bobdist wrote:I'm in the process of digging into filling out the PCI DSS self-assessment questionnaire. I'm assuming that an installation using a combination of Retailedge/PPI would fall questionnaire C (validation type 4)? Is that correct?
Bob
bobdist wrote:Ah, too bad. SAQ D seems considerably more complex to fill out than SAQ C, and requires a lot more back-end processes and supporting documentation. I had hoped it might be possible to avoid SAQ D by having a policy of never explicitly storing customer CC info.
Thanks for the info Bill.
Bob
bobdist wrote:Yes, some of the questions are pretty complex. And there's lots of interesting issues to think about... Just as an example, one of the requirements is that each user have their own unique login id. In our environment, where we have several clerks all accessing the same two registers many, many times per day, it seems impractical to have each one do a Windows login each time they want to use a register. So, I recently started assigning clerk ids, and turned on clerk tracking. But, I have no idea if that meets the intent of that requirement. I'd love to hear how other RetailEdge users handled some of these issues.
Bob
wildman wrote:bobdist wrote:Yes, some of the questions are pretty complex. And there's lots of interesting issues to think about... Just as an example, one of the requirements is that each user have their own unique login id. In our environment, where we have several clerks all accessing the same two registers many, many times per day, it seems impractical to have each one do a Windows login each time they want to use a register. So, I recently started assigning clerk ids, and turned on clerk tracking. But, I have no idea if that meets the intent of that requirement. I'd love to hear how other RetailEdge users handled some of these issues.
Bob
I would also like to know how this will affect us? We also have multiple users,with each having a clerk ID's, but will they have to have a separate password and log into the machine every time they make a sale. If this is a requirement, it will be a major pain in the rear, one would probably have to switch back to stand alone terminals.
Users browsing this forum: No registered users and 0 guests
Copyright © 2016 - 2018 ForumUS. All Rights Reserved. Powered by phpBB® Forum Software © phpBB Limited.