|
Contingent is a Level 1 PCI-DSS Certified Managed Security Service Provider
As a customer of Contingent you can rest assured that your network is safe and in good hands. However, there is no need to take our word for it, Contingent has earned PCI (Payment Card Industry) certification by the PCI Security Standards Council.
Contingent provides the hardware and configuration services to implement a securely encrypted VPN Connection between Client site locations and the client’s corporate data center. Protection of confidential financial transactional data and communications is accomplished through VPN design, deployment and support and is a core focus at Contingent. No clear text cardholder data is received, handled, or stored by Contingent. Only data, already encrypted by the client is passed from the client network through the Contingent VPN and delivered to the client’s corporate data center. Contingent manages the firewall rule set at the client site per the direction of the client’s staff.
While Contingent manages the firewall in a manner compliant with the PCI-DSS, the client has sole control and responsibility for the content of the firewall rule set, as it pertains to client network traffic. The table below describes Contingent’s compliance
Preventative Solutions - Payment Card Industry (PCI)
- PCI Compliance (WAN): Contingent meets all Twelve Sections of the Payment Card Industry Data Security Standard requirements for connectivity as a certified Network Service Provider.
- PCI Log File Maintenance and Retention (Remote LAN): All active LAN network components and associated events are captured and archived on a dedicated server. Events are sent to security team for intervention and remediation. Functionality included here is designed to satisfy subsections 10-2-10.7 of the PCI Data Security Standard to compliment your overall compliance strategy.
- PCI Rogue Detection (Remote LAN): Rogue detection can be performed at the store level with the addition of a managed switch with Contingent’s equipment. The managed switch is configured for MAC filtering and traps are generated and alerted via SNMP. Functionality included here is designed to satisfy subsection 11.4 of the PCI Data Security Standard to compliment your overall compliance strategy
|