30052 Aventura Rancho Santa Margarita, CA 92688 - 949 -888-4408
 
 
 
 
 

Resources

Compliance

One of the driving forces that spurred USAG, was the acceleration of PCI standards in the industry and the responsibility each ISO would have in regards to managing the process, the manpower, the costs, and the likelihood of a possible breach in their organization.

Our members can feel safe and secure that USAG and the systems within our organization are PCI compliant. USAG has strategically decided to assume the responsibility of PCI compliance on behalf of our members, in which we maintain all cardholder data for the merchants and for the ISOs and the likelihood of a breach is limited to one organization instead of fractured and segmented data going to many different groups.  USAG spends tens of thousands of dollars per year to stay in compliance on behalf of our members.  We are pleased to work in conjunction with Security Metrics on assessment, scanning, penetration testing, and regular scheduled audits to maintain our levels of compliance.

The core of the PCI Compliance is a group of principles and accompanying requirements, around which the specific elements of the Compliance are organized:

Build and Maintain a Secure Network
Requirement 1: Install and maintain a firewall configuration to protect cardholder data
Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters

Protect Cardholder Data
Requirement 3: Protect stored cardholder data
Requirement 4: Encrypt transmission of cardholder data across open, public networks

Maintain a Vulnerability Management Program
Requirement 5: Use and regularly update anti-virus software
Requirement 6: Develop and maintain secure systems and applications

Implement Strong Access Control Measures
Requirement 7: Restrict access to cardholder data by business need-to-know
Requirement 8:
Assign a unique ID to each person with computer access
Requirement 9:
Restrict physical access to cardholder data

Regularly Monitor and Test Networks
Requirement 10: Track and monitor all access to network resources and cardholder data
Requirement 11:
Regularly test security systems and processes

Maintain an Information Security Policy
Requirement 12: Maintain a policy that addresses information security


Vendors
USAG proudly partners with the leaders in the field of Payment Processing Technology.

Credit Card Processing:    
   First Data
www.firstdata.com  
   Global Payments
www.globalpaymentsinc.com  
ATM Processing:    
  First Data
www.firstdataatm.com  
  Columbus Data Systems
www.columbusdata.net  
  MetaBank
www.metapay.com  
ATM Equipment:    
   Hyosung
www.nautilus.hyosung.com  
POS Equipment:    
   Verifone
www.verifone.com  
   Blue Bamboo
www.bluebamboo.com  
Remote Deposit Technology:    
   Clear Payment, Inc.
www.cisi21.com  
   IStream Technologies
www.istreamimaging.com  
Check Cashing Technology:    
    Chexar
http://www.chexar.com  
Check Readers/Scanners:    
   Epson
www.epson.com  
   Digital Check
www.digitalcheck.com  
Maintenance/FLM/SLM:    
  BancSource www.bancsourceinc.com  
  Solvport www.solvport.com  
Armored Services:    
   Loomis Fargo
www.loomisfargo.com  
Cash and Vault Services:    
   Cash Connect 
www.cash-connect.com  
    
Home | About | Contact
Copyright © 2008 USAG, Inc. All rights reserved.   Terms of Use | Privacy Policy