<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Regulatory Compliance, Governance and Security &#187; web hosting providers</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/compliance-governance/tag/web-hosting-providers/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/compliance-governance</link>
	<description></description>
	<lastBuildDate>Thu, 10 Mar 2011 15:04:50 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>PCI DSS Requirements for Service Providers &#124; Expert Advice from a QSA</title>
		<link>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-for-service-providers-expert-advice-froma-qsa/</link>
		<comments>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-for-service-providers-expert-advice-froma-qsa/#comments</comments>
		<pubDate>Tue, 16 Jun 2009 11:40:01 +0000</pubDate>
		<dc:creator>Charles Denyer</dc:creator>
				<category><![CDATA[amex]]></category>
		<category><![CDATA[charles denyer]]></category>
		<category><![CDATA[data centers]]></category>
		<category><![CDATA[Discover Card]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[jcb]]></category>
		<category><![CDATA[managed service providers]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[payment card industry data security standards (PCI DSS)]]></category>
		<category><![CDATA[payment gateways]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[pci dss compliance]]></category>
		<category><![CDATA[pci qsa]]></category>
		<category><![CDATA[qualified security assessor]]></category>
		<category><![CDATA[service providers payment card compliance]]></category>
		<category><![CDATA[transaction processors]]></category>
		<category><![CDATA[visa]]></category>
		<category><![CDATA[web hosting providers]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-for-service-providers-expert-advice-froma-qsa/</guid>
		<description><![CDATA[PCI DSS compliance is becoming a requirement for many service providers involved in the processing, storage, transmission, and switching of transaction data and cardholder data. In short, a service provider, for purposes of Payment Card Industry Data Security Standards (PCI DSS) compliance includes companies that provide services to merchants, to other &#8220;service providers&#8221; or are [...]]]></description>
				<content:encoded><![CDATA[<p><a href="http://www.pciassessment.org">PCI DSS compliance</a> is becoming a requirement for many service providers involved in the processing, storage, transmission, and switching of transaction data and cardholder data.</p>
<p>In short, a service provider, for purposes of Payment Card Industry Data Security Standards (PCI DSS) compliance includes companies that provide services to merchants, to other &#8220;service providers&#8221; or are other entities that control OR could impact the security of cardholder data.</p>
<p>So, here are some common examples of service providers:</p>
<p>Transaction Processors<br />
Payment Gateways<br />
Customer Service Entities, such as Call Centers<br />
Managed Service Providers<br />
Web Hosting Providers<br />
Data Centers<br />
Independent Sales Organizations (ISO&#8217;s)</p>
<p>And you may also want to know that the major payment brands (VISA, MasterCard, AMEX, Discover Card, and JCB) have different &#8220;terms&#8221; for service providers.</p>
<p>AMEX-They are called a &#8220;Third Party Processor&#8221;<br />
Discover-They are called a &#8220;Third Party Processor&#8221; and a &#8220;Payment Service Provider&#8221;<br />
Mastercard-They are called &#8220;Third Party Processors&#8221; and a &#8220;Data Storage Entity&#8221;<br />
VISA-They can be called a &#8220;VisaNet Processor&#8221;, which is considered everybody that connects to VISA.</p>
<p>And generally speaking (with a noted exception), all Service Providers <a href="http://www.pciassessment.org/service-providers.php">will need an annual on-site Review</a> done by a <a href="http://www.pciassessment.org">Qualified Security Assessor</a>.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/compliance-governance/pci-dss-requirements-for-service-providers-expert-advice-froma-qsa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
