Text Size: A+| A-| A   |   Text Only Site   |   Accessibility
News & Events
Announcements
Announcements
The Oregon E-government Commerce program has been recognized and independently certified by VISA's Cardholder Information Security Program as meeting the Payment Card Industries' data security standards.  Your transactions are secure and supported by a culture of security surrounding identification and payment information.  But you don't have to take our word for it, we have been independently audited by VISA.
 
Visa's list of Compliant Service Providers
 
PCI Data Security Standard

Build and maintain a secure network 1. Install and maintain a firewall configuration to protect data
2. Do not use vendor-supplied defaults for system passwords and other security parameters
Protect Cardholder Data 3. Protect stored data
4. Encrypt transmission of cardholder data and sensitive information access
Maintain a Vulnerability Management System 5. Use and regularly update anti-virus software
6. Develop and maintain secure systems and applications
Implement Strong Access Control 7. Restrict access to data by business need-to-know
8. Assign a unique ID to each person with computer access 
9. Restrict physical access to cardholder data
Regularly Monitor and Test Networks  10. Track and monitor all access to network resources and cardholder data
11. Regularly test security systems and processes  
Maintain an Information Security Policy 12. Maintain a policy that addresses information security
   
   
   
   
   
   

 
Page updated: July 15, 2008

Get Adobe Acrobat ReaderAdobe Reader is required to view PDF files. Click the "Get Adobe Reader" image to get a free download of the reader from Adobe.