Do small merchants with limited payment card transactions need to be PCI-DSS compliant? If so, what is the deadline to become PCI-DSS compliant?
The PCI-SSC has adopted PCI-DSS as the requirement for all organizations, whether small or large, that store, transmit, and process cardholder data. PCI-SSC is responsible for managing the security standards while each individual payment brand is responsible for managing and enforcing compliance to these standards. For questions regarding compliance validation standards and deadlines as well as compliance reporting requirements, Squirrel Systems recommends that its customers contact their Acquiring Bank.