Re: PCI Compliance
As a Level 4, we wholly avoid the problem of audits by using 1) a large experienced certified ASP for order capture & 2) Authorize.net for the processing of card transactions.
Thus, there is absolutely no customer data on our server. Any such data directly retained by us is stored off-line.
|