PCI DSS Requirements and Documentation

Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

 

Thanks in advance for your any help.

Mo

Business Analyst
The National Ballet of Canada 

Parents
  • Kjersten,

     

    If you are still willing to share, I would greatly appreciate obtaining a copy as well.

     

    Rmitchell@phoenixsymphony.org

     

    Thank you!

     

    Randall A. Mitchell
    Director of Information Systems | The Phoenix Symphony | Tel. (602) 452-0440 | Mobile. (602) 796-9323 | Fax. (602) 253-1772
    RMitchell@PHOENIXSYMPHONY.ORG | www.phoenixsymphony.org

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:50 AM
    To: Randall A. Mitchell
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

    
    
    
    
    
    
    
    
    
Reply
  • Kjersten,

     

    If you are still willing to share, I would greatly appreciate obtaining a copy as well.

     

    Rmitchell@phoenixsymphony.org

     

    Thank you!

     

    Randall A. Mitchell
    Director of Information Systems | The Phoenix Symphony | Tel. (602) 452-0440 | Mobile. (602) 796-9323 | Fax. (602) 253-1772
    RMitchell@PHOENIXSYMPHONY.ORG | www.phoenixsymphony.org

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:50 AM
    To: Randall A. Mitchell
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

    
    
    
    
    
    
    
    
    
Children
No Data