|
• MSI Milestones
• Events & Trade Shows
• Media Contacts
• Past Press Releases • NovaPlus NEWS • Expert Articles
|
MSI – Industry Credit Card Compliance
Update
In an effort to improve security and prevent credit card
fraud, credit card companies are requiring merchants to follow new
industry standards. These standards or rules apply to the hotelier, as
well as Property Management Software companies like MSI.
|
CISP Compliance |
Cardholder Information Security Program (CISP) covers
everything at the hotel from paper shredding, software, and
network setup. It’s the hotel’s responsibility to make sure it’s
CISP compliant. |
|
PABP Compliance |
Payment Application Best Practices (PABP) looks
specifically at software programs. It’s MSI’s responsibility to
make sure it’s products are PABP compliant. |
FAQ’s
Where can the hotelier get more information about CISP compliance?
On the web: go to
this link. Note that the link might change from time to time. If you
can’t find the page, go to the VISA site and do a search for CISP.
Is MSI PABP compliant?
MSI is in the process of certification. Your hotel will be contacted to
upgrade software, CRS connections, and credit card processor as soon as
the Version 2.0 has passed certification for PABP.
What should the hotelier expect in the future?
Software upgrades, improved security, better reporting, and some changed
functionality. While the added necessity of inputting a password to view
a credit card, for example, may seem inconvenient, it is a benefit to
your customers to offer greater security for their information. MSI will
document new features and operational procedures related to the changes
made to insure compliancy.
What can a hotelier do in the meantime?
Review the CISP standards, start to develop a security plan, address
internal threats, and perhaps name someone to be the security manager. An internal threat refers to someone stealing information at the hotel.
Internal threats are often simple attacks that require simple solutions
and vigilance. The classic example is someone diving through the hotel
dumpster looking for credit card information. As for a security manager,
keep in mind that someone at the hotel is going to have to make sure the
latest version of anti-virus software has been run, that paper is being
shredded correctly, that employees don’t trade passwords with each
other, etc.
|