Thursday, February 25, 2021

Let's get you connected to Quickbooks!

FOREVER, Quickbooks was a locked system not allowing merchants to upload data into their system unless they used their "high-cost" merchant processing. Today with our Plug N' Play your transactions automatically upload daily into Quickbooks, saving thousands of dollars in merchant fees!  



Call today whether you are a NEW MERCHANT or EXISTING MERCHANT to see how easy and inexpensive it will be for your data to seamlessly flow from your Merchant System (at lower rates and fees) to your Quickbooks System! 

Monday, February 22, 2021

What is PCI Compliance and why do I need it?

 What is PCI Compliance and why do I need it?




The Payment Card Industry Data Security Standard (PCI DSS) is a set of requirements intended to ensure that all companies that process, store, or transmit credit card information maintain a secure environment. It was launched on September 7, 2006, to manage PCI security standards and improve account security throughout the transaction process. An independent body created by Visa, MasterCard, American Express, Discover, and JCB, the PCI Security Standards Council (PCI SSC) administers and manages the PCI DSS. 

THE 12 REQUIREMENTS FOR PCI DSS COMPLIANCE

1. USE AND MAINTAIN FIREWALLS - Firewalls essentially block access of foreign or unknown entities attempting to access private data. These prevention systems are often the first line of defense against hackers (malicious or otherwise). Firewalls are required for PCI DSS compliance because of their effectiveness in preventing unauthorized access.

2. PROPER PASSWORD PROTECTIONS - Routers, modems, point of sale (POS) systems, and other third-party products often come with generic passwords and security measures easily accessed by the public. Too often, businesses fail to secure these vulnerabilities. Ensuring compliance in this area includes keeping a list of all devices and software which require a password (or other security to access). In addition to a device/password inventory, basic precautions and configurations should also be enacted (e.g., changing the password).

3. PROTECT CARDHOLDER DATA - The third requirement of PCI DSS compliance is a two-fold protection of cardholder data. Card data must be encrypted with certain algorithms. These encryptions are put into place with encryption keys — which are also required to be encrypted for compliance. Regular maintenance and scanning of primary account numbers (PAN) are needed to ensure no unencrypted data exists.

4. ENCRYPT TRANSMITTED DATA - Cardholder data is sent across multiple ordinary channels (i.e., payment processors, home office from local stores, etc.). This data must be encrypted whenever it is sent to these known locations. Account numbers should also never be sent to locations that are unknown.

5. USE AND MAINTAIN ANTI-VIRUS - Installing anti-virus software is a good practice outside of PCI DSS compliance. However, anti-virus software is required for all devices that interact with and/or store customer data. This software should be regularly patched and updated. Your POS provider should also employ anti-virus measures where it cannot be directly installed.

6. PROPERLY UPDATED SOFTWARE - Firewalls and anti-virus software will require updates often. It is also a good idea to update every piece of software in a business. Most software products will include security measures, such as patches to address recently discovered vulnerabilities, in their updates, which add another level of protection. These updates are especially required for all software on devices that interact with or store cardholder data.

7. RESTRICT DATA ACCESS - Cardholder data is required to be strictly “need to know.” All staff, executives, and third parties who do not need access to this data should not have it. The roles that do need sensitive data should be well-documented and regularly updated — as required by PCI DSS.

8. UNIQUE IDS FOR ACCESS - Individuals who do have access to cardholder data should have individual credentials and identification for access. For instance, there should not be a single login to the encrypted data with multiple employees knowing the username and password. Unique IDs creates less vulnerability and a quicker response time in the event data is compromised.

9. RESTRICT PHYSICAL ACCESS - Any cardholder data must be physically kept in a secure location. Both data that is physically written or typed and data that is digitally-kept (e.g., on a hard drive) should be locked in a secure room, drawer, or cabinet. Not only should access be limited, but anytime the sensitive data is accessed, it should be kept in a log to remain compliant.

10. CREATE AND MAINTAIN ACCESS LOGS - All activity dealing with cardholder data and primary account numbers (PAN) require a log entry. Compliance requires documenting how data flows into your organization and the number of times access is needed. Software products that log access are also needed to ensure accuracy.

11. SCAN AND TEST FOR VULNERABILITIES - All ten of the previous compliance standards involve several software products, physical locations, and likely a few employees. There are many things that can malfunction, go out of date, or suffer from human error. These threats can be limited by fulfilling the PCI DSS requirement for regular scans and vulnerability testing.

