Refresh

This website unipaygateway.com/unipay-gateway-payment-advice/pa-dss-certification/ is currently offline. Cloudflare's Always Online™ shows a snapshot of this web page from the Internet Archive's Wayback Machine. To check for the live version, click Refresh.

...

UniPayGateway

March 13, 2015
Written by
James Davis
Written by James Davis
Senior Technical Writer at United Thinkers

Author of the Paylosophy blog, a veteran writer, and a stock analyst with extensive knowledge and experience in the financial services industry that allows me to cover the latest payment industry news, developments, and insights.

My works have been cited across media and payment blogs. I do my best to help businesses make the most efficient financial decisions that can positively and significantly improve their business growth.

Whether you are a seasoned investor or just starting out in the world of payments, my writing is designed to be accessible to everyone and help people navigate the complex world of payments. So if you want to stay up-to-date on the latest trends and insights in the payment industry, be sure to check out Paylosophy and my published works.

Reviewed by
Kathrine Pensatori
Product Specialist at United Thinkers

Product specialist with more than 10 years of experience in the Payment Processing Industry. I help payment facilitators and PSPs solve their various payment processing issues. On a regular basis, I work with a team of knowledgeable technical people in the space, and I am passionate about finding creative solutions to the challenges presented by the Payments Industry.

I would be happy to help with any questions you might have regarding credit card payment processing, merchant services, EMV certifications, the various ways of becoming a payment facilitator or a payment platform, as well as any other Payment Industry related issues you might be struggling with. Feel free to follow me on Quora, and don’t hesitate to send me links to the specific Quora questions you would like me to answer.

PSI Data Security Standard

PA-DSS Certification

PA-DSS is a universal data security standard to be followed by payment software vendor companies. Being a complex multi-phase process, PA-DSS certification might present a challenge for payment application developers. In order to go through PA-DSS certification process successfully, one needs to understand the  key phases of PA-DSS audit procedure.

These phases include gap analysis, payment application installation in a PA-DSS compliant laboratory, payment application testing, analysis of documentation and diagrams, remediation period, and final certification.

By the time of the final certification, the payment application developer company should prepare a series of necessary documents. These documents include product implementation guide, software development life-cycle (SDLC) description, the list of PA-DSS requirements to software development life-cycle, SDLC requirements, description of training procedures, descriptions of support and troubleshooting policies, and (if the product is installed by some resellers, and not by the software developing company itself), an installation guide for resellers.

It should be stressed that in contrast to PCI compliance rules (which to be followed by the whole organizations and networks), PA-DSS requirements are targeted specifically at payment software vendors and application developers, so the two concepts are not to be confused.

More information on PA-DSS certification is available on #Paylosophy.

Useful articles to help you: