Verrus Achieves Compliance Validation with the Payment Card Industry Data Security Standard

) March 30, 2009 -- Verrus Mobile Technologies Inc, a global leader in the mobile payment industry, is pleased to announce it has achieved compliance validation as a Level 1 service provider with the Payment Card Industry Data Security Standard (PCI DSS) - the industry's highest level of payment account data security certification.

Verrus Mobile Technologies, Inc.

Given that our solutions process tens of millions of mobile payments each year, PCI DSS Level I compliance validation is a significant milestone, and validates our commitment to sound security practices.

Security is critical to any organization handling sensitive payment card data

Trustwave's full suite of compliance validation solutions will help Verrus increase their security posture and maintain continual point-in-time compliance with the PCI DSS.

<!--
numquotes=3;
quote_index = 0;
quote_naptime = 1000 * 4;
quote_timeout = 0;

function sequentialQuotes()
{
var i;
for( i = 0; i < numquotes; i++ )
{
document.getElementById( "quote_"+i ).style.display = "none";
}
quote_index = quote_index + 1;
if( quote_index >= numquotes ) { quote_index=0; }
//alert( quote_index );
document.getElementById( "quote_"+quote_index ).style.display = "inline";
if( enable_random )
{
quote_timeout = setTimeout( "randomQuotes()", quote_naptime );
}
}
function randomQuotes()
{
var randQuotId;
var i;
for( i = 0; i < numquotes; i++ )
{
document.getElementById( "quote_"+i ).style.display = "none";
}
randQuotId = Math.floor( Math.random() * numquotes);
//alert( randQuotId );
document.getElementById( "quote_"+randQuotId ).style.display = "inline";
if( enable_random )
{
quote_timeout = setTimeout( "randomQuotes()", quote_naptime );
}
quote_timeout = setTimeout( "sequentialQuotes()", quote_naptime );
}

randQuotId = Math.floor( Math.random() * numquotes);
//alert( randQuotId );
document.getElementById( "quote_"+randQuotId ).style.display = "inline";
enable_random=false;
if( enable_random )
{
quote_timeout = setTimeout( "sequentialQuotes()", 1 );
}
-->

Endorsed by all the major card brands - Visa Inc., MasterCard Worldwide, Discover Financial Services, American Express and JCB -- the PCI DSS mandates rigorous requirements for protecting cardholder data and requires any organization that stores, processes or transmits cardholder data to operate in a compliant fashion. Additionally, any organization that stores, processes or transmits more than 300,000 transactions per year is defined as a Level 1 service provider and is required to complete an annual on-site PCI Data Security Assessment, performed by a Qualified Security Assessor and network scans conducted by an Approved Scanning Vendor.


"Given that our solutions process tens of millions of mobile payments each year, PCI DSS Level I compliance validation is a significant milestone, and validates our commitment to sound security practices." said Verrus Co-Founder and CIO Darren Stone.


To validate compliance, Verrus engaged Trustwave, a leading provider of on-demand data security and payment card industry compliance validation solutions to businesses and organizations worldwide. The certification involved a complete review of the Verrus network infrastructure, payment transmission and processing systems, security management procedures and information storage practices.


"Security is critical to any organization handling sensitive payment card data," says Robert J. McCullen, chairman and CEO of Trustwave. "Trustwave's full suite of compliance validation solutions will help Verrus increase their security posture and maintain continual point-in-time compliance with the PCI DSS."


About Verrus
Vancouver-based Verrus Mobile Technologies, Inc. is a pioneer in mobile payments. Verrus delivers frictionless solutions that allow consumers and merchants to enjoy the convenience and power of mobile payment. With millions of subscribers, vertical services for parking, taxis and events and operations in over 100 cities and towns throughout North America, Europe and Australia, Verrus brings real world mobile payment to more consumers than any other organization worldwide. For more information, please visit verrus.com.


About PCI DSS
The Payment Card Industry Data Security Standard (PCI DSS) represents a common set of industry tools and measurements to help ensure the safe handling of card holder information and credit card data. For more information click here.

