Picture of a credit card
New standards are designed to prevent credit card fraud
R E L A T E D   C O N T E N T
ADVERTISEMENT

Payment security is lagging

Failure to comply with card data rules puts UK businesses at risk

Lisa Kelly, Computing 27 Sep 2007
ADVERTISEMENT

Just one in 10 UK merchants are compliant with payment card data security rules, leaving them open to security breaches and criminal attacks.

Only 11 per cent of retailers, financial services institutions and other businesses accepting card payments conform to the Payment Card Industry Data Security (PCI DSS) rules, according to a survey by secure transaction specialist The Logic Group.

The guidelines were developed by the PCI Security Standards Council, a global forum established by credit card firms ­to help prevent security breaches such as fraud and hacking.

The penalties of non-compliance are starting to be felt, said MasterCard vice president Paul Baker.

“Non-compliant merchants are realising the impact through the account data compromises or hacks that are now being seen,” he said.

“The damage to the brand and to customer confidence can be extreme. Our aim is to move all merchants to a compliant status as quickly as possible.”

More than four out of five relevant businesses have assessed the impact of meeting the PCI DSS requirements, says the survey. But six per cent of respondents have neither started working towards compliance, nor intend to.

Insiders say the standard needs to be more widely publicised. “Awareness is growing, but I am amazed at how many people do not know about the standard,” said one hospitality industry source.

“And many people think their software is secure but do not realise compliance means much more.”

One explanation for the slow progress is that attention has been focused elsewhere, said Gartner research director Alistair Newton.

“There has been a lack of priority in the retail community ­ merchants in the UK have been busy implementing the highly-visible chip-and-PIN so the back-end storage issues have slipped,” he said.

In May TJX, the parent company of high-street chain TK Maxx, admitted nearly 46 million credit and debit card records had been stolen over an 18-month period from July 2005. The breach cost the company nearly $130m (£64m).

“What happened to TK Maxx should drive retailers to compliance because it shows the reputational damage of a breach,” said Newton.

See also:

Many could struggle to meet new security standard, reports Dave Friedlos  03 May 2007
credit cardStudy shows 40 per cent of firms have no plans to achieve PCI standard  07 Dec 2006
Survey suggests new data security standard having little effect  22 Sep 2005

All Enterprise Security Technology
Tags: Security, Finance, Regulation, Retail

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
EXCEPTIONAL .NET (ASP / VB / C#) DEVELOPER – SURREY HEDGE FUND My client is a CASH RICH leading Microsoft Technology focused Hedge Fund currently experiencing unrivalled success – they need to bring on fresh ... more >
| JAM Recruitment
Position: Software Developer – Modelling / Simulations Salary: £27-37,000 Location: Luton, Bedford, Milton Keynes Apply to: a.ross@jamrecruitment.co.uk This is an excellent chance to join one of the UK’s leading Defence businesses operating at the forefront ... more >
| JAM Recruitment
Position: Software Engineer – C/C++/GUI/UML Salary: £30-40,000 Location: Leicester Apply to: a.ross@jamjobs.co.uk This is a fabulous opportunity to join a globally recognised organisation working as part of a team taking innovative and cutting edge solutions ... more >
| JAM Recruitment
Position: Embedded Software / Systems Engineer Salary: £25-40,000 Location: Barrow, Cumbria, Carlisle, Lake District Apply to: a.ross@jamrecruitment.co.uk (inc salary expectations, availability and notice period) This is an exciting opportunity to join one of the UKs ... more >
More job opportunities