SlideShare a Scribd company logo
SAQ 4 U - Serving the small business Self Assessment Questionnaire (SAQ) What is it? Why is it important?
Who is SAQ 4 U? A privately held business. Established to help small business owners with the first step toward complying with The Payment Card Industry – Data Security Standards (PCI-DSS). Industry professionals with a keen understanding of payment card security and PCI regulations. NOT a costly Qualified Security Assessor (QSA), because you don’t need to pay high dollars 	to complete an SAQ.
What is PCI-DSS? As stated by the Payment Card Industry (PCI) Security Standards Council (SSC): "The PCI DSS is a multifaceted security standard that includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures. This comprehensive standard is intended to help organizations proactively protect customer account data." Source: http://www.pcisecuritystandards.org/security_standards/pci_dss.shtml
PCI’s 12-Steps for compliance Build and Maintain a Secure Network Requirement 1: Install and maintain a firewall configuration to protect cardholder data Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters Protect Cardholder Data Requirement 3: Protect stored cardholder data Requirement 4: Encrypt transmission of cardholder data across open, public networks Maintain a Vulnerability Management Program Requirement 5: Use and regularly update anti-virus software Requirement 6: Develop and maintain secure systems and applications Implement Strong Access Control Measures Requirement 7: Restrict access to cardholder data by business need-to-know Requirement 8: Assign a unique ID to each person with computer access Requirement 9: Restrict physical access to cardholder data Regularly Monitor and Test Networks Requirement 10: Track and monitor all access to network resources and cardholder data Requirement 11: Regularly test security systems and processes Maintain an Information Security Policy Requirement 12: Maintain a policy that addresses information security
What the card brands say (like VISA) All merchants will fall into one of the four merchant levels based on payment card transaction volume over a 12-month period. Payment card transaction volume is based on the aggregate number of payment card transactions (inclusive of credit, debit and prepaid) that a merchant handles. Volume is based on the number of transactions stored, processed or transmitted by the merchant.
What “Merchant Level” are you? Please note:  AMEX and Discover requirements differ. Please call for more information.
Merchant “Validation” Requirements
What will SAQ 4 U accomplish for you? We will: Meet with you and ask brief interview-type questions to understand your business. Determine which SAQ form is required for your business. Complete the appropriate SAQ form and walk you through the results and the Attestation of Compliance validation process. Answer any questions you have and 	make suggestions for improvements.
WHY SAQ 4 U? We know that a “Self-Assessment” Questionnaire can be done by you. We also know that most people can mow their own lawns or clean their own homes, but they still hire Gardeners and House Cleaners. We want you to run your business, NOT fill out forms and research requirements.
Where is SAQ 4 U? TEXAS:  Serving Austin, San Antonio and Houston CALIFORNIA: Serving San Diego, Los Angeles and Orange County Other locations being added fast. Call to request service in your area.
Next Step: Call SAQ 4 U to schedule an appointment today. CALL (713) 854-4410 or email Ralcala@saq4u-merchants.com www.saq4u-merchants.com

More Related Content

What's hot

Reduce PCI Scope - Maximise Conversion - Whitepaper
Reduce PCI Scope - Maximise Conversion - WhitepaperReduce PCI Scope - Maximise Conversion - Whitepaper
Reduce PCI Scope - Maximise Conversion - WhitepaperShaun O'keeffe
 
To swipe or not to swipe payment card processing in sap
To swipe or not to swipe payment card processing in sapTo swipe or not to swipe payment card processing in sap
To swipe or not to swipe payment card processing in sapSunando Ghosh
 
Payment Card Industry Introduction CMTA APR 2010
Payment Card Industry Introduction CMTA APR 2010Payment Card Industry Introduction CMTA APR 2010
Payment Card Industry Introduction CMTA APR 2010
Donald E. Hester
 
AnscersX Multibureau Business Trade Credit Report presentation
AnscersX Multibureau Business Trade Credit Report presentationAnscersX Multibureau Business Trade Credit Report presentation
AnscersX Multibureau Business Trade Credit Report presentation
Credit Management Association
 
Sales Tax Exemption Certificates
Sales Tax Exemption CertificatesSales Tax Exemption Certificates
Sales Tax Exemption Certificates
Credit Management Association
 
