RSS
Логотип
Баннер в шапке 1
Баннер в шапке 2
Project

PayOnline updated the certificate of conformity of PCI DSS

Customers: PayOnline

Moscow; Financial services, investments and audit

Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)

Project date: 2013/12  - 2014/09

The Deiteriy company completed the project on audit and certification of a processing center of PayOnline on compliance to requirements of the international standard of data security of PCI DSS (Payment Card Industry Data Security Standard), the customer company reported on December 13, 2012.

Objectives

Requirements of Ministry of Railways (international payment systems) to service providers of Internet acquiring differ in reasonable rigidity. Therefore passing of certification on compliance to requirements of PCI DSS is very responsible action. Both on classification of Visa, and on classification of MasterCard, the service providers processing, storing or transferring data about more than 300,000 transactions in a year treat the first level – Level 1 – and are obliged to undergo annually the audit executed by the QSA auditor on an object of the organization and quarterly ASV scanning.

Check of compliance to all of the requirement of the PCI DSS standard is executed by the certified QSA company auditors of Deiteriy. Based on QSA audit the processing center of PayOnline received the certificate of conformity to requirements of PCI DSS.

"Compliance to requirements of the PCI DSS standard is an important criterion of service quality of a processing center. We are engaged many years in protection of business processing of card these Russian companies and are glad to state the high level of safety of business processes of PayOnline again", - Sergey Shustikov, the CEO of Deiteriy company noted.
"This year we proved compliance to requirements of the international standard PCI DSS again and are ready to ensure further safety and high quality of the processing services rendered to our clients", - Marat Abasaliyev, the CEO of a processing center of PayOnline emphasized.

2014: Project Continuation

On March 18, 2014 the PayOnline company announced obtaining the certificate of PCI DSS of the first level, confirming compliance of the company to the international standard of security of the industry of payment cards. In 2013 the Deiteriy company audited.

The received certificate – result of careful check from the auditor including a set of stages. At the last stage collecting of evidence of audit and documentation of observations is performed, the Report on compliance (Report on Compliance) is prepared. The certificate on compliance (Attestation of Compliance) and the Certificate of conformity are made out only in case of confirmation of 100% of fulfillment of requirements of the PCI DSS standard. The certificate on compliance is sent to international payment systems of VISA and to MasterCard and banks acquirers.

On October 31, 2014 PayOnline electronic payment system once again confirmed the compliance to requirements of the international certificate of security of the payment industry of PCI DSS (Payment Card Industry Data Security Standard).

CTO (Chief Technical Officer) PayOnline told about passing of QSA of audit and about how infrastructure of a processing center is supported in the status PCI Compliance of 365 days in a year: "on October 31, 2014 the Peyonlayn Sistem LLC company once again confirmed the status PCI Compliance, so - compliance to all requirements of the Payment Card Industry Security Standards Council standard (PCI DSS) of version 3.0.