logo
logo
Sign in

What Custom Passwords Can Work For PCI DSS Compliance Purposes?

avatar
michael bedwell
What Custom Passwords Can Work For PCI DSS Compliance Purposes?

You can request your employees use custom passwords to meet PCI DSS compliance standards. All authorized users must have unique passwords that let each person access a network that operates on a merchant services platform. Each person’s password must be different to help differentiate between each person in the system.

Using the default password setting from a vendor isn’t the best idea, as that could be easily predicted by some people. You can establish unique password requirements or standards instead. These include rules for what characters can work in a password, how long it should be, and how often someone has to change that password.

These passwords must appear in spaces where sensitive payment card data may be accessible. These can include spaces like the POS systems themselves or any credit card processing databases people can access.

All passwords will allow protection, but they can also work with logging data that keeps tabs on which users access certain systems. A PCI DSS compliance setup can include logging features that review which accounts access specific segments of a database or network.

Password protection features may also work on a credit card processing system. These include rules where a person is locked out of an account after making a few consecutive unsuccessful login attempts with wrong passwords. A person may also need to use a two-part verification system when looking up a password. It can entail entering a code linked to a text message or another form of verification that requires a second party to support the work.

collect
0
avatar
michael bedwell
guide
Zupyak is the world’s largest content marketing community, with over 400 000 members and 3 million articles. Explore and get your content discovered.
Read more