Payment Card Industry CMTA NOV 2010
Payment Card Industry CMTA NOV 2010Payment Card Industry CMTA NOV 2010
Payment Card Industry CMTA NOV 2010
Donald E. Hester
 
Description regarding chit software
Description regarding chit softwareDescription regarding chit software
Description regarding chit software
Priyanka Anu
 
Chit Fund Software PPT
Chit Fund Software PPTChit Fund Software PPT
Chit Fund Software PPTkruthikahoney
 
Customer Due Dilligence - Is your organisation Compliant?
Customer Due Dilligence - Is your organisation Compliant?Customer Due Dilligence - Is your organisation Compliant?
Customer Due Dilligence - Is your organisation Compliant?
rosspemberton69
 
Intro to-payment-processing-in-sap
Intro to-payment-processing-in-sapIntro to-payment-processing-in-sap
Intro to-payment-processing-in-sap
puppala
 
PCI Compliance for Community Colleges @One CISOA 2011
PCI Compliance for Community Colleges @One CISOA 2011PCI Compliance for Community Colleges @One CISOA 2011
PCI Compliance for Community Colleges @One CISOA 2011
Donald E. Hester
 
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
Stephanie Gutowski
 
Big data4analytics ai-powered compliance
Big data4analytics   ai-powered complianceBig data4analytics   ai-powered compliance
Big data4analytics ai-powered compliance
Mike Fish
 
PCI-DSS for IDRBT
PCI-DSS for IDRBTPCI-DSS for IDRBT
PCI-DSS for IDRBT
Shanmugavel Sankaran
 
Alcumus ISOQAR PCIDSS Compliance Presentation
Alcumus  ISOQAR PCIDSS Compliance PresentationAlcumus  ISOQAR PCIDSS Compliance Presentation
Alcumus ISOQAR PCIDSS Compliance PresentationBhargav Upadhyay
 
P0 Pcidss Overview
P0 Pcidss OverviewP0 Pcidss Overview
P0 Pcidss Overviewb28stu
 
Pci ssc quick reference guide
Pci ssc quick reference guidePci ssc quick reference guide
Pci ssc quick reference guide
Mohammad Makchudul Alam (Arif)
 
Cards Center Workshop
Cards Center WorkshopCards Center Workshop
Cards Center Workshop
Saeed A Siddiki
 
Payment Card Acceptance PCI Compliance for Local Governments 2012
Payment Card Acceptance PCI Compliance for Local Governments 2012Payment Card Acceptance PCI Compliance for Local Governments 2012
Payment Card Acceptance PCI Compliance for Local Governments 2012
Donald E. Hester
 
Pci compliance overview earth link business
Pci compliance overview earth link businessPci compliance overview earth link business
Pci compliance overview earth link businessMike Shelah
 

What's hot (20)

Reduce PCI Scope - Maximise Conversion - Whitepaper
Reduce PCI Scope - Maximise Conversion - WhitepaperReduce PCI Scope - Maximise Conversion - Whitepaper
Reduce PCI Scope - Maximise Conversion - Whitepaper
 
To swipe or not to swipe payment card processing in sap
To swipe or not to swipe payment card processing in sapTo swipe or not to swipe payment card processing in sap
To swipe or not to swipe payment card processing in sap
 
Payment Card Industry Introduction CMTA APR 2010
Payment Card Industry Introduction CMTA APR 2010Payment Card Industry Introduction CMTA APR 2010
Payment Card Industry Introduction CMTA APR 2010
 
AnscersX Multibureau Business Trade Credit Report presentation
AnscersX Multibureau Business Trade Credit Report presentationAnscersX Multibureau Business Trade Credit Report presentation
AnscersX Multibureau Business Trade Credit Report presentation
 
Sales Tax Exemption Certificates
Sales Tax Exemption CertificatesSales Tax Exemption Certificates
Sales Tax Exemption Certificates
 
Payment Card Industry CMTA NOV 2010
Payment Card Industry CMTA NOV 2010Payment Card Industry CMTA NOV 2010
Payment Card Industry CMTA NOV 2010
 
Description regarding chit software
Description regarding chit softwareDescription regarding chit software
Description regarding chit software
 
Chit Fund Software PPT
Chit Fund Software PPTChit Fund Software PPT
Chit Fund Software PPT
 
Customer Due Dilligence - Is your organisation Compliant?
Customer Due Dilligence - Is your organisation Compliant?Customer Due Dilligence - Is your organisation Compliant?
Customer Due Dilligence - Is your organisation Compliant?
 