Similar entries

  • ) August 18, 2009 -- First American Payment Systems, L.P. ("First American"), one of the fastest growing electronic payments processors in the U.S., has partnered with Trustwave to create a program called PCI Smart in order to help merchants achieve and maintain compliance with the Payment Card Industry Data Security Standard (PCI DSS). Trustwave is the leading provider of on-demand data security and payment card industry compliance management solutions to businesses and organizations throughout the world.

  • ) May 4, 2009 -- GreenSoft Solutions, Inc. ("GSI") has successfully completed its annual security assessment and has again been validated as a compliant Level 1 Service Provider under the Payment Card Industry (PCI) Data Security Standard (DSS). This extensive examination by a Qualified Security Assessor covered the operations and management of GSI's CompliantHost systems including its virtual infrastructure.

  • ) February 5, 2009 -- Payment Card Industry Data Security Standards compliance, commonly known as PCI DSS to many, is fast becoming a mandatory requirement for many merchants, service providers, and other third party processors and providers that are directly involved in the processing, storage, or transmission of transaction data or cardholder data. The who, what, when, where, and why of PCI DSS compliance can be daunting at times, as a vast amount of information must be read, comprehended and distilled for truly understanding the dynamics of Payment Card Industry Data Security Standards (PCI DSS) compliance.

  • ) May 11, 2009 -- HostMySite announced today that it has successfully completed a Payment Card Industry Data Security Standard (PCI DSS) Report on Compliance (ROC) and has established itself as a PCI compliant service provider, meaning lower costs and lessened responsibilities to customers who utilize HostMySite dedicated server and colocation solutions. HostMySite contracted with Trustwave, a PCI Qualified Security Assessor, to perform a third party assessment of service offerings to customers looking for PCI security solutions.

  • ) June 25, 2009 -- Element Payment Services announces the launch of the PCI Compliance Quiz Widget, created to help widen the knowledge base of Payment Card Industry (PCI) compliance.

    The PCI compliance standards were developed by the major payment card brands, under the umbrella of the Payment Card Industry Security Standards Council, in response to a recent growth in data security breaches. They apply to all businesses that handle payment cards.

  • ) June 25, 2009 -- Merchant Data Systems (merchantdatasystems.com), a full service payment processing company, has joined forces with ControlScan (controlscan.com), a leading provider of Payment Card Industry (PCI) compliance and security solutions exclusively focused on small- to medium-sized merchants, to help its merchants meet mandatory requirements set forth by the PCI Security Standards Council (PCI SSC).

    PCI Compliance Solutions Provider, ControlScan

  • ) April 28, 2009 -- Signature Card Services (signaturecard.com), a leading provider of credit and debit card payment processing services, has joined forces with ControlScan (controlscan.com), a leading provider of Payment Card Industry (PCI) compliance and security solutions. The partnership allows Signature Card to take a proactive approach in assisting their small and medium-sized merchants in meeting the Payment Card Industry Data Security Standard.

  • Sophrona Solutions, the leader in online patient communication solutions for ophthalmology, announces it has completed a year long security initiative to become fully compliant with the Payment Card Industry's Data Security Standard (PCI-DSS). Sophrona has passed all 230 security criteria set by the Payment Card Industry and undergone rigorous systems vulnerability scans and penetration "attacks" performed by TrustWave. In doing so, Sophrona again demonstrates its committment to the security of its patient portal and ecommerce applications. (PRWeb Mar 9, 2009)

    Read the full story at http://www.prweb.com/releases/2009/03/prweb2192434.htm

  • ) August 17, 2009 -- Unifying IT controls simplifies compliance and cuts costs, as demonstrated by the recent release of The PCI Security Standards Council's "Wireless Security Guide," created in response to feedback from retailers and other businesses claiming that wireless guidance in the Payment Card Industry Data Security Standard (PCI DSS) was too ambiguous.

