PCI Compliance Walkthrough - YouTube

Channel: unknown

[0]
Hi, my name is Brittany, and I'm part of the training team. Today we will be going
[4]
over PCI. First you will receive an email from our support team titled
[9]
"LawPay and Affinipay PCI Compliance" that includes your user name and password for your
[15]
LawPay PCI account. You will go to the www.PCIcentral.com link and enter in the given
[24]
login information. Once you submit your initial login credentials you will be
[29]
prompted to enter the email address associated with your account.
[34]
When that information is submitted you will receive an email from control scan which
[39]
will include the link for setting up your PCI account.
[44]
The first link will direct you to a page where you will set up three security questions and then your password.
[53]
You will automatically be logged into the PCI website once your password is submitted.
[62]
And you can click the box at the bottom of the next page
[64]
agreeing to the terms and conditions of the website, when you are finished
[69]
setting up your account you will be taken to a page titled "compliance
[73]
overview at a glance" from here you will click on the link below next to action
[78]
that says "click here to start the questionnaire" in the light gray box.
[86]
This will direct you to the introduction page and you can begin clicking next on the
[91]
bottom right. The first page of the questionnaire will show your company information.
[100]
Here you do not need to change the information but instead send
[104]
[email protected] an email if anything needs to be updated. Next, you will be
[112]
asked to enter your merchant type. In the empty field type in your business type
[117]
for example if you're an attorney you will type in attorney and select the
[122]
option that best fits your business.
[129]
The following page will ask you to select your processing method, the option
[134]
to select a "secure payment page/secure payment link".
[141]
The next page will have only one option to select for "outsourced" when you hit next for this
[147]
section there will be a pop-up message asking you if you would like to add
[151]
another processing method and you will answer "no".
[155]
You will then be automatically directed to the question that asks if your business electronically stores
[160]
credit card numbers, the answer will be "no". Next you will select YES for the
[169]
Next you will select "YES" for the eligibility page which says you are qualified for the shortened SAQ A
[175]
version and describes the processing method for your company.
[180]
After the eligibility page will be questions asking about how you process credit
[185]
cards in your office. The first section will ask about how you handle media.
[190]
Media refers to any full credit card information that is written down on paper.
[198]
If you do not store any paper copies of full credit card numbers you
[202]
will answer the next 9 questions pertaining to media as "not applicable".
[210]
If you receive the email receipt notifications from LawPay and print
[213]
those copies those do not count as media because the receipts only show the last
[218]
four digits of the card number, so you can still answer not applicable.
[227]
The next seven questions have to do with unique user IDs and passwords to access the
[233]
online system these questions will be true as long as everyone has separate
[238]
login credentials with secure personal passwords. All passwords contain at least
[243]
7 characters that contain both numbers and letters and users are deleted if
[248]
they are no longer working for the company.
[262]
The last six questions discussed the relationship that your business has with
[266]
LawPay in regards to processing credit card information. The last five questions
[271]
discuss the relationship that your business has with LawPay in regards to
[275]
processing credit card information. For the question asking "if you have a list
[280]
of service providers" the answer will be TRUE, because you can find LawPay's contact
[285]
information online if you do not already have it. The next question regarding
[290]
having a written agreement states that you understand that LawPay is in charge
[295]
of keeping credit card numbers on the website secure, so this will be marked as TRUE.
[300]
The established process for engaging service providers means that
[305]
you researched the LawPay before choosing us as your service provider which will be TRUE.
[312]
LawPay is required to be PCI compliant every year as well, so the
[317]
question stating the year service provider is PCI compliant annually will
[321]
be marked as TRUE as well. The last question explains that you understand
[327]
that as a merchant you're responsible for keeping credit card information
[331]
confidential and making sure you are not storing full credit card numbers electronically.
[336]
While your service provider, LawPay, has to continue
[339]
providing the safe payment page for you, this is also TRUE.
[346]
And lastly, the final question states that if you feel as though your system has been breached
[351]
your first plan of action should be to contact LawPay. You will then get to
[357]
the attestation page which confirms that you answer the PCI questions to the best
[362]
of your knowledge. You will enter in your first and last name in the empty field
[365]
and check the box certifying that you are an authorized representative of your company.
[375]
Once you click next you will reach the page that says Congratulations! You have
[379]
completed the SAQ A for your PCI compliance. This confirms that you are
[384]
finished with the PCI compliance questionnaire for the year and you have
[388]
nothing further to do. There will be a button that allows you to download your
[392]
PCI certificate, this is optional for you to print or save.
[396]
LawPay will get confirmation that your account is PCI compliant once you reach the
[401]
congratulations page and you can just click sign out at the top right.
[406]
If you have any additional questions please contact our PCI compliance team at 866 - 376 -0947 .
[419]
Thank you for choosing LawPay and happy charging!