Intro to-payment-processing-in-sap
Intro to-payment-processing-in-sapIntro to-payment-processing-in-sap
Intro to-payment-processing-in-sap
 
PCI Compliance for Community Colleges @One CISOA 2011
PCI Compliance for Community Colleges @One CISOA 2011PCI Compliance for Community Colleges @One CISOA 2011
PCI Compliance for Community Colleges @One CISOA 2011
 
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
Data Security, Fraud Prevention and PCI for Nonprofit Payment Processors in D...
 
Big data4analytics ai-powered compliance
Big data4analytics   ai-powered complianceBig data4analytics   ai-powered compliance
Big data4analytics ai-powered compliance
 
PCI-DSS for IDRBT
PCI-DSS for IDRBTPCI-DSS for IDRBT
PCI-DSS for IDRBT
 
Alcumus ISOQAR PCIDSS Compliance Presentation
Alcumus  ISOQAR PCIDSS Compliance PresentationAlcumus  ISOQAR PCIDSS Compliance Presentation
Alcumus ISOQAR PCIDSS Compliance Presentation
 
P0 Pcidss Overview
P0 Pcidss OverviewP0 Pcidss Overview
P0 Pcidss Overview
 
Pci ssc quick reference guide
Pci ssc quick reference guidePci ssc quick reference guide
Pci ssc quick reference guide
 
Cards Center Workshop
Cards Center WorkshopCards Center Workshop
Cards Center Workshop
 
Payment Card Acceptance PCI Compliance for Local Governments 2012
Payment Card Acceptance PCI Compliance for Local Governments 2012Payment Card Acceptance PCI Compliance for Local Governments 2012
Payment Card Acceptance PCI Compliance for Local Governments 2012
 
Pci compliance overview earth link business
Pci compliance overview earth link businessPci compliance overview earth link business
Pci compliance overview earth link business
 

Viewers also liked

Stress Buster - Giggle Switch
Stress Buster - Giggle SwitchStress Buster - Giggle Switch
Stress Buster - Giggle Switch
hjbaggaley
 
Holocaust: Main Points
Holocaust: Main PointsHolocaust: Main Points
Improve Your Presentation Skills: Storytelling and Connection
Improve Your Presentation Skills: Storytelling and ConnectionImprove Your Presentation Skills: Storytelling and Connection
Improve Your Presentation Skills: Storytelling and Connection
SheneCommodore
 
Self-assessment
Self-assessmentSelf-assessment
Self-assessment
Michele Schwertner
 
Motivational Skills-original-hen
Motivational Skills-original-henMotivational Skills-original-hen
Motivational Skills-original-hen
Hor Hen
 
3 types of presentations
3 types of presentations3 types of presentations
3 types of presentations
Richard Riche
 
How to become a good presenter
How to become a good presenterHow to become a good presenter
How to become a good presenter
Smilelife.inc
 
Business Presentations - What, When,how Types etc
Business Presentations - What, When,how Types etcBusiness Presentations - What, When,how Types etc
Business Presentations - What, When,how Types etc
Sanoob Sidiq
 
BM 111 5B HOW TO BE A GOOD PRESENTER 2
BM 111 5B HOW TO BE A GOOD PRESENTER 2BM 111 5B HOW TO BE A GOOD PRESENTER 2
BM 111 5B HOW TO BE A GOOD PRESENTER 2
syakilahnorazmi
 
How to be a good presenter
How to be a good presenterHow to be a good presenter
How to be a good presenterNas Zaki
 
Self assessment by students
Self assessment by students Self assessment by students
Self assessment by students
Gilbert Ng
 
Motivating People
Motivating PeopleMotivating People
Motivating People
rajeevgupta
 
Self awareness.
Self awareness.Self awareness.
Self awareness.
Rajendran Ananda Krishnan
 
Essential Presentation Skills
Essential Presentation SkillsEssential Presentation Skills
Essential Presentation Skills
Zenicism Art
 
What is stress
What is stressWhat is stress
What is stress
JCI Dun Laoghaire
 
Presentation Skills - Presenting to a Group
Presentation Skills - Presenting to a Group Presentation Skills - Presenting to a Group
Presentation Skills - Presenting to a Group
Ossama Motawae
 
