As recent data breaches have suggested, being PCI DSS (Payment Card Industry-Data Security Standard) compliant does not necessarily protect a business from criminal intrusion. The PCI DSS Council establishes these security requirements – and every business that accepts card payments and stores, processes or transmits payment card data must meet them.
PCI compliance is important. It ensures a business has a given set of security safeguards in place, but it may not be enough to prevent intrusions. What is promising are the new technologies and processes that address the issue of protecting payment card data.
Alone, these technologies do not provide the adequate security necessary to protect sensitive cardholder and payment account data from cyber thieves. However, when combined with end-to-end encryption as is planned in E3 — cardholders, merchants and payment processors alike will find a comprehensive and robust system to safeguard their data and protect themselves from fraud.