02.02.2013 Views

Maestro Global Rules (PDF) - MasterCard

Maestro Global Rules (PDF) - MasterCard

Maestro Global Rules (PDF) - MasterCard

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

8.1 Compliance<br />

Security<br />

8.1 Compliance<br />

The Corporation may request compliance reports in the form of checklists<br />

and attestations, on-site security reviews, audits, or a combination of the<br />

aforementioned at any time.<br />

Customers must comply with all current editions of the security-related<br />

requirements for each product or device, such as:<br />

1. Compliance Assessment and Security Testing (CAST) Program for chip<br />

implementation and Mobile Payment Device issuance<br />

2. PIN and Terminal Security—PIN Entry Devices (PEDs) and Encrypting PIN<br />

Pads (EPPs)<br />

PCI Approved PIN Entry Devices<br />

Payment Card Industry EPP Security Requirements<br />

Payment Card Industry POS PED Security Requirements<br />

3. PIN and Terminal Security—PIN Security<br />

Payment Card Industry PIN Security Requirements<br />

4. any other requirements published by the Corporation from time to time.<br />

Issuers should also refer to the Issuer PIN Security Guidelines.<br />

The above-referenced publications can be located on <strong>MasterCard</strong><br />

Connect. Payment Card Industry publications are located online at<br />

www.pcisecuritystandards.org.<br />

8.2 Terminal Compliance Requirements<br />

Terminals that participate in Corporation Activities must be compliant with all<br />

of the requirements set forth in this Chapter 8, “Security,” of the <strong>Rules</strong>. If a<br />

Terminal is not compliant with one or more of the requirements contained in<br />

this chapter, the Acquirer must immediately disconnect that Terminal from the<br />

Interchange System or face the imposition of noncompliance assessment fees,<br />

possible liability for any subsequent fraudulent Transactions that result from<br />

the noncompliant status of the Terminal, and/or termination of its License to<br />

participate in Corporation Activities.<br />

8.3 Customer Compliance with Card Production Standards<br />

A Customer engaged in Card production for itself or for other Customers, must<br />

comply at all times with all Standards applicable to any vendor approved by<br />

the Corporation, including but not limited to those set forth in this chapter and<br />

in the following documents:<br />

©1993–2012 <strong>MasterCard</strong>. Proprietary. All rights reserved.<br />

<strong>Maestro</strong> <strong>Global</strong> <strong>Rules</strong> • 9 November 2012 8-1

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!