Let's Manage Our Stress
Let's Manage Our Stress Let's Manage Our Stress
Let's Manage Our Stress
chandanahewa
 
How to create great slides for presentations
How to create great slides for presentationsHow to create great slides for presentations
How to create great slides for presentations
mikejeffs
 
ppt on Stress management
ppt on Stress managementppt on Stress management
ppt on Stress managementRam Jagraon
 

Viewers also liked (20)

Stress Buster - Giggle Switch
Stress Buster - Giggle SwitchStress Buster - Giggle Switch
Stress Buster - Giggle Switch
 
Holocaust: Main Points
Holocaust: Main PointsHolocaust: Main Points
Holocaust: Main Points
 
Improve Your Presentation Skills: Storytelling and Connection
Improve Your Presentation Skills: Storytelling and ConnectionImprove Your Presentation Skills: Storytelling and Connection
Improve Your Presentation Skills: Storytelling and Connection
 
Self-assessment
Self-assessmentSelf-assessment
Self-assessment
 
Motivational Skills-original-hen
Motivational Skills-original-henMotivational Skills-original-hen
Motivational Skills-original-hen
 
3 types of presentations
3 types of presentations3 types of presentations
3 types of presentations
 
How to become a good presenter
How to become a good presenterHow to become a good presenter
How to become a good presenter
 
Business Presentations - What, When,how Types etc
Business Presentations - What, When,how Types etcBusiness Presentations - What, When,how Types etc
Business Presentations - What, When,how Types etc
 
BM 111 5B HOW TO BE A GOOD PRESENTER 2
BM 111 5B HOW TO BE A GOOD PRESENTER 2BM 111 5B HOW TO BE A GOOD PRESENTER 2
BM 111 5B HOW TO BE A GOOD PRESENTER 2
 
How to be a good presenter
How to be a good presenterHow to be a good presenter
How to be a good presenter
 
Self assessment by students
Self assessment by students Self assessment by students
Self assessment by students
 
Motivating People
Motivating PeopleMotivating People
Motivating People
 
Self awareness.
Self awareness.Self awareness.
Self awareness.
 
Essential Presentation Skills
Essential Presentation SkillsEssential Presentation Skills
Essential Presentation Skills
 
What is stress
What is stressWhat is stress
What is stress
 
Stress
StressStress
Stress
 
Presentation Skills - Presenting to a Group
Presentation Skills - Presenting to a Group Presentation Skills - Presenting to a Group
Presentation Skills - Presenting to a Group
 
Let's Manage Our Stress
Let's Manage Our Stress Let's Manage Our Stress
Let's Manage Our Stress
 
How to create great slides for presentations
How to create great slides for presentationsHow to create great slides for presentations
How to create great slides for presentations
 
ppt on Stress management
ppt on Stress managementppt on Stress management
ppt on Stress management
 

Similar to Introduction To SAQ 4 U

ECMTA 2009 PCI Compliance and the Ecommerce Merchant
ECMTA 2009 PCI Compliance and the Ecommerce MerchantECMTA 2009 PCI Compliance and the Ecommerce Merchant
ECMTA 2009 PCI Compliance and the Ecommerce Merchant
Melanie Beam
 
eCommerce Summit Atlanta Mountain Media
eCommerce Summit Atlanta Mountain MediaeCommerce Summit Atlanta Mountain Media
eCommerce Summit Atlanta Mountain Media
eCommerce Merchants
 
Understanding Your PCI DSS Guidelines: Successes and Failures
Understanding Your PCI DSS Guidelines: Successes and FailuresUnderstanding Your PCI DSS Guidelines: Successes and Failures
Understanding Your PCI DSS Guidelines: Successes and Failures- Mark - Fullbright
 
Educause+PCI+briefing+4-19-20162345.pptx
Educause+PCI+briefing+4-19-20162345.pptxEducause+PCI+briefing+4-19-20162345.pptx
Educause+PCI+briefing+4-19-20162345.pptx
gealehegn
 
PCI FAQs and Myths
PCI FAQs and MythsPCI FAQs and Myths
PCI FAQs and Myths
BluePayProcessing
 
Payment Card Industry Data Security Standard
Payment Card Industry Data Security StandardPayment Card Industry Data Security Standard
Payment Card Industry Data Security Standard
Infosec train
 
