Security Basics mailing list archives

PCI-DSS and MSPs?


From: "Sheldon Alman" <sheldon.alman () gearytech com>
Date: Wed, 17 Dec 2008 13:46:17 -0500

Hello,

I work for a Managed Service Provider who provides service to businesses
who are required to be PCI compliant as well as businesses who are not.

It is to my understanding that as an MSP we are required to be PCI
compliant.

Does this mean that we have to follow PCI compliance
procedures/practices with both our PCI and non-PCI customers?  Or do we
only have to adhere to PCI standards when dealing with those customers
who are required to be PCI compliant?

Thanks,




Current thread: