- Solutions
- Platform
- Industries
- Partners
- Resources
- About Us
January 26, 2011 - SoundBite, a communication provider of on-demand, multi-channel proactive customer communications has announced its re-certification as a Level 1 Service Provider compliant with the Payment Card Industry Data Security Standard (PCI (News - Alert) DSS). This is the company’s third consecutive year that it has been PCI certified as a Level 1 service provider.
PCI DSS is the industry standard for any merchant or service provider to process, store, or transmit cardholder data. It’s important that the service providers of those companies -- financial institutions, credit card issuers, retailers and other secure enterprises -- that outsource the processing of cardholder information go through the rigorous PCI certification process.
If they do business with non-certified service providers, these organizations may fall out of compliance themselves. Level 1 service providers such as SoundBite must successfully undergo a stringent, on-site PCI data security assessment conducted by an independent Qualified Security Assessor. Company officials said that this is the most rigorous level of validation available under the PCI Data Security Standard.
Noting that businesses have zero tolerance for exposing their customers to increased threats of credit card fraud and identity theft, John Nye, director of information security and compliance at SoundBite Communications, said that the only way for an organization to demonstrate publicly that it is PCI compliant is to achieve PCI certification as validated by a Qualified Security Assessor.
To obtain PCI certification, a service provider must demonstrate that it has information security controls, procedures and technology in place that meet all of the PCI requirements across 12 control areas.
Based on industry best practices and recognized standards such as ISO 27002 and NIST 800-53, SoundBite’s Information Security Program includes an annual PCI recertification process.
Company officials said that this comprehensive approach ensures that safeguards are in place to protect information entrusted to SoundBite by all of its clients, not only those with a requirement for PCI certification.
“A comprehensive information security program that includes this stringent PCI certification process helps businesses reduce their risks and maintain their PCI compliance,” Nye said.
Read full article

