Seminars

Dashboards: How's Business? Ask your Data!
March 15, 2012
10 Ways to Achieve Better IT Credibility…and Save Money | A Financial Services Case Study
Available On Demand
Is there Money in the Mobile Wallet?: Business Models and Prospects for Mobile Payments in the U.S.
Available On Demand

Small-Merchant PCI Compliance Low

Print
Reprints
Email

Relatively few small merchants comply with the Payment Card Industry data security standards, and many are unaware the standards even exist, according to security executives.

"I would be shocked if 75% of Level 4 merchants could tell you what the acronym PCI means," said Wenlock Free, the vice president of business development at SecurityMetrics Inc., a Salt Lake City provider of PCI security products and services.

Visa Inc. defines Level 4 merchants as those that process less than 1 million Visa transactions annually; the San Francisco payments company said PCI compliance among Level 4 merchants was "moderate," at June 30.

Not all merchants are "aware of PCI compliance," agreed Jim Anderson, the chief executive of Electronic Commerce International Inc., a Las Vegas independent sales organization. "We have had to instruct some clients to Google it."

Part of the problem is small merchants' overall lack of data security awareness, said Doug Klotnia, the general manager of the compliance division at Trustwave, a Chicago security company.

"Most don't know what data they store or don't store," he said. "There's a lack of understanding of the payment process and a lack of understanding that small merchants are being breached."

Survey

Facebook's securities filings show its Facebook Credits digital currency business is exploding. Does it pose a serious threat to banks?

12%
32%
56%
Already a subscriber? Log in here
Please note you must now log in with your email address and password.