  • ) July 30, 2009 -- Addison, TX based Encore Payment Systems, www.EncorePS.com, a leader in the electronic payment processing industry, is proud to introduce the Encore Payment Systems iPhone Mobile Application.


    This new application gives small business merchants, independent contractors and mobile merchants the ability to utilize Encore's payment processing solutions without a need for hardware processing equipment or a dedicated internet line.

  • ) October 8, 2009 -- Electronic Payment Exchange (EPX), a leading merchant acquirer and payment processor, said today that the recent Visa release of data field encryption best practices provides welcome leadership to merchants, technology professionals, and vendors looking for practical ways to reduce the risk of data breach. EPX is the first payment processor to offer a true end-to-end solution that endorses and incorporates both tokenization and encryption for securing cardholder data from the card reader through the entire transaction lifecycle, and believes the Visa best practices validate their approach.

    EPX Logo

  • ) February 16, 2009 -- A few years ago the world's five leading payment card brands - American Express, Discover Financial Services, JCB, MasterCard and Visa collaborated to create a world-wide standard for protecting consumer cardholder data.

  • ) August 4, 2009 -- CRE Secure, the first cloud-based security payment system that is fully compliant with new credit card security rules, announces today that it has expanded its PCI compliant credit card processing security service with a new integrated connection to Authorize.net, the most popular payment gateway in North America. Online retailers and web based applications who take credit and debit cards using Authorize.net as their payment gateway can now sign up for CRE Secure PCI Security and still keep their existing connection to Authorize.net and their existing merchant banking relationships.

  • ) January 27, 2009 -- On January 1, a new version of the Payment Card Industry Data Security Standard (PCI DSS), version 1.2, took effect. A new white paper from Summit Data Communications reveals that, for most of today's retailers, solid Wi-Fi® client device security is essential for compliance with PCI DSS v1.2. Such security can be achieved by following three best practices identified in the paper.

  • ) March 29, 2009 -- ControlScan, Inc. (controlscan.com), the leading provider of PCI compliance and security solutions exclusively focused on small merchants, today announced the launch of version 2.0 of its PCI compliance offering, PCI 1-2-3. In addition to its core PCI compliance offerings, ControlScan's latest version includes a more robust Self Assessment Questionnaire (SAQ) and features a new Policy Builder to help small merchants achieve all requirements specified in the PCI Data Security Standards (PCI DSS).

  • ) March 1, 2009 -- Merchant Card Services, a division of Columbia Bank (merchantcardsvcs.com), a leading provider of card deposit processing, has joined forces with ControlScan (controlscan.com), a leading provider of PCI compliance and security solutions exclusively focused on small- to medium-sized merchants, to help its merchants meet mandatory requirements set forth by the PCI Security Standards Council (PCI SSC).

  • ) January 13, 2009 -- CRE Loaded, a leading open source eCommerce shopping cart software that powers nearly 200,000 online stores worldwide, announced today its partnership with ControlScan, a leading provider of PCI compliance and security solutions, focused exclusively on small- to medium-sized merchants.

  • ) September 4, 2009 -- Electronic Payment Exchange (EPX), an industry-leading provider of secure, end-to-end payment solutions for merchants across all distribution channels, and ClaimLogic, a leader in providing revenue cycle management products and services in the healthcare industry, announced a partnership today that enables ClaimLogic to provide PCI-compliant credit card processing services to their client base.

    EPX Logo

  • ) September 16, 2009 -- Latisys, a leading provider of colocation, managed hosting, managed services and disaster recovery solutions, today announced that BluePay, one of the leading full-service providers of credit card processing and merchant accounts, has selected Latisys for data center colocation and managed services.

    Latisys logo

  • ) May 5, 2009 -- NeoSpire, Inc. announced that it has joined the PCI Security Standards Council as a participating organization. Over the past four years NeoSpire has been working with all levels of merchants and service providers to remove the burden of security and compliance through our fully-managed hosting solutions. Now as a Participating Organization, NeoSpire will work with the Council to evolve the PCI Data Security Standard (DSS) and other payment card data protection standards.

