PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

PCI Compliance: How to Tick Those Regulatory Boxes

By Patrick Juan
March 30, 2020
in Compliance and Regulation, Digital Assets & Crypto, Industry Opinions
0
1
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
PCI Compliance: How to Tick Those Regulatory Boxes

PCI Compliance: How to Tick Those Regulatory Boxes

“What is PCI?” is a question I get asked a lot. To break it down, Payment Card Industry Security Standards Council (PCI SSC) defines a compliance framework for security that merchants must comply with, in order to be allowed to take card payments in their physical and digital stores. Without PCI compliance, merchants will not find an acquirer to work with, and could be fined by the card schemes indirectly through the acquirers. The level of compliance required by merchants depends on the total value of card transactions they process.

PCI is complicated, and there’s all sorts of information merchants need to know. At Ingenico, we get asked questions about compliance regulations every day, so, to make life a bit easier, we’ve answered some of those here.

What type of PCI compliance does my business require?

It’s essential that merchants look out for PCI compliance from their payment providers, and there’s two primary standards that they should be aware of. These include PCI PIN Transaction Security (PCI PTS) for payment terminals, and PCI Data Security Standard (PCI DSS) for payment gateways in store and online. Additionally, merchants must manage their payments assets adequately, ensuring that it doesn’t manage cardholder sensitive data such as the card number or CV2 numbers.

To do this, merchants should employ a PCI Point to Point Encryption (P2PE) solution. This will ensure that the card data is encrypted at source on the PIN pad, and stays encrypted until it reaches a PCI DSS environment. Usually, this would be a PCI DSS compliant gateway. By using a compliant PCI P2PE solution, the merchant PCI compliance burden is significantly reduced.

What do I need to do to ensure PCI compliance?

Merchants must stay on top of PCI standards as they evolve every three years and must be reported on annually. Large merchants will need to work alongside specialist consultants called Qualified Security Assessors (QSAs) who ensure that merchants uphold the 290 requirements defined by the PCI Council. Merchants must put strategies in place to maintain these requirements, which include network scans, penetration tests and staff training, while ensuring their payment devices are also managed properly.

Non-compliance can result in fines and extra costs when processing card payments. More importantly, if the merchant does fall victim to a data breach exposing card holder’s sensitive data, the merchant may be liable to even bigger fines from the schemes or the Information Commissioner’s Office. At worst, we have seen some of the UK’s biggest retailers fined over £10 million.

How can Ingenico Enterprise Retail help merchants navigate PCI?

Ingenico Enterprise Retail payment gateways, both in store and online, have upheld the highest level of PCI DSS for many years. Our in-store payment gateway was one of the first to be fully PCI P2PE compliant. So, when a merchant uses an Ingenico P2PE solution, the burden reduces from meeting over 290 requirements to filling in a short self-assessment questionnaire under the direction of a QSA.

How else can merchants make sure their customers have a secure, yet swift payment experience?

Merchants can work alongside a provider that is PCI compliant and has the capacity to offer a reliable, fast and scalable platform. In 2019 alone, Ingenico payments gateways processed 7 billion transactions both in stores and online, for small, medium and large businesses. All our retail partners benefit from the peace of mind that their PCI compliance requirements are met no matter where our solution is in their payments cycle, as well as the security this provides. They also benefit from our ability to scale with them; the Ingenico platform can cope with several million transactions per day.

To learn more about PCI or to find out how your company can benefit from the same assurances, get in contact with Ingenico Enterprise Retail today at www.ingenico.com/omnichannel.

1
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: Compliance and RegulationIngenicoPCI CompliancePCI Council

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    instant payments fraud

    Instant, Irrevocable Payments Demand a Fraud Prevention Reboot

    April 13, 2026
    samsung p2p

    Making Zelle Work Better for Users—and Banks

    April 10, 2026
    fraud escalate

    As Fraud Escalates, Taking a Beat Becomes a Critical Defense

    April 9, 2026
    privacy open banking

    As Open Banking Fuels Interconnectivity, Privacy Matters More

    April 8, 2026

    ACH Is Thriving, and Banks Are Struggling to Keep Pace

    April 7, 2026
    stablecoins, Klarna

    How Stablecoins Emerged as a Key Element of Cross-Border Payments

    April 6, 2026
    Cross-Border Payments

    How the U.S. Built Its Faster Payments Ecosystem

    April 3, 2026
    Young Latin woman applying powder on her face for beauty blog. Smiling woman sitting at table in cosy room holding powder box and brush looking at phone camera recording video. Make up and cosmetics blogging concept

    TikTok Aspires to Fintech Status with Payments, Credit Bids in Brazil

    April 2, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2026 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result