PCI Hosting - Mastercard Changes PCI Level 2 Requirements


The latest change in MasterCard Inc's PCI compliance requirements announced June 15th will likely impact the hosting standards of most Level 2 merchants processing between one million and six million transactions annually.

The new rules require that Level 2 merchants must hire a PCI-approved auditor to complete an annual onsite data security assessment by Dec. 31, 2010. Before this announcement those merchants were only required to complete an annual self-assessment in order to comply with MasterCard's Site Data Protection Program, the standard used for Mastercards Site Data Protection Program.

"The current enhancement of validation requirements for PCI compliance provides for independent third-party review, enabling consistency of application and implementation of DSS requirements," stated Chris Montiero, a spokesman for Mastercard.

This new ruling is likely to cost Level 2 merchants time as well as money as they try to make sure their environments comply with the new standards.

Testimonials

A3's expertise in helping us promote ourselves via the web has positioned our company well for the future. We were also very pleased with the management of the project and A3’s ability to stay on (and even ahead) schedule and budget. Your project manager, Diane, handled tremendous amounts of communication very well, anticipated our needs, and made sure there were no surprises along the way.  Job well done.  Stephen, VP of Sales

SSL Partner