SlideShare a Scribd company logo
1 of 6
Download to read offline
TOKENISATION
&
It's Implementation
Compliances
About Tokenisation
Tokenisation means masking or substituting sensitive data with
unique identification number while retaining
all the essential information about the data. This equivalent unique
replacement data is called a token.
Tokenisation is a global practice aimed at preventing disclosure of
card details to any entity apart from the
cardholder, card network or issuer. The concept of tokenisation was
first introduced in 2005 by
Shift4payments to protect cardholder data.
Necessary compliances required
for implementing tokenisation
Businesses that accept card payments need to be in compliance with the
Payment Card Industry Data Security Standard (“PCI DSS”), which adds
credibility to ensure their customers.
Card networks are required to get the token requestor certified for (a) token
requestor’s systems, including hardware deployed for this purpose, (b) security
of token requestor’s application, (c) features for ensuring authorised access to
token requestor’s app on the identified device, and, (d) other functions
performed by the token requestor, including customer on-boarding, token
provisioning and storage, data storage, transaction processing, etc.
Necessary compliances required
for implementing tokenisation
Card networks are required to get the card issuers / acquirers, their service
providers and any other entity involved in payment transaction chain, certified
in respect of changes done for processing tokenised card transactions by
them.
Registration of card on token requestor’s app shall be done only with explicit
customer consent through AFA, and not by way of a forced / default /
automatic selection of check box, radio button, etc.
Secure storage of tokens and associated keys by token requestor on
successful registration of card shall be ensured.
Necessary compliances required
for implementing tokenisation
Card issuers shall ensure easy access to customers for reporting loss of
“identified device” or any other such event which may expose tokens to
unauthorised usage. Card network, along with card issuers and token
requestors, shall put in place a system to immediately de-activate such tokens
and associated keys.
Dispute resolution process shall be put in place by card network for tokenised
card transactions.
Card network shall ensure monitoring to detect any malfunction, anomaly,
suspicious behaviour or the presence of unauthorized activity within the
tokenisation process and implement a process to alert all stakeholders.
For MOre
Information Visit
www.khaitanlegal.com

More Related Content

Similar to Best Advocates in Mumbai - Khaitan Legal Associates.pdf

Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...
Danail Yotov
 
Information Technology Act 2000 An Overview
Information Technology Act 2000  An OverviewInformation Technology Act 2000  An Overview
Information Technology Act 2000 An Overview
Anubhav
 

Similar to Best Advocates in Mumbai - Khaitan Legal Associates.pdf (20)

Digital wallet
Digital walletDigital wallet
Digital wallet
 
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
 
RBI Tokenization And Impact on Digital Adoption
RBI Tokenization And Impact on Digital AdoptionRBI Tokenization And Impact on Digital Adoption
RBI Tokenization And Impact on Digital Adoption
 
Dynamag by MagTek
Dynamag by MagTekDynamag by MagTek
Dynamag by MagTek
 
PayU 3D Secure Merchant Guide
PayU 3D Secure Merchant GuidePayU 3D Secure Merchant Guide
PayU 3D Secure Merchant Guide
 
Digital wallet
Digital walletDigital wallet
Digital wallet
 
FinTech, Internet of Things & Patents
FinTech, Internet of Things & PatentsFinTech, Internet of Things & Patents
FinTech, Internet of Things & Patents
 
All about Contactless payments
All about Contactless paymentsAll about Contactless payments
All about Contactless payments
 
v 1.0
v 1.0v 1.0
v 1.0
 
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
 
Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...
 
Embedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment IndustryEmbedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment Industry
 
General discussion paper for airports
General discussion paper for airportsGeneral discussion paper for airports
General discussion paper for airports
 
General discussion paper for airports
General discussion paper for airportsGeneral discussion paper for airports
General discussion paper for airports
 
Card payment evolution v1.0
Card payment evolution v1.0Card payment evolution v1.0
Card payment evolution v1.0
 
PCI,Smart Card,ATM and E-commerce
PCI,Smart Card,ATM and E-commercePCI,Smart Card,ATM and E-commerce
PCI,Smart Card,ATM and E-commerce
 
