A year on from the previous post in this topic, and the world of PCI DSS has become a lot clearer, and most organisations are now compliant. Or are they?
According to The Logic Group, a company which researches this market, only 15% of companies taking credit card payments are compliant, and that's not increased much since last year (see here for the report). It's not stated, however, how many companies were surveyed, and how the mix between the larger Level 1 Merchants and smaller companies is represented.
I suspect that there are still a lot of contact centres with questions about how PCI DSS applies to them.
So, in the spirit of trying to encourage some conversation, here's a few thoughts for us to consider:
1. Do you know what PCI DSS is?
1b. Does it apply to your company?
2. How is it impacting your business at the moment?
2b. How has it impacted your business in 2008 as a whole?
3. What (if anything) remains unclear for you, about PCI DSS?
4. In 2009, what do you think will change in your company to address PCI DSS?
CR. |