12. DOCUMENT POLICIES - Inventory of equipment, software, and employees that have access will need to be documented for compliance.**


If you are not sure if you are compliant or want to speak to our 

local industry specialist, call us today! 


Merchant Processing Solutions Inc.
954-938-2420


** Information from Digital Guardian - https://digitalguardian.com/blog/what-pci-compliance 


Thursday, February 18, 2021

How to get paid online without a Website!


 Do I need a website for people to paid me? Actually, NO! 

With a Merchant Processing Solutions account you can have a SECURE/REAL merchant account not one that is bunched with other businesses like Square/PayPal! You have the right to Dispute Chargebacks, and you can get paid Next Day! 

So how can we do that? Merchant Processing Solutions can set you up on an MX Merchant Account that gives you multiple payment acceptance points for only $5.00 service fee! You get a mobile app for your smart phone, a virtual terminal for your PC and a Payment Link that you embed into an email for your customers to pay you PRIOR delivery of product or service! 

You can create up to 100 different Payment Links or just one! 

Send your customers personal emails with Invoices or Statements. Place the Payment Link on the email and direct the customer to CLICK on the LINK to make their payment. A Payment Form opens for them to enter their credit card information. Once they click SUBMIT, the payment has gone to your merchant account and most days, you will see your money deposited the following day! IT'S THAT EASY! 

EMAIL WITH PAYMENT LINK

CUSTOMER PAYMENT FORM




















Don't wait for the "checks in the mail"! Don't pay high monthly fees or rates either! Merchant Processing Solutions has some of the lowest rates possible! Call us today and see how you can use this system without a Website or physical terminal and location to get PAID! 

CALL MERCHANT PROCESSING SOLUTIONS 

954-938-2420


Tuesday, February 2, 2021

Ask Merchant Processing Solutions!


How do I know the difference in merchant service providers? 

There are thousands payment processors in the market; some large and many small. Some have been around for a long time and many are considered "fly by nights"! 

Here is a breakdown of the different types of processors out there: 

  • Large banks with their own Merchant Services - BofA, Chase, Wells Fargo, etc.
  • Large Merchant Acquirers - First Data, Global, FIS, etc
  • Merchant Aggregates - Square, PayPal
  • Independent Sales Organizations - thousands
  • Independent Sales Agents - work alone and submit application to an ISO>Acquirer
The large banks offer (almost demand) you sign up with their own merchant processor when they sign a merchant up with a bank account. There are usually long-term contracts, cancellation fees and higher rates. The worst part is that you are alone in your new merchant account! They will mail you equipment and you will have to install and call and 800# for ANY customer service help! The bank advisor that loved you during your bank set-up will not be the person you can go to for any help! 

Large Merchant Acquirers are so big that they have local reps. But these reps are paid for ACTIVATIONS not customer service! Once you have signed the application, they are gone and on to the next merchant. Any help with installation, billing or customer service will be calling an 800#. 

A payment aggregator is a credit card provider that allows merchants accept credit and debit card payments without setting up a merchant account through a bank. The aggregate provider groups your business with other merchants and accepts payments on behalf of everyone. You are using a third-party payment provider to process your online transactions which means you are paying higher rates, can have your payments held for no apparent reason or your account just shut down! 

Independent Sales Organizations are "sponsored" by the large acquirers and have to display who they are associated with on their documents and media. These companies are tied to rules and regulations applied by the Brands: Visa/MasterCard/Discover/American Express. The acquirers are also the entities that pay the merchant after collecting from the customers' credit card banks. This means that there is a direct relationship with the Brands>Acquirers>ISO> merchant. 

Independent Sales Agents are individuals or groups of people that were not "sponsored" by the large acquirers and are contracted with an ISO company to sell merchant services. What this means for the merchant is that they are now many hands in your pocket! Brands>Acquirer>ISO>Agent>merchant! 
Best higher rates and unkept promises, many of these agents NEVER answer your calls after you sign up! Even Worse, you find out that you are paying the wrong rates, were charged for equipment you never request ... and the list goes on! 
 


Merchant Processing Solutions is a Wholesale Merchant Provider. We have been in business since 2006 and entered the industry when we were able to offer Visa/MasterCard/Discover/American Express wholesale rates to our customers. This allows our merchants to get some of the best transaction rates in the industry! We HQ in South Florida but have a hands on approach to whether the merchant is local or national. We are the merchants consultant, installer, customer service provider and an essential partner in their business! 


Call Merchant Processing Solutions Today if you have any 
further questions about merchant services!! 

954-938-2420