Merchant Login  |   Braintree Developer Community  
 
(877) 434-2894 Contact Us
 
 
 
 
 
 


 
 
 
 
 
 
 
 
 

White Paper - The Smart Approach to PCI DSS Compliance

Sample PCI DSS Self Assessment Questionnaire (SAQ A)

Simplify PCI DSS Compliance
 

Credit Card Data Encryption

 
 

The fourth requirement of the PCI DSS states that you must encrypt transmission of cardholder data and sensitive information across open, public networks. Credit card information is a prime target for hackers, and they commonly try to intercept, modify, or divert this data from public networks. Credit card data encryption is essential to keeping this information safe.

Credit card data encryption is also mandatory for any sensitive information that you have stored on your system. If a hacker should happen to get by your other security measures, the data will be of no use to him or her without the proper cryptographic keys.

The best method for minimizing your risk is to not store the data on your system at all. Let Braintree Payment Solutions do it for you.

Simple. Secure. Smart.

Protecting Sensitive Data
At Braintree we employ our industry leading SecureVault™ technology to protect credit card information. Our solution remotely stores important data on a Level 1 PCI compliant environment where powerful credit card data encryption is used to keep it safe.

When a user submits information to SecureVault, the merchant receives a unique customer ID in the form of a token. Once you have this ID you can initiate remote transactions without ever handling sensitive credit card data. This token is useless to criminals attempting to gain access.

Reducing the Risk
Braintree employs a Transparent Redirect, a powerful and convenient solution which allows a merchant to accept credit card payments on their website but without ever actually touching the sensitive data. Our system can be seamlessly integrated with your existing applications, which will allow you to continue business as usual while using on our powerful solutions to ensure proper credit card data encryption.

PCI Compliance
Credit card data encryption is a major part of some of the 12 requirements for PCI DSS compliance. PCI compliance is mandatory for anyone who stores, transmits, and processes sensitive credit card data. There are more than 200 individual security controls to address, and compliance can be burdensome and confusing.

But with Braintree you are assured that your customers' information is safe, and that our hands-on account management policies mean you will always have the help you need, when you need it.

Getting Started
Proper credit card data encryption can be one of the most difficult requirements to fulfill, but with Braintree's solutions you can quickly become compliant. Contact us today and get started.

 
     
 
 
 
  Products & Services  |   Why Braintree?  |   Company Profile  |   Clients  |   Privacy Policy  |   Home  |  Site Map