 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Regulatory Compliance, Governance and Security &#187; american express</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/compliance-governance/tag/american-express/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/compliance-governance</link>
	<description></description>
	<lastBuildDate>Thu, 10 Mar 2011 15:04:50 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>PCI Merchant Level Requirements &#124; VISA Merchant Level Compliance</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-level-requirements-visa-merchant-level-compliance/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-level-requirements-visa-merchant-level-compliance/#comments</comments>
		<pubDate>Fri, 24 Jul 2009 20:12:56 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[american express]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[Discover Card]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[level 1]]></category>
		<category><![CDATA[level 2]]></category>
		<category><![CDATA[level 3]]></category>
		<category><![CDATA[level 4]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[pci merchant level requirements]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-level-requirements-visa-merchant-level-compliance/</guid>
		<description><![CDATA[PCI Merchant Level Requirements for VISA are stated as the following: Level 1: Any merchant-regardless of acceptance channel-processing over 6,000,000 Visa transactions per year. Also, any merchant that Visa, at its sole discretion, determines should meet the Level 1 merchant requirements to minimize risk to the Visa system. Level 2: Any merchant-regardless of acceptance channel-processing [...]]]></description>
				<content:encoded><![CDATA[<p><strong>PCI Merchant Level Requirements for VISA are stated as the following:</strong></p>
<p>Level 1: Any merchant-regardless of acceptance channel-processing over 6,000,000 Visa transactions per year.  Also, any merchant that Visa, at its sole discretion, determines should meet the Level 1 merchant requirements to minimize risk to the Visa system.</p>
<p>Level 2: Any merchant-regardless of acceptance channel-processing 1,000,000 to 6,000,000 Visa transactions per year.</p>
<p>Level 3: Any merchant processing 20,000 to 1,000,000 Visa e-commerce transactions per year.</p>
<p>Level 4: Any merchant processing fewer than 20,000 Visa e-commerce transactions per year, and all other merchants-regardless of acceptance channel-processing up to 1,000,000 Visa transactions per year.</p>
<p>The other payment brands (MasterCard, American Express, Discover Card, and JCB) also have their own <a href="http://www.pciassessment.org/merchants.php">requirements for merchants</a>. </p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-level-requirements-visa-merchant-level-compliance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI DSS Requirements &#124; VISA Merchant Levels and Requirements for Compliance</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-visa-merchant-levels-and-requirements-for-compliance/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-visa-merchant-levels-and-requirements-for-compliance/#comments</comments>
		<pubDate>Thu, 30 Apr 2009 14:51:43 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[000]]></category>
		<category><![CDATA[000 to 1]]></category>
		<category><![CDATA[000 to 6]]></category>
		<category><![CDATA[20]]></category>
		<category><![CDATA[american express]]></category>
		<category><![CDATA[amex]]></category>
		<category><![CDATA[annual self assessment]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[Discover Card]]></category>
		<category><![CDATA[fewer than 20]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[level 1]]></category>
		<category><![CDATA[level 2]]></category>
		<category><![CDATA[level 3]]></category>
		<category><![CDATA[level 4]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[pci dss requirements]]></category>
		<category><![CDATA[pci qsa]]></category>
		<category><![CDATA[processing 1]]></category>
		<category><![CDATA[processing over 6]]></category>
		<category><![CDATA[quarterly network scan asv]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-visa-merchant-levels-and-requirements-for-compliance/</guid>
		<description><![CDATA[PCI DSS VISA Requirements for Merchants as stated by VISA require merchants to first and foremost identify what “Level” of compliance is required. This simply requires your organization to identify the number of transactions per year that are undertaken. In short, calculate or approximate this number to see which level you fall into. Level 1: [...]]]></description>
				<content:encoded><![CDATA[<p><a href="http://www.pciassessment.org/merchants.php">PCI DSS VISA Requirements</a> for Merchants as stated by VISA require merchants to first and foremost identify what “Level” of compliance is required. This simply requires your organization to identify the number of transactions per year that are undertaken. In short, calculate or approximate this number to see which level you fall into. </p>
<p>Level 1: Any merchant-regardless of acceptance channel-processing over 6,000,000 Visa transactions per year and Any merchant that Visa, at its sole discretion, determines should meet the Level 1 merchant requirements to minimize risk to the Visa system.<br />
Level 2: Any merchant-regardless of acceptance channel-processing 1,000,000 to 6,000,000 Visa transactions per year.<br />
Level 3: Any merchant processing 20,000 to 1,000,000 Visa e-commerce transactions per year.<br />
Level 4: Any merchant processing fewer than 20,000 Visa e-commerce transactions per year, and all other merchants-regardless of acceptance channel-processing up to 1,000,000 Visa transactions per year.</p>
<p>Now, based on which Level you fall into, listed below are the requirements as set forth by VISA.</p>
<p>Level 1: Annual onsite review by QSA (PCI DSS Assessment) and Quarterly Network Scan by ASV<br />
