Do you process credit cards? Do you use an integrated solution with Sage MAS90 or MAS200?
Sage North America has recently created a portal specific to this issue. Starting on July 1, 2010, all companies that store, process or transmit cardholder data must be PCI-DSS compliant. These new standards were created by an industry board (PCI Security Standards Council) to facilitate global adoption of consistent data security standards. It’s also known as PA-DSS.
I’m sure you’ve heard about the almost daily cases of companies computers getting hacked and credit card information being stolen. In older versions of MAS90/200, credit card data was merely stored like any other data and displayed on the screen for all to see. An employee could easily make note of these numbers or extract them to a file for illicit purposes. Over the years Sage has cracked down on how this data is both stored and displayed to make it more secure, including encrypting the data and only showing the last 4 digits of the number.










