Tier3MD is now offering PCI Compliance assistance to medical practices and businesses. We found out that practices not only need HIPAA assessments, but they need to make sure they maintain the standards for credit card processing as well.
What Exactly is PCI DSS?
The Payment Card Industry Data Security Standard (PCI DSS) is a widely accepted set of policies and procedures intended to optimize the security of credit, debit and cash card transactions and protect cardholders against misuse of their personal information. The PCI DSS was created jointly in 2004 by four major credit-card companies: Visa, MasterCard, Discover and American Express.PCIDSS focuses on 6 major objectives.
1. A secure network, including firewalls, wireless, passwords, etc.
2. Secure cardholder data.
3. Protection against hackers, including up to date antivirus, antimalware, etc.
4. Access should be restricted and protected.
5. A formal security should be defined and documented. Staff should be trained, and audits should be put into place.
PCI compliance should go hand in hand with HIPAA compliance. Although they are 2 different assessments, a practice should be just as concerned with PCI compliance as they are with HIPAA compliance. You can never be “over protective” with sensitive information.
If you would like more information on our PCI offering, please contact us at: sales@tier3md.com