Level 2: Annual Self Assessment Questionnaire and Quarterly Network Scan by ASV<br />
Level 3: Annual Self Assessment Questionnaire and Quarterly Network Scan by ASV<br />
Level 4: Annual Self Assessment Questionnaire and Quarterly Network Scan by ASV</p>
<p>To learn more about PCI DSS Requirements, visit <a href="http://www.pciassessment.org">pciassessment.org</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-visa-merchant-levels-and-requirements-for-compliance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Payment Card Industry Data Security Standard &#124; Learn about PCI DSS</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/payment-card-industry-data-security-standard-learn-about-pci-dss/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/payment-card-industry-data-security-standard-learn-about-pci-dss/#comments</comments>
		<pubDate>Mon, 20 Apr 2009 13:03:14 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[american express]]></category>
		<category><![CDATA[amex]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[discover]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[merchants]]></category>
		<category><![CDATA[Payment Card Industry Data Security Standard]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[pci dss self assessment]]></category>
		<category><![CDATA[pci ssc]]></category>
		<category><![CDATA[service providers]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/payment-card-industry-data-security-standard-learn-about-pci-dss/</guid>
		<description><![CDATA[The Payment Card Industry Data Security Standard, commonly known as PCI DSS, is a far reaching compliance initiative put forth in a collaborative fashion by the major payment brands (VISA, MasterCard, American Express, Discover, and JCB). These compliance initiatives are overseen and guided by the Payment Card Industry Security Standards Council (PCI SSC). Thus, if [...]]]></description>
				<content:encoded><![CDATA[<p>The Payment Card Industry Data Security Standard, commonly known as PCI DSS, is a far reaching compliance initiative put forth in a collaborative fashion by the major payment brands (VISA, MasterCard, American Express, Discover, and JCB). These compliance initiatives are overseen and guided by the Payment Card Industry Security Standards Council (PCI SSC).  </p>
<p>Thus, if you need to become PCI DSS compliant, there are a number of valuable resources to look at.  But first and foremost, you need to understand what Level you fall into for PCI DSS compliance. For merchants, you can be categorized anywhere from a Level 1 to a Level 4. Level 1 audit require an on site PCI DSS assessment, while other Levels you can conduct a PCI DSS Self Assessment. These are general rules, however. Compelling business requirements would require some Level 2, 3, and 4 providers to possibly have an on site audit conducted. Also, there are varying requirements depending on your transaction level between the major payment brands. <a href="http://www.pciassessment.org/merchants.php">Find out what your transaction level is</a>, first and foremost.</p>
<p>Additionally, there are also requirements for service providers, thus you will <a href="http://www.pciassessment.org/service-providers.php">need to identify your transaction level also.</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/payment-card-industry-data-security-standard-learn-about-pci-dss/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI Merchant Levels for American Express &#124; PCI DSS</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-levels-for-american-express-pci-dss/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-levels-for-american-express-pci-dss/#comments</comments>
		<pubDate>Sun, 12 Apr 2009 12:36:41 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[american express]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[Discover Card]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[level 1]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[PCI DSS assessment]]></category>
		<category><![CDATA[pci merchant levels]]></category>
		<category><![CDATA[qsa]]></category>
		<category><![CDATA[quarterly network scan]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-levels-for-american-express-pci-dss/</guid>
		<description><![CDATA[PCI merchant levels have been clearly defined by all the major payment brands (VISA, MasterCard, American Express, Discover Card, and JCB). What&#8217;s important to note is that you should also look at each of the payment brand&#8217;s respective Levels for truly understanding where you fall. Thus, PCI merchant levels for American Express are defined as [...]]]></description>
				<content:encoded><![CDATA[<p><strong><a href="http://www.pciassessment.org/merchants.php#bookmark-3">PCI merchant levels</a></strong> have been clearly defined by all the major payment brands (VISA, MasterCard, American Express, Discover Card, and JCB). What&#8217;s important to note is that you should also look at each of the payment brand&#8217;s respective Levels for truly understanding where you fall.  </p>
<p>Thus, PCI merchant levels for American Express are defined as the following:</p>
<p><strong>Level 1: </strong>Merchants processing over 2.5 million American Express Card transactions annually or any merchant that American Express otherwise deems a Level 1.</p>
<p><strong>Level 2:</strong> Merchants providing 50,000 to 2.5 million American Express transactions annually or any merchant that American Express otherwise deems Level 2.</p>
<p><strong>Level 3:</strong> Merchants processing less than 50,000 American Express transactions annually.</p>
<p>Thus, the requirements for these respective Levels as far as compliance is concerned are the following:</p>
<p><strong>Level 1:</strong> Annual onsite review by QSA (PCI DSS Assessment) and Quarterly Network Scan by ASV.<br />
<strong>Level 2:</strong> Quarterly Network Scan by ASV.<br />
<strong>Level 3:</strong> Quarterly Network Scan by ASV.</p>
