PAYMENT INDUSTRY REFERENCE MATERIAL Used in my work developing firmware for payment terminals GENERAL DOCUMENTS. Most, if not all, of the following documents were found in the documents library of the PCI Security Standards Council website: TERMINOLOGY - ASV: Approved Scanning Vendor; someone who assesses compliance with PCI DSS scan requirements
- CDE: Cardholder Data Environment; location(s) of cardholder data within the application(s)
- DSS: Data Security Standard
- DUKPT: Derived Unique Key Per Transaction
- MAC: Message Authentication Code
- MIC: Message Integrity Code
- PA-DSS: Payment Application Data Security Standard
- PAN: Personal Account Number
- PCI: Payment Card Industry
- PCI DSS: Payment Card Industry Data Security Standard
- PCI PED: (Deprecated -- superceded by PCI PTS) Payment Card Industry Pin
- PCI PTS: Payment Card Industry Pin Transaction Security
- PED: PIN Entry Device
- PIN: Personal Identification Number
- PTS: PIN Transaction Security
- QSA: Qualified Security Assessor; someone who assesses compliance with PCI DSS
FURTHER READING |
|