Credit Card Processing Security Policy Template
Pci dss includes technical and operational requirements for security management policies procedures network architecture software design and other critical protective measures to prevent credit card fraud hacking and various other security vulnerabilities and threats.
Credit card processing security policy template. The general purpose of a statement of policy and procedure is to ensure that company credit cards are used for appropriate purposes and that adequate controls are established for day to day use. In accordance with pci dss all employees involved in processing credit card transactions and the support of the cardholder data environment ccnet must be trained annually on the appropriate procedures. Credit card processing and security policy 201607 section 1 scope this policy applies to all ferris state university faculty staff students organizations and individuals who on behalf of the university handle electronic or paper documents associated with credit or debit card receipt transactions or accept payments in the form of. Compliance with card processing activities must be maintained as described herein and in accordance with the policies listed in the related policiesdocuments section of this policy.
Its aim is to provide a detailed understanding of information security responsibilities for all levels of staff contractors partners and third parties that access the credit card processing network. Our payment service provider is sage pay formerly protx the largest independent payment service provider psp in the uk and ireland. It is sage pays utmost priority to ensure that transaction data is handled in a safe and secure way. The standards apply to all organizations that store process or transmit cardholder data.
Sage pay provides a secure payment gateway level 1 pci dss processing payments for thousands of online businesses including ours. Credit card processing and handling security policy policy statement the college must take all appropriate measures to protect credit card numbers used to make payments to the college. Sample information security policy details the security strategy in relation to the storage processing and transmission of credit card data. Pci data security standards for accepting credit cards payment card industry data security standards pci dss for accepting credit cards.
Boston university is required by the card associations to be compliant with the payment card industry pci data security standards and is committed to providing a secure environment for our customers to protect against both loss and fraud. A company credit card policy applies to all employees who maintain a credit card for company use and their managers.