PCI DSS Requirements and Documentation

Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

 

Thanks in advance for your any help.

Mo

Business Analyst
The National Ballet of Canada 

  • Former Member
    Former Member $organization in reply to Mohiuddin (Mo) Faruqe

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

  • Kjersten,

     

    I would love to see what you have as well if you are willing to share.  You can reach me at dalton@centertheatregroup.org.

     

    Thanks,

     

    Dave Alton

    213.972.7539

    Center Theatre Group  

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:58 AM
    To: Dave Alton
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

  • Former Member
    Former Member $organization

    Count me in! gormsby@flynncenter.org

     

    Gloria

     

     

    Gloria Ormsby
    Director of Information Systems
    Flynn Center for the Performing Arts
    153 Main Street
    Burlington, VT 05401
    802-652-4506 

    www.flynncenter.org        www.flynntix.org
    Follow us on Facebook      Follow us on Twitter

    Check out our:
    Performances      Special Events      Classes      Gallery     School Programs             

     

     

     

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Dave Alton
    Sent: Thursday, March 20, 2014 1:39 PM
    To: Gloria Ormsby
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Kjersten,

     

    I would love to see what you have as well if you are willing to share.  You can reach me at dalton@centertheatregroup.org.

     

    Thanks,

     

    Dave Alton

    213.972.7539

    Center Theatre Group  

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:58 AM
    To: Dave Alton
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

  • Kjersten, I’d be interested in this as well.  Thanks!

     

     

    Jeanne DeVore | Technology Manager
    Chicago Shakespeare Theater

    312. 667.4943 direct line  | 312.403.0314 mobile www.chicagoshakes.com | facebook | twitter
    800 East Grand Avenue on Navy Pier | Chicago, Illinois 60611

     

     

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Dave Alton
    Sent: Thursday, March 20, 2014 12:38 PM
    To: Jeanne DeVore
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Kjersten,

     

    I would love to see what you have as well if you are willing to share.  You can reach me at dalton@centertheatregroup.org.

     

    Thanks,

     

    Dave Alton

    213.972.7539

    Center Theatre Group  

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:58 AM
    To: Dave Alton
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

  • Hi all,

    Kjersten is not at the Science Museum of Minnesota any longer; she moved on to a role at the American Museum of Natural History (and is on this site under a new profile there).  

    However, due to high demand, she ended up posting a cleaned up copy of the PCI doc to her SMM profile back in 2011 when this thread originated. 

    I hope that's helpful and the document is still useful.

    Best,
    Todd Lantry

    Tessitura Network Webmaster 

  • Kjersten,

     

    If you are still willing to share, I would greatly appreciate obtaining a copy as well.

     

    Rmitchell@phoenixsymphony.org

     

    Thank you!

     

    Randall A. Mitchell
    Director of Information Systems | The Phoenix Symphony | Tel. (602) 452-0440 | Mobile. (602) 796-9323 | Fax. (602) 253-1772
    RMitchell@PHOENIXSYMPHONY.ORG | www.phoenixsymphony.org

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:50 AM
    To: Randall A. Mitchell
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!

    
    
    
    
    
    
    
    
    
  • Former Member
    Former Member $organization

    Kjersten,

     

    Could we get a copy of that also? 

     

    Thanks, Trudy Guest, System Administrator

    385-468-1028

    tguest@slco.rog

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Dave Alton
    Sent: Thursday, March 20, 2014 11:36 AM
    To: Trudy Guest
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Kjersten,

     

    I would love to see what you have as well if you are willing to share.  You can reach me at dalton@centertheatregroup.org.

     

    Thanks,

     

    Dave Alton

    213.972.7539

    Center Theatre Group  

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Donna Sampson
    Sent: Thursday, March 20, 2014 9:58 AM
    To: Dave Alton
    Subject: RE: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hello Kjersten;

    I would also love to see what you've put together. We are at the beginning and looking to see what we need to do.

    Thanks in advance for any information and support.

    Sincerely

    Donna

     

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/12/2011 1:03:21 PM

    Thanks Kjersten for sharing the info. Now I know where we are. No planning of fun party for us yet J

     

    Best,

     

    Mo

     

    From: Tessitura Technical Forum [mailto:forums-technical@tessituranetwork.com] On Behalf Of Kjersten Schladetzky
    Sent: Thursday, May 12, 2011 12:57 PM
    To: Mohiuddin Faruqe
    Subject: Re: [Tessitura Technical Forum] PCI DSS Requirements and Documentation

     

    Hi Mo,

    We've been hard at work on PCI Compliance as well.  I can send you the (20 page mammoth) policy we've come up with.  I'll email it separately because I'm not comfortable putting it in the forum directly.  As for a checklist we just used the PCI SAQ and made a Microsoft Project plan with the items we weren't currently compliant on so we could figure out how to get there.  Our scale is larger than many because we're a level 3 merchant and we accept credit cards through avenues other than just Tessitura so there was a lot to do.

    Best of luck!  We're nearly there and planning a fun party once we finish this up.

    From: Mohiuddin Faruqe <bounce-mohiuddinfaruqe8297@tessituranetwork.com>
    Sent: 5/11/2011 10:16:47 AM

    Hi all, we are in the final stage of implementing PCI DSS in our organization. We have been following the various documents made by PCI Security Standard Council (primarily all PCI PA-DSS related docs) and Tessitura Network (Tessitura PA-DSS Implementation Guide) in addition to other related documents available from Visa, Master Card etc. while working on this project. Now we would like to make sure that we have covered all possible areas and met all the requirements to become PCI compliant. Is there anyone out there who became/soon will become PCI compliant and is willing to share their documentation with us? It will be great if you have a custom checklist and a general guideline used by your organization. I know the requirements may vary wildly depending on individual organization’s size, IT setup, business practice and client base. That’s why we are mostly interested in the documentation made by other NA based arts organizations and Tessitura licensees since most of us will have the similar setup. Anyway, anything – any general comment, direction or link to any other helpful doc in addition to the above – anyone can share will also be very helpful .

     

    Thanks in advance for your any help.

    Mo

    Business Analyst
    The National Ballet of Canada 




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!




    This message was sent automatically to you by www.tessituranetwork.com because you subscribed to the Tessitura Technical Forum. You may reply to this message to post to the Technical forum or visit the site to search, read and post to the forums. In the interest of keeping the forum posts from becoming cluttered, we encourage you to delete previous message text from your reply before sending. Thank you!