Attains Level 1 Service Provider Status with Payment Card Industry (PCI) Data Security Standards (DSS) by Webmaster
Atlanta, GA — December 14, 2009 — CRE Secure Payments, the first cloud-based payment security system, is pleased to announce certification of full compliance with the PCI Data Security Standard as a Level 1 Service Provider. The Payment Card Industry Data Security Standard (PCIDSS) requires all merchants involved in the capture, storage and processing of credit card transactions engage certified auditors to perform audits of security controls. The audit entails external vulnerability scans of the network, verification that all card holder data and password data are encrypted, and ensuring that Secure Socket Layer (SSL) security is employed for access to, and transmission of, all cardholder data.
A gap analysis identifying and eliminating common PCI compliance issues, requirement consulting and an onsite audit were performed by a leading provider of PCI DSS security solutions, Coalfire Systems. As a PCI certified QSA, Coalfire provides comprehensive security assessments of the Data Security Standard to Level 1 Merchants and Level 1 and 2 Service Providers, resulting in a documented Report on Compliance (ROC). The ROC provides independent validation of compliance to customers, card brands and acquiring Banks. CRE Secure Payments understands the need for all of its merchants' business ecommerce transactions to be safe and secure and has committed to the annual on-site PCI data security assessment and quarterly network scan required for compliance.
“The number of identity theft victims has increased to more than 10 million people per year. This statistic is staggering, but PCI Compliance helps prevent this heinous crime, which not only has millions of victims, but costs businesses and consumers millions of dollars per year”, said Greg McGraw, president and chief executive officer of CRE Secure.
Kennet Westby, Chief Operating Officer and Co-founder of Coalfire Systems attests, “As a Level 1 service provider that collects payment information, CRE Secure has established controls to protect transaction privacy while securing transactions for its clients. By investing in secure facilities and innovative transaction processing systems, the company has reduced the risk for its clients and their customers”.
PCI Compliance is a worldwide security standard created by the Payment Card Industry Security Standards Council which include MasterCard, Visa, American Express, Discover, and JCB International. It is a set of security standards that is enforced to protect credit cardholder information. CRE Secure is a Participating Member of the PCI Data Security Standards Council.
About CRE Secure Payments:
CRE Secure Payments is a cloud based secure internet payment processor and a wholly owned subsidiary of venture backed Chain Reaction Ecommerce, Inc., a leading open source eCommerce software solutions provider to online stores. CRE Secure Payments maintains PCI PA-DSS certified payment modules for many leading ecommerce shopping carts distributed worldwide and provides secure PCI compliant hosted payment processing solutions using patent pending technology and through its partnerships with the top global gateways, like Paypal and Authorize.net and merchant acquirer banks. For more info, visit www.cresecure.com or call (800) 609-2141.
Download a PDF copy of the Certificate of Compliance for CRE Secure.
Click here to view CRE Secure on Visa’s updated list of PCI DSS compliant service providers.
About Coalfire Systems:
Coalfire Systems, Inc. is a leading IT audit and compliance firm that provides IT audit, security, and compliance solutions throughout North America. Customers are in the financial services, government, healthcare, education, legal, public electric utility, and retail industries. Coalfire's solutions are adapted to requirements under emerging data privacy legislation including PCI, GLBA, HIPAA, NERC CIP, SOX, and FISMA. Coalfire is a Qualified Security Assessor (QSA) that conducts 750 assessments annually. For more information, visit www.coalfiresystems.com or call (877)224-8077.