Payment card industry data security standard 1
Payment card industry data security standard 1Payment card industry data security standard 1
Payment card industry data security standard 1wardell henley
 
PCI FAQs and Myths - BluePay
PCI FAQs and Myths - BluePayPCI FAQs and Myths - BluePay
PCI FAQs and Myths - BluePay
BluePayProcessing
 
Visa Compliance Mark National Certification
Visa Compliance Mark National CertificationVisa Compliance Mark National Certification
Visa Compliance Mark National CertificationMark Pollard
 
Webinar - PCI DSS Merchant Levels validations and applicable
Webinar - PCI DSS Merchant Levels validations and applicableWebinar - PCI DSS Merchant Levels validations and applicable
Webinar - PCI DSS Merchant Levels validations and applicable
VISTA InfoSec
 
Quick Reference Guide to the PCI Data Security Standard
Quick Reference Guide to the PCI Data Security StandardQuick Reference Guide to the PCI Data Security Standard
Quick Reference Guide to the PCI Data Security Standard
- Mark - Fullbright
 
Online_Transactions_PCI
Online_Transactions_PCIOnline_Transactions_PCI
Online_Transactions_PCIKelly Lam
 
Pcidss qr gv3_1
Pcidss qr gv3_1Pcidss qr gv3_1
Pcidss qr gv3_1
leon bonilla
 
PCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
PCI Compliance - How To Keep Your Business Safe From Credit Card CriminalsPCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
PCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
Fit Small Business
 
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docxAssignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
trippettjettie
 
PruebaJLF.pptx
PruebaJLF.pptxPruebaJLF.pptx
PruebaJLF.pptx
JoseLuna802663
 
PCI Compliance for Payment Security
PCI Compliance for Payment SecurityPCI Compliance for Payment Security
PCI Compliance for Payment Security
PaymentAsia
 
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
AtoZ Compliance
 
pci-comp pci requirements and controls.ppt
pci-comp pci requirements and controls.pptpci-comp pci requirements and controls.ppt
pci-comp pci requirements and controls.ppt
gealehegn
 

Similar to Introduction To SAQ 4 U (20)

ECMTA 2009 PCI Compliance and the Ecommerce Merchant
ECMTA 2009 PCI Compliance and the Ecommerce MerchantECMTA 2009 PCI Compliance and the Ecommerce Merchant
ECMTA 2009 PCI Compliance and the Ecommerce Merchant
 
eCommerce Summit Atlanta Mountain Media
eCommerce Summit Atlanta Mountain MediaeCommerce Summit Atlanta Mountain Media
eCommerce Summit Atlanta Mountain Media
 
Understanding Your PCI DSS Guidelines: Successes and Failures
Understanding Your PCI DSS Guidelines: Successes and FailuresUnderstanding Your PCI DSS Guidelines: Successes and Failures
Understanding Your PCI DSS Guidelines: Successes and Failures
 
Educause+PCI+briefing+4-19-20162345.pptx
Educause+PCI+briefing+4-19-20162345.pptxEducause+PCI+briefing+4-19-20162345.pptx
Educause+PCI+briefing+4-19-20162345.pptx
 
PCI FAQs and Myths
PCI FAQs and MythsPCI FAQs and Myths
PCI FAQs and Myths
 
PCI DSS
PCI DSSPCI DSS
PCI DSS
 
Payment Card Industry Data Security Standard
Payment Card Industry Data Security StandardPayment Card Industry Data Security Standard
Payment Card Industry Data Security Standard
 
Payment card industry data security standard 1
Payment card industry data security standard 1Payment card industry data security standard 1
Payment card industry data security standard 1
 
PCI FAQs and Myths - BluePay
PCI FAQs and Myths - BluePayPCI FAQs and Myths - BluePay
PCI FAQs and Myths - BluePay
 
Visa Compliance Mark National Certification
Visa Compliance Mark National CertificationVisa Compliance Mark National Certification
Visa Compliance Mark National Certification
 
Webinar - PCI DSS Merchant Levels validations and applicable
Webinar - PCI DSS Merchant Levels validations and applicableWebinar - PCI DSS Merchant Levels validations and applicable
Webinar - PCI DSS Merchant Levels validations and applicable
 
