News & Press

MSI Milestones

Events & Trade Shows

Media Contacts

Past Press Releases

NovaPlus NEWS

MSI – Industry Credit Card Compliance Update

In an effort to improve security and prevent credit card fraud, credit card companies are requiring merchants to follow new industry standards. These standards or rules apply to the hotelier, as well as Property Management Software companies like MSI.

CISP Compliance Cardholder Information Security Program (CISP) covers everything at the hotel from paper shredding, software, and network setup. It’s the hotel’s responsibility to make sure it’s CISP compliant.
PABP Compliance Payment Application Best Practices (PABP) looks specifically at software programs. It’s MSI’s responsibility to make sure it’s products are PABP compliant.


FAQ’s

Where can the hotelier get more information about CISP compliance?
On the web: go to this link. Note that the link might change from time to time. If you can’t find the page, go to the VISA site and do a search for CISP.

Is MSI PABP compliant?
MSI is in the process of certification. Your hotel will be contacted to upgrade software, CRS connections, and credit card processor as soon as the Version 2.0 has passed certification for PABP.

What should the hotelier expect in the future?
Software upgrades, improved security, better reporting, and some changed functionality. While the added necessity of inputting a password to view a credit card, for example, may seem inconvenient, it is a benefit to your customers to offer greater security for their information. MSI will document new features and operational procedures related to the changes made to insure compliancy.

What can a hotelier do in the meantime?
Review the CISP standards, start to develop a security plan, address internal threats, and perhaps name someone to be the security manager. An internal threat refers to someone stealing information at the hotel. Internal threats are often simple attacks that require simple solutions and vigilance. The classic example is someone diving through the hotel dumpster looking for credit card information. As for a security manager, keep in mind that someone at the hotel is going to have to make sure the latest version of anti-virus software has been run, that paper is being shredded correctly, that employees don’t trade passwords with each other, etc.