The Integration of Credit Card.pdf
The Integration of Credit Card.pdfThe Integration of Credit Card.pdf
The Integration of Credit Card.pdf
 
Information technology-act 2000
Information technology-act 2000Information technology-act 2000
Information technology-act 2000
 
EMV: Preparing for Changes to the Retail Payment Process
EMV: Preparing for Changes to the Retail Payment ProcessEMV: Preparing for Changes to the Retail Payment Process
EMV: Preparing for Changes to the Retail Payment Process
 
Information Technology Act 2000 An Overview
Information Technology Act 2000  An OverviewInformation Technology Act 2000  An Overview
Information Technology Act 2000 An Overview
 

More from anjalimehta95

More from anjalimehta95 (12)

Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdfCorporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptxCorporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
 
Best Apps for Ev Charging Malaysia - Telio EV.pptx
Best Apps for Ev Charging Malaysia - Telio EV.pptxBest Apps for Ev Charging Malaysia - Telio EV.pptx
Best Apps for Ev Charging Malaysia - Telio EV.pptx
 
EV Charging App Malaysia - Telio EV.pdf
EV Charging App Malaysia - Telio EV.pdfEV Charging App Malaysia - Telio EV.pdf
EV Charging App Malaysia - Telio EV.pdf
 
Best Electric Charging App - Telioev.pptx
Best Electric Charging App  - Telioev.pptxBest Electric Charging App  - Telioev.pptx
Best Electric Charging App - Telioev.pptx
 
Best Electric Charging App - Telioev.pdf
Best Electric Charging App  - Telioev.pdfBest Electric Charging App  - Telioev.pdf
Best Electric Charging App - Telioev.pdf
 
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdfCorporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
 
Corporate law firms in mumbai - Khaitan Legal Associates.pptx
Corporate law firms in mumbai - Khaitan Legal Associates.pptxCorporate law firms in mumbai - Khaitan Legal Associates.pptx
Corporate law firms in mumbai - Khaitan Legal Associates.pptx
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal AssociatesCorporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal Associates
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal AssociatesCorporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal Associates
 
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdfCorporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
 
Top Law Firms in Mumbai | Khaitan Legal
Top Law Firms in Mumbai | Khaitan LegalTop Law Firms in Mumbai | Khaitan Legal
Top Law Firms in Mumbai | Khaitan Legal
 

Recently uploaded

Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Call Girls In Delhi Whatsup 9873940964 Enjoy Unlimited Pleasure
 
PowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptxPowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptx
ca2or2tx
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
bd2c5966a56d
 
一比一原版西澳大学毕业证学位证书
 一比一原版西澳大学毕业证学位证书 一比一原版西澳大学毕业证学位证书
一比一原版西澳大学毕业证学位证书
SS A
 
一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书
E LSS
 

Recently uploaded (20)

pnp FIRST-RESPONDER-IN-CRIME-SCENEs.pptx
pnp FIRST-RESPONDER-IN-CRIME-SCENEs.pptxpnp FIRST-RESPONDER-IN-CRIME-SCENEs.pptx
pnp FIRST-RESPONDER-IN-CRIME-SCENEs.pptx
 
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
 
PPT- Voluntary Liquidation (Under section 59).pptx
PPT- Voluntary Liquidation (Under section 59).pptxPPT- Voluntary Liquidation (Under section 59).pptx
PPT- Voluntary Liquidation (Under section 59).pptx
 
The Active Management Value Ratio: The New Science of Benchmarking Investment...
The Active Management Value Ratio: The New Science of Benchmarking Investment...The Active Management Value Ratio: The New Science of Benchmarking Investment...
The Active Management Value Ratio: The New Science of Benchmarking Investment...
 
