<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>RoomKey Property Management Blog &#187; PCI Compliance</title>
	<atom:link href="http://welcometorsicom.provisiondata.net/blog/index.php/category/pci-compliance/feed/" rel="self" type="application/rss+xml" />
	<link>http://welcometorsicom.provisiondata.net/blog</link>
	<description>Hotel Property Management Solutions</description>
	<lastBuildDate>Fri, 26 Feb 2010 23:48:31 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Is Your Hotel Property Management System PCI Compliant?</title>
		<link>http://welcometorsicom.provisiondata.net/blog/index.php/2010/01/is-your-hotel-property-management-system-pci-compliant/</link>
		<comments>http://welcometorsicom.provisiondata.net/blog/index.php/2010/01/is-your-hotel-property-management-system-pci-compliant/#comments</comments>
		<pubDate>Wed, 13 Jan 2010 20:07:43 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Hotel Property Management Software]]></category>
		<category><![CDATA[PCI Compliance]]></category>
		<category><![CDATA[Property Management System]]></category>
		<category><![CDATA[property management system evaluation]]></category>

		<guid isPermaLink="false">http://welcometorsicom.provisiondata.net/blog/?p=177</guid>
		<description><![CDATA[
By Jeff Sefton
During the hotel property management software evaluation process you should be asking the PMS vendor if the system you are considering is Payment Card Industry, Data Security Standard compliant.
It is the hotelier&#8217;s responsibility to protect their customers&#8217; personal information including credit card numbers. Since hotels accept payments from guests and deposits for reservations, [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://welcometorsicom.provisiondata.net/blog/wp-content/uploads/2010/01/PCI.jpg"><img class="alignnone size-full wp-image-178" title="hotel property management system PCI compliance" src="http://welcometorsicom.provisiondata.net/blog/wp-content/uploads/2010/01/PCI.jpg" alt="" width="500" height="320" /></a></p>
<p><em>By Jeff Sefton</em></p>
<p>During the hotel property management software evaluation process you should be asking the PMS vendor if the system you are considering is Payment Card Industry, Data Security Standard compliant.</p>
<p>It is the hotelier&#8217;s responsibility to protect their customers&#8217; personal information including credit card numbers. Since hotels accept payments from guests and deposits for reservations, and process and store this information in their Property Management System and On-line Booking Engine, it is necessary that the Hotel management understands the importance of payment card industry compliance (PCI) and what it means.</p>
<p>Your Hotel does not want to be in the position of having a system breach where your customers have their personal information exposed. This sort of situation has the potential to lead to a public relations nightmare for your business. Making sure that your Property Management System Vendor is in compliance with the Payment Card Industry standards helps reduce risk to your customers and your business.</p>
<p>However, it&#8217;s also important to understand that using a compliant PMS does not eliminate the possibility of a system breach &#8211; Using a PCI compliant vendor is just one of the steps you need to take to reduce risk to your customers and your business.</p>
<p><em>Image Credit: <a href="http://www.flickr.com/photos/purpleslog/2907496392/">Purple Slog</a></em></p>
<p>Back to <a href="http://www.welcometorsi.com/blog/">Main Blog</a></p>
]]></content:encoded>
			<wfw:commentRss>http://welcometorsicom.provisiondata.net/blog/index.php/2010/01/is-your-hotel-property-management-system-pci-compliant/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI: Risks of Non-Compliance</title>
		<link>http://welcometorsicom.provisiondata.net/blog/index.php/2009/11/pci-risks-of-non-compliance/</link>
		<comments>http://welcometorsicom.provisiondata.net/blog/index.php/2009/11/pci-risks-of-non-compliance/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 17:38:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[PCI Compliance]]></category>
		<category><![CDATA[pci risks]]></category>

		<guid isPermaLink="false">http://welcometorsicom.provisiondata.net/blog/?p=98</guid>
		<description><![CDATA[As an independent hotelier, what are some of the risks associated with choosing not to comply with PCI standards?
One of the risks is brand damage &#8211; a data breach will likely have a negative impact on your property&#8217;s reputation and erode the confidence of your customer base. This can obviously effect revenue and profits over [...]]]></description>
			<content:encoded><![CDATA[<p>As an independent hotelier, what are some of the risks associated with choosing not to comply with PCI standards?</p>
<p>One of the risks is brand damage &#8211; a data breach will likely have a negative impact on your property&#8217;s reputation and erode the confidence of your customer base. This can obviously effect revenue and profits over the long term.</p>
<p>The most notable risk is the direct financial penalty. Each credit card company has its own set of fines and penalties &#8211; each of which is designed to be very costly to your business.</p>
<p>In addition to the risk of direct fines from credit card brands like Visa, there is also the possibility of receiving financial levies from payment processors or merchant banks &#8211; these organization can also be fined by card associations and have the authority to pass fines along to individual hotels that are deemed responsible for any data breaches that occur.</p>
<p><strong>What is the Cost?</strong></p>
<p>Some figures are astounding &#8211; Visa fines can be as high as $100,000 per month and up to $500,000 per data breach. The total cost of correcting a credit card data security breach is estimated to be between $90-$300 per card.</p>
<p>In the most severe cases, security infractions can result in your hotel having its ability to process credit card payments completely revoked or lead to law suits from the various affected parties.</p>
<p>For a different perspective on PCI and some of the risks associated with non-compliance, check out this short video (12 min). The video focuses more on the retail sector and POS systems but the information is very relevant to hoteliers.</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="480" height="385" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube.com/v/7W-k3R2N7Zk&amp;hl=en&amp;fs=1&amp;rel=0" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="480" height="385" src="http://www.youtube.com/v/7W-k3R2N7Zk&amp;hl=en&amp;fs=1&amp;rel=0" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<p><strong>BACK TO <a href="http://www.welcometorsi.com/blog/">MAIN BLOG</a></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://welcometorsicom.provisiondata.net/blog/index.php/2009/11/pci-risks-of-non-compliance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI &#8211; Does it Apply to You?</title>
		<link>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-does-it-apply-to-you/</link>
		<comments>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-does-it-apply-to-you/#comments</comments>
		<pubDate>Wed, 28 Oct 2009 20:09:12 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[PCI Compliance]]></category>

