Do I have to comply with the Payment Card Industry (PCI) Data Security Standard?
Yes. This is a mandatory compliance program instituted by Visa and MasterCard which requires all merchants who store, process or transmit cardholder data to adhere to certain data security standards. The Cardholder Information Security Program (CISP) and Site Data Protection Program (SDP) were the basis for PCI. PCI is supported by all major card brands in the industry. Each card brand continues to maintain its own compliance program and has the right to demand additional requirements and may assess fines for non-compliance.