  • ) December 15, 2008 -- Nodus Technologies, Inc. (www.nodus.com), a leading electronic payment solution provider is pleased to announce the completion of VISA PABP 2008 certification for their Credit Card Advantage product line, the leading integrated credit card payment application software platform in Microsoft Dynamics GP market.

  • ) July 15, 2009 -- Nodus Technologies, Inc. (www.nodus.com), a leading business process automation solution provider announced the general availability of CRM Charge 4.0 for Microsoft Dynamics CRM during the Worldwide Partner Conference 2009 in New Orleans.


    The new CRM Charge 4.0 is the first off-the-shelf product that can be easily added-on to Microsoft Dynamics CRM to provide real time credit card and electronic check processing.

  • TimesofMoney, a leading online remittance and payment service provider has successfully completed the assessment procedure to validate its compliance with Payment Card Industry Data Security Standard

  • ) April 28, 2009 -- Janam Technologies LLC, a provider of rugged mobile computers that scan barcodes and communicate wirelessly, today announced a strategic alliance with Summit Data Communications, the leading provider of wireless LAN radio modules and cards for business-critical mobile devices. Summit's embedded Wi-Fi® solutions enable Janam's mobile devices to establish secure and reliable wireless network connections in the most challenging operating environments.

  • ) April 13, 2009 -- GreenSoft Solutions, Inc. ("GSI") has successfully completed its annual SAS 70 Type II audit on the operations of its data centers and managed hosting services. This extensive examination was conducted by SAS 70 Solutions, Inc. of Tampa, FL, one of the largest and first national firms to specialize in SAS 70 audit services, and covered the twelve-month period ended January 31, 2009.

  • ) August 26, 2009 -- Fusepoint Managed Services, a leading provider of outsourced IT services and infrastructure, today announced it has been selected by MiraTel Solutions Inc., a payment processing application service provider, to fully manage and host the company's new online lottery ticket sales application.


    MiraTel, which currently provides back office support for the Canadian lottery industry by supplying full service, help desk, credit card processing, and ticket sales, is now developing an online presence for the lottery industry to sell tickets. However, the site must adhere to stringent PCI compliance rules and regulations and be operational in less than a month.

  • ) July 26, 2009 - ControlScan (controlscan.com), the leading provider of PCI compliance and security solutions exclusively focused on small merchants, today announced its participation on two committees of the Electronic Transactions Association (ETA). Joan Herbig, chief executive officer, ControlScan has renewed her position on the Risk and Fraud Committee and Heather Varian Foster, vice president, marketing, ControlScan has joined the Education Committee.

  • ) December 18, 2008 - Element Payment Services™, Inc. (Element) announced today that Marathon Data Systems has adopted Hosted Payments, the first payment processing solution to take software providers out-of-scope for PA-DSS (PABP) compliance requirements.

  • ) August 5, 2009 -- INetU Managed Hosting (http://www.inetu.net/), an enterprise managed hosting provider, announced today that it has joined the PCI Security Standards Council as a new participating organization. As a Participating Organization, INetU will work with the Council to evolve the PCI Data Security Standard (DSS) and other payment card data protection standards.

  • ) August 11, 2009 -- AssureSign LLC, a leader in electronic signature technology, today announced its successful completion of an enterprise-wide SAS-70 Type I audit, demonstrating AssureSign's commitment to safeguarding customer data by meeting the strictest industry standard.


    The SAS-70 Type I certification designates that adequate controls and safeguards are in place and operating effectively in regards to customer data that is hosted or processed by AssureSign. These high quality operations are required today by all industries, particularly by organizations that deal with financial transactions or critical data.

  • ) December 15, 2008 -- Adeptra, (www.adeptra.com) the global market leader in auto-resolution services, has re-validated its compliance with the Payment Card Industry Data Security Standard (PCI DSS), the industry standard for the protection of payment card customer account data. Adeptra was the first company in its field to gain external certification, following an initial audit in November 2007. This latest review reconfirms the company's position as the sole auto-resolution provider recognized as compliant by an external Qualified Security Assessor in both the US and Europe.

