Main Content

PCI Compliance

0845 058 9000

Let us help you achieve PCI DSS compliance

If your business takes credit card transactions then you may already be aware of the Payment Card Industry Data Security Standard (PCI DSS). Essentially the PCI DSS standards provide broad requirements for businesses with regard to protecting customer card data from hackers and security threats.

We can assist your business with complying to the PCI DSS regulations with the provision of a fully managed FortiGate Unified Threat Management (UTM) firewall.

A carefully configured and managed FortiGate UTM device will enable you to secure customer transactions transmitted over the Internet using the latest data encryption technologies. Further more, the innovative FortiGate UTM platform will safeguard stored data from Internet borne intrusions and threats. Our remote management and monitoring service will also provide detailed Internet activity reports to aid network forensics.

Couple a managed FortiGate UTM device with end-point/user security policies and your business will be on the right track for PCI DSS compliance.

12 Requirements for PCI ComplianceHow can we help?

Build and Maintain a Secure Network

1. Install and maintain a firewall configuration to protect cardholder data

2. Do not use vendor-supplied defaults for system passwords and other security parameters

We will provide you with an industry leading FortiGate UTM firewall. Access to the device will only be possible by an accredited Zen engineer using secure passwords and authentication credentials.

Protect Cardholder Data

3. Protect stored cardholder data

4. Encrypt transmission of cardholder data across open, public networks

Our managed service provides secure cross network communications using the latest VPN protocols, thereby ensuring that sensitive data remains protected and secure when in transit.

Maintain a Vulnerability Management Program

5. Use and regularly update anti-virus software

6. Develop and maintain secure systems and applications

The managed FortiGate device will be updated hourly with the latest security definitions, thus ensuring the best protection from Internet viruses and threats.

Implement Strong Access Control Measures

7. Restrict access to cardholder data by business need-to-know

8. Assign a unique ID to each person with computer access

9. Restrict physical access to cardholder data

You will need to implement your own on-site security policies determining authorised staff access  to cardholder information.

Regularly Monitor and Test Networks

10. Track and monitor all access to network resources and cardholder data

11. Regularly test security systems and processes

As part of our managed service we will monitor your network security systems and provide detailed reports pertaining to Internet activities and threats.

Maintain an Information Security Policy

12. Maintain a policy that addresses information security

We can assist you with developing your information security policies. However you will be responsible for enforcing such policies across your business.

For further information on PCI Compliance visit - https://www.pcisecuritystandards.org

Want to find out more?

For further information on our Managed Security service, and to request a free consultation with one of our sales team call 0845 058 9000 or fill in the enquiry form.

Calls to action