MOCK GENERAL MEETINGS (SS-2)- PPT- Part 2.pptx
MOCK GENERAL MEETINGS (SS-2)- PPT- Part 2.pptxMOCK GENERAL MEETINGS (SS-2)- PPT- Part 2.pptx
MOCK GENERAL MEETINGS (SS-2)- PPT- Part 2.pptx
 
Relationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdfRelationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdf
 
Analysis of R V Kelkar's Criminal Procedure Code ppt- chapter 1 .pptx
Analysis of R V Kelkar's Criminal Procedure Code ppt- chapter 1 .pptxAnalysis of R V Kelkar's Criminal Procedure Code ppt- chapter 1 .pptx
Analysis of R V Kelkar's Criminal Procedure Code ppt- chapter 1 .pptx
 
Philippine FIRE CODE REVIEWER for Architecture Board Exam Takers
Philippine FIRE CODE REVIEWER for Architecture Board Exam TakersPhilippine FIRE CODE REVIEWER for Architecture Board Exam Takers
Philippine FIRE CODE REVIEWER for Architecture Board Exam Takers
 
PowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptxPowerPoint - Legal Citation Form 1 - Case Law.pptx
PowerPoint - Legal Citation Form 1 - Case Law.pptx
 
Chp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .pptChp 1- Contract and its kinds-business law .ppt
Chp 1- Contract and its kinds-business law .ppt
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
 
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation StrategySmarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
 
一比一原版西澳大学毕业证学位证书
 一比一原版西澳大学毕业证学位证书 一比一原版西澳大学毕业证学位证书
一比一原版西澳大学毕业证学位证书
 
LITERAL RULE OF INTERPRETATION - PRIMARY RULE
LITERAL RULE OF INTERPRETATION - PRIMARY RULELITERAL RULE OF INTERPRETATION - PRIMARY RULE
LITERAL RULE OF INTERPRETATION - PRIMARY RULE
 
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxMunicipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
 
Human Rights_FilippoLuciani diritti umani.pptx
Human Rights_FilippoLuciani diritti umani.pptxHuman Rights_FilippoLuciani diritti umani.pptx
Human Rights_FilippoLuciani diritti umani.pptx
 
Clarifying Land Donation Issues Memo for
Clarifying Land Donation Issues Memo forClarifying Land Donation Issues Memo for
Clarifying Land Donation Issues Memo for
 
The doctrine of harmonious construction under Interpretation of statute
The doctrine of harmonious construction under Interpretation of statuteThe doctrine of harmonious construction under Interpretation of statute
The doctrine of harmonious construction under Interpretation of statute
 
一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书
 
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top BoutiqueAndrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
Andrea Hill Featured in Canadian Lawyer as SkyLaw Recognized as a Top Boutique
 

Best Advocates in Mumbai - Khaitan Legal Associates.pdf

  • 2. About Tokenisation Tokenisation means masking or substituting sensitive data with unique identification number while retaining all the essential information about the data. This equivalent unique replacement data is called a token. Tokenisation is a global practice aimed at preventing disclosure of card details to any entity apart from the cardholder, card network or issuer. The concept of tokenisation was first introduced in 2005 by Shift4payments to protect cardholder data.
  • 3. Necessary compliances required for implementing tokenisation Businesses that accept card payments need to be in compliance with the Payment Card Industry Data Security Standard (“PCI DSS”), which adds credibility to ensure their customers. Card networks are required to get the token requestor certified for (a) token requestor’s systems, including hardware deployed for this purpose, (b) security of token requestor’s application, (c) features for ensuring authorised access to token requestor’s app on the identified device, and, (d) other functions performed by the token requestor, including customer on-boarding, token provisioning and storage, data storage, transaction processing, etc.
  • 4. Necessary compliances required for implementing tokenisation Card networks are required to get the card issuers / acquirers, their service providers and any other entity involved in payment transaction chain, certified in respect of changes done for processing tokenised card transactions by them. Registration of card on token requestor’s app shall be done only with explicit customer consent through AFA, and not by way of a forced / default / automatic selection of check box, radio button, etc. Secure storage of tokens and associated keys by token requestor on successful registration of card shall be ensured.
  • 5. Necessary compliances required for implementing tokenisation Card issuers shall ensure easy access to customers for reporting loss of “identified device” or any other such event which may expose tokens to unauthorised usage. Card network, along with card issuers and token requestors, shall put in place a system to immediately de-activate such tokens and associated keys. Dispute resolution process shall be put in place by card network for tokenised card transactions. Card network shall ensure monitoring to detect any malfunction, anomaly, suspicious behaviour or the presence of unauthorized activity within the tokenisation process and implement a process to alert all stakeholders.