  • ) August 11, 2009 -- 3PV® - Third Party Verification, Inc., a leader in third party verification services, today announced its successful completion of an enterprise-wide SAS-70 Type I audit, demonstrating 3PV's commitment to safeguarding customer data by meeting the strictest industry standard.


    The SAS-70 Type I certification designates that adequate controls and safeguards are in place and operating effectively in regards to customer data that is hosted or processed by 3PV. These high quality operations are required today by all industries, particularly by organizations that deal with financial transactions or critical data.

  • ) October 19, 2009 -- PEER 1 Network Enterprises, Inc. (TSX: PIX), the global online business hosting provider, and Alert Logic, Inc., today announced a partnership in which PEER 1 will provide integrated IT-compliant intrusion detection and log management services for its e-commerce customers using Alert Logic's cloud-based IT compliance and security solutions.

  • ) June 1, 2009 -- Assessors certified by the Payment Card Industry (PCI), a coalition of the world's leading credit card companies, have validated that the CRE Loaded ecommerce system is compliant with the newest data security standards.


    These standards were enacted in response to the growing number of expensive data breaches. Starting Oct. 1, online retailers will no longer be allowed to host credit card transactions in non PCI-approved environments. Stores that aren't compliant can be fined, have their transaction fees raised, or even have their merchant accounts frozen.

  • ) October 14, 2009 -- In order to better serve the needs of it's customers, BillingOrchard.com today announced full support for and integration with the FirstData Global Payment Gateway, giving customers more options for securely accepting and processing credit card payments online.

    "BillingOrchard has been online since 2002 and has automated the electronic invoicing and credit card payment processing for hundreds of thousands of client's around the world." said Robyn McDevitt, Vice President of Customer Care for BillingOrchard.com.

  • Barcelona, 24th November, 2008- Cashtronics announces its obtainment of the PCI-DSS (Payment Card Industry – Data Security Standard) certification at the highest level.

  • ) July 17, 2009 -- Opus Interactive, a leading business and agency hosting provider, and the only independently owned virtual solutions provider in the Portland metro area, today announced that it has received its SAS 70 certification.


    SAS 70 is the American Institute of Certified Public Accountants' Statement on Auditing Standards (SAS) and SAS 70 is the designation awarded to service organizations that pass a rigorous audit of their internal controls. It's designed to provide a level of assurance to clients who work with sensitive data that controls and processes are in place to minimize any risk or threat associated with hosting.

  • ) July 23, 2009 -- Unitech Electronics Co., Ltd., a leading global manufacturer of automatic identification and data collection (AIDC) products, today announced that is has forged a strategic alliance with Summit Data Communications, which provides embedded Wi-Fi® solutions for business-critical mobile devices. The partnership ensures that enterprise-class Unitech mobile computers will include the latest Summit features, including support for Cisco Compatible Extensions, or CCX.

    Summit Data Communications Logo

  • ) October 1, 2009 -- CipherLab, a leading innovator in Automatic Identification and Data Capture (AIDC) for the retail, warehouse, healthcare, government and distribution markets, today announced a strategic alliance with Summit Data Communications, a provider of wireless LAN radio modules and cards for business-critical mobile devices. Summit's embedded Wi-Fi® solutions enable new CipherLab mobile computers to establish secure and reliable wireless network connections in the most challenging operating environments.

  • ) September 29, 2009 -- Fusepoint Managed Services, a leading provider of outsourced managed IT services and infrastructure, today announced it has been selected by Central Tax to provide and implement a fully managed PCI compliant hosting environment for their E-Payment and property tax management solutions.


    Central Tax processes property taxes and E-Payment transactions with credit and debit cards, handling high-volume transactions of various origins (Internet, POS, etc). The company's mission is to centralize the processing of these transactions in order to become an important player in the E-Payment processing and property taxes management in Canada.