		<guid isPermaLink="false">http://welcometorsicom.provisiondata.net/blog/?p=83</guid>
		<description><![CDATA[
There is no shortage of information regarding Payment Card Industry (PCI) data security standards &#8211; so much, in fact, that it can become pretty confusing. For the purpose of this post, let&#8217;s focus on how PCI applies to different organizations.
The 4 PCI Merchant Levels
First and foremost, it&#8217;s important to understand that PCI Compliance is required [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignnone size-full wp-image-85" title="PCI Wordle" src="http://welcometorsicom.provisiondata.net/blog/wp-content/uploads/2009/10/PCI-Wordle1.jpg" alt="PCI Wordle" width="500" height="329" /></p>
<p>There is no shortage of information regarding <a href="http://www.pcisecuritystandards.org">Payment Card Industry (PCI) data security standards</a> &#8211; so much, in fact, that it can become pretty confusing. For the purpose of this post, let&#8217;s focus on how PCI applies to different organizations.</p>
<h2><strong>The 4 PCI Merchant Levels</strong></h2>
<p>First and foremost, it&#8217;s important to understand that PCI Compliance is required by any organization that stores, processes or transmits credit card data. In the case of the hospitality sector it affects the largest chain hotels right down to the smallest independent B&amp;B&#8217;s.</p>
<p><strong>Level 1</strong></p>
<ul>
<li>Over 6 million credit card transactions per year</li>
<li><em>Requirement: annual on-site audit + quarterly network scans</em></li>
</ul>
<p><strong>Level 2</strong></p>
<ul>
<li>150,000 to 6 million credit card transactions per year</li>
<li><em>Requirement: annual self-assessment + quarterly network scans</em></li>
</ul>
<p><strong>Level 3</strong></p>
<ul>
<li>20,000 to 1 million credit card transactions per year</li>
<li><em>Requirement: annual self-assessment + quarterly network scans</em></li>
</ul>
<p><strong>Level 4</strong></p>
<ul>
<li>Less than 20,000 credit card transactions per year</li>
<li><em>Requirement: annual self-assessment + annual network scan</em></li>
</ul>
<p><strong>PCI and Property Management Software</strong></p>
<p>Because so much credit card data flows through your property management system, selecting the right PMS solution provider can go a long way towards your hotel becoming PCI compliant.</p>
<p>A few questions to ask your property management software vendor:</p>
<ol>
<li>Is your PMS provider PCI Certified?</li>
<li>Does your PMS vendor offer a program to help you become PCI compliant?</li>
</ol>
<p>Be proactive and find out how your PMS provider can help you attain the highest level of data security possible for your property and work to reduce the PCI compliance burden for your hotel.</p>
<p>In an upcoming post we&#8217;ll look at the risks associated with your property not becoming PCI compliant.</p>
<p>Photo Credit: <a href="http://www.flickr.com/photos/purpleslog/2906633775/">Purple Slog</a></p>
<p><strong>Back to <a href="http://www.welcometorsi.com/blog/">Main Blog</a></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-does-it-apply-to-you/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI Compliance Myths for Independent Hoteliers</title>
		<link>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-complaince-myths-for-independent-hoteliers/</link>
		<comments>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-complaince-myths-for-independent-hoteliers/#comments</comments>
		<pubDate>Wed, 14 Oct 2009 14:00:04 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[PCI Compliance]]></category>
		<category><![CDATA[PCI compliance myths]]></category>

		<guid isPermaLink="false">http://welcometorsicom.provisiondata.net/blog/?p=56</guid>
		<description><![CDATA[
This visual was  inspired by 7 Deadly Myths and Solutions for PCI Compliance
BACK TO MAIN BLOG
]]></description>
			<content:encoded><![CDATA[<p><img class="alignnone size-full wp-image-62" title="PCI Compliance Myths" src="http://welcometorsicom.provisiondata.net/blog/wp-content/uploads/2009/10/PCI-500p2.jpg" alt="PCI Compliance Myths" width="500" height="607" /></p>
<p>This visual was  inspired by <a href="http://www.hospitalityupgrade.com/_magazine/magazine_Detail.asp?ID=333">7 Deadly Myths and Solutions for PCI Compliance</a></p>
<p><strong>BACK TO <a href="http://www.welcometorsi.com/blog/">MAIN BLOG</a></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://welcometorsicom.provisiondata.net/blog/index.php/2009/10/pci-complaince-myths-for-independent-hoteliers/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