<p>To learn more about PCI Merchant Levels and the Payment Card Industry Data Security Standards (PCI DSS), visit <strong><a href="http://www.pciassessment.org">pciassessment.org</a></strong></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-merchant-levels-for-american-express-pci-dss/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Credit Card Security Compliance &#124; Learn about PCI DSS</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/credit-card-security-compliance-learn-about-pci-dss/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/credit-card-security-compliance-learn-about-pci-dss/#comments</comments>
		<pubDate>Thu, 26 Mar 2009 01:09:17 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[american express]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[credit card security compliance]]></category>
		<category><![CDATA[Discover Card]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[payment card industry data security standards (PCI DSS)]]></category>
		<category><![CDATA[pci dss self assessment]]></category>
		<category><![CDATA[qualified security assessor (QSA)]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/credit-card-security-compliance-learn-about-pci-dss/</guid>
		<description><![CDATA[Credit card security compliance is more technically known as the Payment Card Industry Data Security Standards, simply known as PCI DSS. PCI DSS is a framework established and agreed upon by the major payment brands (Visa, MasterCard, American Express, Discover Card, and JCB). The oversight, training and assessment guidelines for PCI DSS is conducted by [...]]]></description>
				<content:encoded><![CDATA[<p>Credit card security compliance is more technically known as the Payment Card Industry Data Security Standards, simply known as PCI DSS. PCI DSS is a framework established and agreed upon by the major payment brands (Visa, MasterCard, American Express, Discover Card, and JCB). The oversight, training and assessment guidelines for PCI DSS is conducted by the Payment Card Industry Security Standards Council, known as the PCI SSC. </p>
<p>Payment card industry compliance is a very general and broad term, thus you need to fully understand what your compliance needs are and how to go about undertaking the requirements for meeting these very needs. Most organizations requiring PCI DSS compliance are either <a href="http://www.pciassessment.org/merchants.php">merchants</a> or <a href="http://www.pciassessment.org/service-providers.php">service providers</a>, and they have to comply based on what level they fall into for PCI DSS.</p>
<p>Add to this is the ability to either conduct a PCI DSS self assessment or to undertake an actual on-site PCI DSS assessment by a qualified security assessor, known as PCI-QSA. Get the facts about compliance and start making inroads sooner rather than later for all your credit card security compliance needs (again, more technically known as PCI DSS <img src='http://itknowledgeexchange.techtarget.com/compliance-governance/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/credit-card-security-compliance-learn-about-pci-dss/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI DSS Merchants Levels &#124; Learn Your Requirements for PCI DSS Compliance</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-merchants-levels-learn-your-requirements-for-pci-dss-compliance/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-merchants-levels-learn-your-requirements-for-pci-dss-compliance/#comments</comments>
		<pubDate>Mon, 23 Mar 2009 12:07:43 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[american express]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[discover]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[pci dss merchant levels]]></category>
		<category><![CDATA[pci ssc]]></category>
		<category><![CDATA[qsa]]></category>
		<category><![CDATA[qualified security assessor (QSA)]]></category>
		<category><![CDATA[self assessment questionnaire]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-merchants-levels-learn-your-requirements-for-pci-dss-compliance/</guid>
		<description><![CDATA[Regarding PCI DSS merchant levels, it is paramount that these very merchants properly identify the level they fall under for compliance with PCI DSS. Most merchants will be able to undergo their own payment card industry data security standards (PCI DSS) self assessment questionnaire (SAQ). However, many will also be required to conduct and go [...]]]></description>
				<content:encoded><![CDATA[<p>Regarding PCI DSS merchant levels, it is paramount that these very merchants properly identify the level they fall under for compliance with PCI DSS. Most merchants will be able to undergo their own payment card industry data security standards (PCI DSS) self assessment questionnaire (SAQ). However, many will also be required to conduct and go through an annual on-site assessment by a Qualified Security Assessor (QSA).</p>
<p>Again, this all depends on the merchant levels and you have to understand that these PCI DSS merchant levels are different for each of the respective payment brands. So, let&#8217;s take a closer look at this.</p>
<p>Discover Card: They do not even use merchant level categories, rather, they use a risk based approach for assigning PCI DSS requirments.</p>
<p>VISA: Visa uses Levels 1 to 4 for classifying merchant levels. <a href="http://www.pciassessment.org/merchants.php#bookmark-2">Learn more about VISA Merchant requirments</a></p>
<p>American Express, JCB, MasterCard: These major payment brand heavyweights also have identify merchants from Levels 1 to 4, and again, this is based on transaction volume. <a href="http://www.pciassessment.org/merchants.php#bookmark-3">Learn more about their PCI DSS merchant levels.</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-merchants-levels-learn-your-requirements-for-pci-dss-compliance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
