Continuing from the last article about PA-DSS, the council of security works as an advisory and manages all PCI security standards additionally each of payment card brand are sole responsible for their compliance program. Depending upon the brand there are different deadline for merchants and software vendors for PCI compliance.
The credit card companies are now searching for the merchants who are not yet compliant with PCI. To be PA-DSS compli [http://www.pinnaclecart.com]ance all software vendors has to undergo a process in which their application is validated on the basis of PA-DSS. There are also some security audits from the PA-DSS QSA (Qualified Security Assessor). The cost of PA-DSS compliance is generally from $10k to $20k.
In comparison to the local and offline business the customers who carry credit card or debit card spend 3 to 4 times than the customers who uses cash or check for purchase. With the globally acceptance of the major credit card brand it is now very easy to expose your products and business to the whole world rather than just selling locally.
All e-commerce vendors should use PCI DSS and also meet the PA-DSS requirement for their transaction applications. Using both standards does not create any confusion each of the compliance was different. The new PA-DSS however is the part of PCI compliance now. It is necessary that merchant who are using any third party application then, that also must be PA-DSS verified.
To ensure the compliance the scan of vulnerability is mandate by the PCI DSS, but not necessary for PA-DSS. For PA-DSS they have to undergo review by Payment Application Qualified Security Assessor. Even your business is just passing the card information to merchants and not storing them, you have to comply with PA-DSS.
There are other options by which business owner can go out of scope of PA-DSS and then they do not need to be certified under PA-DSS. But compliance with PCI and PA-DSS will help you to grow your business because your consumers can use their card without any hesitation if it is totally secure.
previous post