News
Industry Compliance
Sterling was one of the first processors to be certified as complaint with PCI DSS (Payment Card Industry data Security Standards)12 requirements endorsed by all 5 major card brands that establish common procedures and precautions for handling, processing, storing and transmitting card data.
PCI DSS Requirements:
Build and Maintain a secure Network- Install and maintain a firewall configuration to protect data
- Do not use vendor-supplied defaults for system passwords and other security parameters
- Protect stored cardholder data
- Encrypt transmission of cardholder data across open. public networks
- Use and regularly update anti-virus software
- Develop and maintain secure systems and applications
- restrict access to data by business need-to-know
- Assign a unique ID to each person with computer access
- Restrict physical access to cardholder data
- Track and monitor all access to network resources and cardholder data
- Regularly test security systems and processes
- Maintain a policy that addresses information security






