PCI DSS stands for Payment Card Industry Data Security Standard and contains a set of rules for secure processing credit card transactions. In principle, all those involved in a credit card payment (e.g. merchants and PSPs) are subject to these rules as soon as they process, transfer or save credit card data. |
PCI DSS stands for Payment Card Industry Data Security Standard and contains a set of rules for secure processing credit card transactions. In principle, all those involved in a credit card payment (e.g. merchants and PSPs) are subject to these rules as soon as they process, transfer or save credit card data.
There are 12 basic requirements defined by PCI DSS Standard:
The complete PCI DSS ruleset is pubslihed here: https://www.pcisecuritystandards.org/document_library
The compliance with these rules is checked as part of a PCI DSS certification.
Evidence is provided
The technical platform of BNP Paribas is annually audited and certified according to PCI DSS Level 1 - the most strict PCI DSS level. |
However, BNP and Axepta Platform are annually audited and certified according to PCI DSS Level 1 - the most strict PCI DSS level.
The PcNr (pseudo card number) is not subject to the PCI DSS rules, because it is not a credit card, but only a token that references a credit card. |