PCI Compliance: Acquirers and ISOs December 28, 2007
Posted by paragonhost in Hosting News, Internet, Internet Protection, ModernBill, Network 101, PCI Compliance, ParagonAuthorize, ecommerce.Tags: Acquirers, Compliance, ControlScan, Credit Card Fraud, eOnlineData, HackerSafe, ID Theft, Identity Theft, Interent eCommerce, ISO, Master Card, Merchant Services, online merchants, Paragon Authorize, ParagonAuthorize, PCI, ScanAlert, Security Focus, Visa
add a comment
For liability concerns, an acquirer should not directly advocate any one ASV or QSA to their merchants, however it is acceptable for the acquirer to tell the merchants what third party company or companies that they have strategic partnerships with.
“Try to seek a partner who you can rely on to assist with your PCI Compliance program, ControlScan offers a number of solutions for merchants, ISOs and acquirers and currently partners with one of the largest acquirers in the United States,” said Stanton.
As well, the PCI Security Council has a list of approved ASVs and QSAs. Visa and MasterCard also offer their own lists on each Web site.
“Acquirers and ISOs should establish a relationship with a trusted, association-approved PCI assessor, and develop a program for all their merchants to establish compliance, and ensure periodic testing so that compliance remains intact moving forward,” wrote Gray.
A model relationshipThird Party ASVControlScan, Inc. is an Atlanta, Ga.-based, PCI Security Standards Council–approved third party vendor (ASV), providing vulnerability scan and assessments, compliance assistance and network security. Their clients include Fortune 500 and billion dollar corporations such as: Travelers Insurance and PBS.The company offers a turnkey, no-software-needed approach to PCI compliance, and its security certificates assist in meeting the criteria for mandates in Europe, Japan, Canada, ISO and the USA, not only for PCI compliance but also for Sarbanes Oxley, HIPAA, GLBA and FISMA fulfillment. AcquirerAccording to ControlScan’s CTO & Founder, Richard Stanton, the company recently became the ASV for PowerPay, LLC, mentioned previously in this article.“PowerPay requested that we [ControlScan] conduct all of their mandated PCI compliance scans, for all 16,500 of their merchants,” said Stanton.“What sets us apart from other vendors, is that we actually call the merchants, directly, and we also provide a secure Web system, so a company like PowerPay can log into our system and check their merchant’s PCI status at any time.”He continued, “ControlScan is very proactive, providing contact with the merchant, in order to make sure each merchant is PCI compliant…we actually make direct phone calls to each merchant.”
According to PowerPay President Ron Greenberg, after meeting representatives from ControlScan at an industry conference, the company decided ControlScan offered the best PCI compliance scanning program.
“They have a very structured program of trained outbound sales agents along with personalized consulting to assist our merchants in complying with PCI DSS,” says Greenberg. “Other vendors typically did limited outbound sales with no technical support to the merchant.”
In addition to offering the quarterly network scans, mandated by PCI DSS, ControlScan offers an automatic submission solution, for merchants sending the 12-section PCI Self-Assessment Questionnaire.
ISO
e-Online Data is a credit card processor, offering merchant solutions for Internet, Mail Order and Auction sellers. They service e-commerce merchants ranging from startups to billion-dollar companies, according to their Web site.
At the bottom of the e-Online Data homepage, there is a sentence that reads, “e-onlinedata is a registered ISO/MSP of HSBC Bank USA, National Association, Buffalo, NY”
In this model, HSBC Bank USA is the actual acquiring or ‘member bank’, and e-Online Data is considered an ISO.
The partnership between acquirer, member bank, ISO, third party ASV and merchant looks like this:

ModernBill Newsletter: 5.1 Released! October 26, 2006
Posted by paragonhost in ModernBill.add a comment
ModernBill Newsletter: 5.1 Released!
Dear ModernBill Client,
As a ModernBill Client we think you will benefit from reading the following announcements. The information provided in this newsletter is to ensure you get the most out of your ModernBill experience, learn about new products and services, and take advantage of discounts available only to you.
Inside This Issue:
01 Version 5.1 Released
02 New 5.1 Manuals Available
03 5.1 Upgrade Instructions
04 Free FraudGuardian Lookups
05 Migration Services Available
Version 5.1 Released!
Version 5.1 is now available and is loaded with dozens of new features! The 5.1 version is the most stable version to date and is packed with options and features you need in order to run a successful business. Take a look at some of the exciting and easy-to-use features of the new ModernBill 5.1 version below:
Features:
New Nominet Module Support
Distributed IT Module Support
Interworx Module Support
LinkPoint Module Support
Improved credit card authorization for ProtX module and transaction references.
Updated Migration Tool (Now you can migrate products!)
eNom EPP support for .com/.net transfers
Streamlined and optimized interface for faster page loading.
Significant usability enhacements.
Client management including one-touch cancel, suspend, and enable customer packages.
Upgrading to 5.1 is highly recommended! With the new streamlined, optimized, and increased performance of the MBAPI, ModernBill 5.1 is geared to help you increase productivity and efficiency with your day-to-day operations.
New 5.1 Manuals Available!
We now have two updated manuals specific to the 5.1 release. For 5.1 we developed two manuals, one for configuring your system (Configurations Manual) and one for using your system (Operations Manual).
To learn how to configure your system, view the Configurations Manual at:
http://manual.modernbill.com/v5co/
To learn how to use your system, view the Operations Manual at:
http://manual.modernbill.com/v5op/
We encourage your feedback on any of the available 5.1 documentation. If you have questions or comments regarding documentation, use the “comments†feature available on every page of both manuals.
5.1 Upgrade Instructions
A step-by-step document on how to upgrade to 5.1 is now available. These instructions make it easy for you to upgrade today! Simply follow the link below to learn how to upgrade your system to the latest ModernBill Version 5.1.
http://manual.modernbill.com/v5co/index.php?article=118
Free FraudGuardian Lookups
All ModernBill customers get 10 lookups a month FREE. No coupon needed to get started. Remember, FraudGuardian significantly reduces chargebacks saving your company a minimum of $75 each time a fraudster attempts to order from your website.
Do not delay any longer, signup today at:
http://www.modernsupport.com/fgbilling/order/orderwiz.php?style=&submit_domain=sk
ip&submit_package=package&type3_package=&type3_package=2
*Credit card required, but you will not be charged unless you need to upgrade your FraudGuardian lookups.
Migration Services Available
ModernBill now provides migration services to help you upgrade and migrate your data from a previous version of ModernBill 4.x. Save time, money, and resources by letting the ModernBill Migration Team take care of all your migration needs.
Speak with a qualified sales representative now by calling 502-566-7754.
——————————————————————————–
This periodic email newsletter is delivered to all current ModernBill customers, and contains information about new software versions and moderngigabyte.com web site features and content. If you have any questions or comments about this mailing, please contact sales@modernbill.com.
Copyright © 2006, ModernGigabyte, LLC
Thank you,
The MGB Team