Quick Reference Guide to the PCI Data Security Standard
Quick Reference Guide to the PCI Data Security StandardQuick Reference Guide to the PCI Data Security Standard
Quick Reference Guide to the PCI Data Security Standard
 
Online_Transactions_PCI
Online_Transactions_PCIOnline_Transactions_PCI
Online_Transactions_PCI
 
Pcidss qr gv3_1
Pcidss qr gv3_1Pcidss qr gv3_1
Pcidss qr gv3_1
 
PCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
PCI Compliance - How To Keep Your Business Safe From Credit Card CriminalsPCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
PCI Compliance - How To Keep Your Business Safe From Credit Card Criminals
 
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docxAssignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
Assignment 1Assignment 1 Bottling Company Case StudyDue Week.docx
 
PruebaJLF.pptx
PruebaJLF.pptxPruebaJLF.pptx
PruebaJLF.pptx
 
PCI Compliance for Payment Security
PCI Compliance for Payment SecurityPCI Compliance for Payment Security
PCI Compliance for Payment Security
 
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
Introduction to the Payment Card Industry Data Security Standard (PCI DSS) - ...
 
pci-comp pci requirements and controls.ppt
pci-comp pci requirements and controls.pptpci-comp pci requirements and controls.ppt
pci-comp pci requirements and controls.ppt
 

Introduction To SAQ 4 U

  • 1. SAQ 4 U - Serving the small business Self Assessment Questionnaire (SAQ) What is it? Why is it important?
  • 2. Who is SAQ 4 U? A privately held business. Established to help small business owners with the first step toward complying with The Payment Card Industry – Data Security Standards (PCI-DSS). Industry professionals with a keen understanding of payment card security and PCI regulations. NOT a costly Qualified Security Assessor (QSA), because you don’t need to pay high dollars to complete an SAQ.
  • 3. What is PCI-DSS? As stated by the Payment Card Industry (PCI) Security Standards Council (SSC): "The PCI DSS is a multifaceted security standard that includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures. This comprehensive standard is intended to help organizations proactively protect customer account data." Source: http://www.pcisecuritystandards.org/security_standards/pci_dss.shtml
  • 4. PCI’s 12-Steps for compliance Build and Maintain a Secure Network Requirement 1: Install and maintain a firewall configuration to protect cardholder data Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters Protect Cardholder Data Requirement 3: Protect stored cardholder data Requirement 4: Encrypt transmission of cardholder data across open, public networks Maintain a Vulnerability Management Program Requirement 5: Use and regularly update anti-virus software Requirement 6: Develop and maintain secure systems and applications Implement Strong Access Control Measures Requirement 7: Restrict access to cardholder data by business need-to-know Requirement 8: Assign a unique ID to each person with computer access Requirement 9: Restrict physical access to cardholder data Regularly Monitor and Test Networks Requirement 10: Track and monitor all access to network resources and cardholder data Requirement 11: Regularly test security systems and processes Maintain an Information Security Policy Requirement 12: Maintain a policy that addresses information security
  • 5. What the card brands say (like VISA) All merchants will fall into one of the four merchant levels based on payment card transaction volume over a 12-month period. Payment card transaction volume is based on the aggregate number of payment card transactions (inclusive of credit, debit and prepaid) that a merchant handles. Volume is based on the number of transactions stored, processed or transmitted by the merchant.
  • 6. What “Merchant Level” are you? Please note: AMEX and Discover requirements differ. Please call for more information.
  • 8. What will SAQ 4 U accomplish for you? We will: Meet with you and ask brief interview-type questions to understand your business. Determine which SAQ form is required for your business. Complete the appropriate SAQ form and walk you through the results and the Attestation of Compliance validation process. Answer any questions you have and make suggestions for improvements.
  • 9. WHY SAQ 4 U? We know that a “Self-Assessment” Questionnaire can be done by you. We also know that most people can mow their own lawns or clean their own homes, but they still hire Gardeners and House Cleaners. We want you to run your business, NOT fill out forms and research requirements.
  • 10. Where is SAQ 4 U? TEXAS: Serving Austin, San Antonio and Houston CALIFORNIA: Serving San Diego, Los Angeles and Orange County Other locations being added fast. Call to request service in your area.
  • 11. Next Step: Call SAQ 4 U to schedule an appointment today. CALL (713) 854-4410 or email Ralcala@saq4u-merchants.com www.saq4u-merchants.com