Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

PCI compliance is extremely easy if you don’t handle PANs. Provide a SAQ that says “we don’t handle PANs” and you’re compliant.


Caveat if you are small business. Otherwise, with lots of charges it costs about $100k+ annually in validation, not including labor effort. A startup can hit this quickly, but only under certain circumstances.


If you're a startup and you need PCI DSS compliance, please contact me - mahmoud [@] verygoodsecurity.com and I'd love to help!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: