The Payment Card Industry-Data Security Standard (PCI DSS) Council established security requirements every business that accepts card payments and stores, processes or transmits payment card data must meet.
PCI compliance is important. It ensures a business has a given set of security safeguards in place, but it may not be enough to prevent intrusions. As recent data breaches have suggested, being PCI DSS compliant does not necessarily protect a business from criminal intrusion.
What is promising are the new technologies and processes that address the issue of protecting payment card data.
Alone, these technologies do not provide the adequate security necessary to protect sensitive cardholder and payment account data from cyber thieves. However, when combined with end-to-end encryption — cardholders, merchants and payment processors alike find a comprehensive and robust system to safeguard their data and protect themselves from fraud.