Security Basics mailing list archives

Re: Is PCI Compliance Mandatory


From: evilwon12 () yahoo com
Date: 14 Jan 2008 15:11:09 -0000

If you accept credit cards at your retail outlets, you must comply with the PCI DSS.

Your decision to not store them may be a mitigating factor in certain area, but you still have to comply.  As an 
example, if I chose not to store credit card numbers, I potentially could use that as a mitigating factor against my 
company needing to encrypt stored data.


Current thread: