Braintree Payment Solutions
  Merchant Login  |   Braintree Developer Community  
 
(877) 434-2894 Contact Us
 
 
 
 
 
 


 
 
 
 
 
 
 
 
 

White Paper - The Smart Approach to PCI DSS Compliance

Sample PCI DSS Self Assessment Questionnaire (SAQ A)

Simplify PCI DSS Compliance
 
PCI DSS Compliance & SecureVault™

PCI DSS Compliance & SecureVault™

 
 

Just because PCI DSS Compliance is mandatory doesn't mean you have to interrupt your business and focus on compliance. Smart professionals are simplifying the onerous process by outsourcing their PCI Compliance needs to Braintree.

Our consultative hands on approach ensures a simple, clean and thorough implementation using our industry leading SecureVault™ technology. Braintree provides a cost competitive solution to meet all 200+ PCI DSS controls and your piece of mind. We help you stay focused on growing your business.

Why working with Braintree is Smart:

  • We specialize in PCI DSS Compliance solutions
  • Level 1 PCI Compliant solutions since 2004.
  • We can adapt, grow and scale with your business.
  • 24/7 system support and 99.999% uptime.
  • Achieve compliance in as few as 30 days - keeping costs low and security high


  With Braintree In House Solution
Domain knowledge PCI DSS Experts Steep Learning Curve
Time to become compliant As few as 30 to 60 days* 6 to 18 months
# of PCI controls to address Less than 20 More than 200
System security Level 1 Compliant Since '04 ?
System support 24/7 Included $?
Uptime 99.999% Included $?
Industry knowledge Ongoing Static
Assessment costs to determine 'scope'. $0 $44,000 to $125,000**
Hardware/Software upgrades $0 $81,000 to $568,000**
Ongoing expenses Fixed Variable

How it works for your business


Braintree's solution addresses the two crucial components of PCI Compliance by remotely storing credit card information and preventing any 'handling' of card holder data. Merchants can effectively eliminate the burdensome requirements that must be met if any credit card data is handled or stored in house. With Braintree, no credit card data will ever touch or be stored in any internal system. Merchants may continue business as usual without any restrictions on how they accept or process transactions.

Remote Storage of credit card data: Braintree's SecureVault™ remotely stores all sensitive credit card information in a Level 1 PCI Compliant environment. A unique customer ID, in the form of a token, is returned to the merchant upon submitting sensitive credit card details to SecureVault™. Subsequent transactions can then be initiated remotely without ever handling any sensitive information. The unique customer IDs (tokens) are useless to criminals.

Website payments: Our solution is 100% transparent to the user. Customers never leave the merchant's website or URL. Our solution is not like the standard PayPal technology which redirects the user to a different website to capture additional details. With our solution, the customer is never redirected to any other website so there is never any indication that Braintree is involved. Merchants can integrate Braintree's solution with any application and in any coding language.

Mail or Telephone order payments: To accept and process payments, merchants may use Braintree's Virtual Terminal and/or continue to use their existing applications by integrating them with Braintree's Payment Gateway. Either way, all desired transaction information can be captured and processed without internally handling or storing any credit card information.

How Transparent Redirect Works

How Transparent Redirect Works

SecureVault™ and Transparent Redirect Working Together

SecureVault™ and Transparent Redirect Working Together
 
     
 
 
 
  Products & Services  |   Why Braintree?  |   Company Profile  |   Clients  |   Privacy Policy  |   Home  |  Site Map