Print This Article Post Comment Add To Favorites Email to Friends Ezine Ready

Credit Card Data Encryption: Getting Started

By: Andy Eliason Home | Business


Credit card data encryption is one of the basics of PCI DSS compliance. In recent years more and more attention has been directed at the need for increased data security. The general gist of the PCI DSS seems to indicate that merchants should only keep the bare minimum of data on their system In other words, only the information specifically required for business, legal, or other such needs should be kept on an internal system. And all that information must be encrypted.

And yet studies have shown that many companies are failing to implement proper credit card data encryption measures. Why is this?

It could be due to the costs and confusion associated with credit card data encryption. Proper encryption can require greater resources than normal, including processing, bandwidth, and personnel resources. When companies start calculating the costs associated with these new security measures, many of them seem to think it's worth a little risk in order to save the money and resources.

After all, they might say, sure some companies have been targeted and breached. But really, do that many companies have a problem. Surely, out of all the companies in the world, a hacker wouldn't target me.

The unfortunate truth, however, is that hackers will, in fact, target anyone. And while many businesses have trouble spending resources to fend off a possible problem, that is exactly what the PCI DSS requires you to do.

Requirement three of the PCI DSS requires you to "Protect stored cardholder data." Credit card data encryption is critical to this requirement. The idea here is that anyone who happens to bypass any or all of your other security measures will find only a series of illegible gibberish. The only way a criminal can make use of these numbers is if they get a hold of the encryption keys as well.

This brings us to another part of proper credit card data encryption: proper storage and care of encryption keys. Many of the requirements here mirror those of regular data security. For example, a merchant must restrict access to the keys to the fewest number of people possible, and they must be stored in as few places as possible. There are also requirements to make sure a merchant uses the best keys they can. A merchant must generate strong keys, securely store and transmit them, and also periodically change their encryption keys and properly dispose of old ones.

Many companies these days are choosing to outsource their data security needs. Companies that specialize in credit card data encryption can implement all the proper security measures around sensitive data and encryptions keys. By outsourcing these procedures your company can continue to run as normal with minimal interruptions.

This is a convenient solution for many businesses, but there is another requirement that needs to be accounted for. The fourth requirement of the PCI DSS mandates that you "Encrypt transmission of cardholder data across open, public networks." The reasoning is simple. If a hacker cannot gain access to sensitive information on your system, they can try to intercept it in transit. Hackers can modify, delete, or divert this information and cause a lot of trouble.

Credit card data encryption, then, is required at both endpoints and in transmission. Anything less makes you a target for people with questionable motives.

As technology continues to grow, and credit card transactions continue to increase, stronger and stronger security measures are going to be required to keep information safe. And as consumers grow more weary of the risks involved with credit card transactions, these security precautions will determine whether a business can, in fact, stay in business. Consumers need to know they can trust you. And the time will come when credit card data encryption will be one of the standards they use to measure your worth.



Article Source: http://www.eArticlesOnline.com

About the Author:
Andy Eliason is a writer at Main10, Inc. If you'd like to learn more about credit card data encryption or PCI DSS compliance, visit Braintree Payment Solutions today.

Tags: , , , , ,

Please Rate this Article

 

Not yet Rated

Click the XML Icon Above to Receive Business Articles Via RSS!

Recent Related Articles From Business

  • Online Shopping Tips By Using Card Sterling Coupons, Card Sterling Coupon Codes
    By: niggulakarizma | Nov 23rd 2009
    If you like to shop at online, you want to get the best deals by saving Card Sterling coupons, Card Sterling coupon codes, Card Sterling discounts, Card Sterling promotional codes Card Sterling free shipping . Read

  • How Did We Ever Operate Business Without Instant Credit Card Processing
    By: merchantaccount | May 8th 2010
    There is good news for businesses today! The new merchant accounts and credit card processing from First Data Independent Sales (FDIS) can help your business begin to accept credit cards from your customers and keep it rolling and humming.
    Read

  • Data Backup Before A Computer Crash-data Recovery After A Computer Failure
    By: Peter Lim | Jan 3rd 2009
    If you are running any computer system and value the data and information that is contained in your computer system, then you need to backup your data against permanent loss. Data Backup services are no longer accessible only to the heavy data user such as a financial institution or a bank. Remote Data backup services are n ... Read

  • Data Recovery Software †What Do You Do When The Data Loss Occurs
    By: Raj | Jul 30th 2010
    Certified data recovery software to retrieve lost/deleted files can be used with better ease applying advanced techniques and algorithm which is being developed by our expert engineers. Data recovery software supports all windows versions. Data recovery tool for windows provides you file scan and file filter option to make ... Read

  • Chase Freedom Card: What To Consider Before Getting One
    By: Stephanie Andrews | Nov 11th 2009
    If you've seen commercials for the Chase Freedom Card, you may be wondering if it is just another advertisement, full of promises but short on delivery. The truth is that the Chase Freedom Card is a card, just like many others on the market. Here are some things to consider before you fill out an application for one. Read

  • Visa And Mastercard - Debit Card Processors
    By: Adam Reedy | Feb 1st 2011
    Debit cards are a substitute to credit cards that are able to provide you more control on your funds. By means of a debit card you are not burdened with an extensive line of credit. Read

  • Recover Memory Card Data
    By: partition recovery | Apr 1st 2010
    Recovering data from all types of memory card is now very easy and effective. Just download and install Kernel for FAT and NTFS memory card recovery software. Read

  • The Memory Card Reader Is Now Referred As A Multi Card Reader
    By: PhilRidings | May 17th 2010
    A device, typically having USB interface to enable access of data available in the memory card such as the Compact Flash (CF), Secure Digital (SD) or Multi Media Card (MMC) is referred as a memory card reader. Read

  • Memory Card Reader Functions
    By: BernardScrymgou | May 31st 2010
    Memory card reader is a device that can read flash memory cards and transfer the data to the computer. Read

  • Memory Stick Data Recovery Software As A Retrieve Device
    By: John Hutcheon | Jun 1st 2010
    Memory stick data recovery software is designed to become a standard storage and transfer media in the market. Read


Copyright © 2005-2011 eArticlesOnline, LLC - All Rights Reserved
Terms of Service | Privacy Policy