PCI Compliance and the Contact Centre: The Challenges and Solutions

The balancing act between maintaining multiple standards without impacting the customer journey isn’t an easy task for the contact centre, especially with data breaches on the rise. Recently, PCI Pal and Verizon teamed up to examine the challenges in achieving and PCI compliance. Let’s look at what we discovered in more detail and see how some of the challenges can be mitigated.

Generating around $300bn in revenue annually, contact centres are an essential part of business operations. They are also a hotbed of sensitive customer data. Our report found that 72% of contact centres accept payment card data. Moreover, 76% of data breaches are financially motivated. Add to this that threats can be from internal and external sources, it is no surprise that security is a major concern for contact centres. With this in mind, what can be done to alleviate the risks faced?

Traditionally, compensating controls such as pause & resume have been used along with staff training, both of which present their own problems. The problem with pause and resume is that where they stop card details being recorded they do not stop them being seen and heard, and therefore there is still a very real threat that these details can be stolen. When it comes to training, as pointed out by James Barham (CEO PCI Pal) “Contact centres are notoriously complex environments within which to secure data due to the variety of systems in use; and also generally high employee turnover rates resulting in multiple opportunities for data to become vulnerable” Not only this, but disrupting the call flow can cause issues for audit trails and is also in breach of some other regulations. The only way to ensure protection of cardholder data now and long term is to prevent it from entering the contact centre environment to begin with. By using solutions such as PCI Pal’s Agent Assist businesses completely de-scope the contact centre. This not only removes the risk from internal sources, as the data isn’t stored it cannot be taken in the event of a breach.

Click here to download the whitepaper in full.

To discuss how PCI Pal can de-scope your contact centre from PCI compliance, get in touch with one of our experts.

The post PCI Compliance and the Contact Centre: The Challenges and Solutions appeared first on PCI Pal.

*** This is a Security Bloggers Network syndicated blog from Knowledge Centre – PCI Pal authored by Jane Goodayle. Read the original post at: https://www.pcipal.com/en/knowledge-centre/news/pci-compliance-and-the-contact-centre-the-challenges-and-solutions/

Jane Goodayle

A passionate chartered marketer, Jane Goodayle joined PCI Pal in 2017 to head up the global marketing effort for the organisation. With more than 15 years’ experience in strategic and tactical marketing, and an in-depth knowledge of the contact centre and technology space. Jane has held several senior marketing positions with some of the industry’s leading brands across the globe.

Recent Posts

NewDay Scores with TigerGraph Cloud to Fight Financial Fraud

Leading UK Credit Card Consumer Finance Company Uses Advanced Graph Analytics to Intercept Fraudulent Credit Card Applications, Boost Anti-Fraud Efforts…

1 hour ago

VMRay Closes $25 Million Series B

Digital+ Partners Leads Continuation Funding Round in Growing Automated Threat Analysis & Detection Provider, Closing its Series B Round at…

3 hours ago

The Hacker Mind Podcast: Hacking OpenWRT

For three years OpenWRT had a severe validation problem with its download package manager, until a fuzz tester found and…

3 hours ago

Goodbye to Flash – if you’re still running it, uninstall Flash Player now

It’s time to say a final “Goodbye” to Flash. (Or should that be “Good riddance”?) With earlier this week seeing…

3 hours ago

Being a Defender

1. Be a student of (information security, network security, cyber security). Always strive to know what the latest tactics, trends,…

4 hours ago