<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://forums.blackbaud.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>PCI Compliance Blog : Credit Card Security</title><link>http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx</link><description>Tags: Credit Card Security</description><dc:language>en</dc:language><generator>CommunityServer 2007 SP2 (Debug Build: 20611.960)</generator><item><title>Merci &amp; Au Revoir</title><link>http://forums.blackbaud.com/blogs/pci/archive/2009/04/24/merci-amp-au-revoir.aspx</link><pubDate>Fri, 24 Apr 2009 14:48:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:41003</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=41003</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2009/04/24/merci-amp-au-revoir.aspx#comments</comments><description>&lt;p&gt;I want to thank you for all of your great questions and input concerning PCI DSS. These inquiries have allowed us to better plan for the releases of Blackbaud&amp;#39;s compliant applications this summer and our related services. Many of your questions went straight to become Knowledge Base solutions or became listed in our &lt;a class="" href="http://www.blackbaud.com/company/pci/faq.aspx"&gt;PCI FAQs&lt;/a&gt;, both of which are being constantly updated. &lt;br /&gt;&amp;nbsp;&lt;br /&gt;It’s been my pleasure being your point of contact over these past months. However, I will be leaving Blackbaud at the end of this month and want to make sure you continue to receive prompt attention to your questions. Over the last few weeks I have been training our Support team on general and application-specific PCI content. I feel sure they are well-equipped to handle your questions. &lt;/p&gt;
&lt;p&gt;You can also contact a couple of other people whio have been instrumental in Blackbaud&amp;#39;s PCI efforts: &lt;a class="" href="mailto:jake.marcinko@blackbaud.com"&gt;Jake Marcinko&lt;/a&gt;, Blackbaud&amp;#39;s Information Security Manager and &lt;a class="" href="mailto:marybeth.westmoreland@blackbaud.com"&gt;Mary Beth Westmoreland&lt;/a&gt;, who has been leading our audit efforts.&lt;/p&gt;
&lt;p&gt;My plans are to move to France with my&amp;nbsp;family. It has always been a dream of ours. We plan to spend a the months of August and September travelling and then move to &lt;a class="" href="http://maps.google.com/maps?f=q&amp;amp;source=s_q&amp;amp;hl=en&amp;amp;geocode=&amp;amp;q=Eygalieres,+France&amp;amp;sll=37.0625,-95.677068&amp;amp;sspn=30.544155,56.25&amp;amp;ie=UTF8&amp;amp;ll=43.775308,4.948997&amp;amp;spn=0.10858,0.219727&amp;amp;t=h&amp;amp;z=12&amp;amp;iwloc=A"&gt;Eygalieres&lt;/a&gt;, a small town in Provence we have visited on several occasions.I hope to continue my work with non-profits in France.&lt;/p&gt;
&lt;p&gt;I have enjoyed getting to know many of you through our “virtual” meetings and phone conversations. Blackbaud is a great company and will continue to be able stewards of your needs.&lt;/p&gt;
&lt;p&gt;Please let me know how your PCI efforts are progressing. Feel free to drop me an email every now and then at &lt;a href="mailto:buckywall@comcast.net"&gt;buckywall@comcast.net&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Au revoir,&lt;br /&gt;Bucky&lt;br /&gt;&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=41003" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/NPTech/default.aspx">NPTech</category></item><item><title>"Preparing for the Raiser's Edge 7.91 and NetCommunity 6.10 upgrade" web seminar files</title><link>http://forums.blackbaud.com/blogs/pci/archive/2009/04/22/preparing-for-the-raiser-s-edge-7-91-and-netcommunity-6-10-upgrade.aspx</link><pubDate>Wed, 22 Apr 2009 20:22:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:40969</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=40969</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2009/04/22/preparing-for-the-raiser-s-edge-7-91-and-netcommunity-6-10-upgrade.aspx#comments</comments><description>&lt;p&gt;On 4/21 &amp;amp; 22 web seminars were held to discuss PCI DSS, the Blackbaud Payment Service and the new versions of The Raiser&amp;#39;s Edge and NetCommunity. You can download the &lt;a class="" title="presentation" href="http://www.blackbaud.com/files/blogs/421websem.pdf" target="_blank"&gt;presentation&lt;/a&gt; or view a &lt;a class="" href="http://www.blackbaud.com//files/blogs/PCIprep.wmv" target="_blank"&gt;recording&lt;/a&gt; of the web seminar or the new Raiser&amp;#39;s Edge/Blackbaud Payment Service &lt;a class="" href="http://www.blackbaud.com/bb/democenter/pci.aspx" target="_blank"&gt;demo&lt;/a&gt;!&lt;/p&gt;
&lt;p&gt;&lt;a class="" href="http://www.blackbaud.com/bb/democenter/pci.aspx"&gt;&lt;/a&gt;&amp;nbsp;&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=40969" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/upgrades/default.aspx">upgrades</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/NPTech/default.aspx">NPTech</category></item><item><title>Blackbaud Listed by MasterCard as a compliant service provider</title><link>http://forums.blackbaud.com/blogs/pci/archive/2009/03/20/blackbaud-listed-by-mastercard-as-a-compliant-service-provider.aspx</link><pubDate>Fri, 20 Mar 2009 17:59:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:40312</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=40312</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2009/03/20/blackbaud-listed-by-mastercard-as-a-compliant-service-provider.aspx#comments</comments><description>&lt;p&gt;As part of their Site Data Protection program, MasterCard has listed Blackbaud as a service provider compliant with the PCI Standard.&lt;br /&gt;&lt;br /&gt;A Service Provider reported to MasterCard to be compliant with the PCI Standard have been provided a Certificate of Validation (COV) by a Qualified Security Assessor (QSA.) Blackbaud’s COV was presented by our QSA, &lt;a href="http://www.trustwave.com/"&gt;Trustwave&lt;/a&gt;. Check out &lt;a href="http://www.mastercard.com/us/sdp/assets/pdf/Compliant%20Service%20Providers%20-%20March%2019%202009.pdf"&gt;MasterCard&amp;#39;s list of compliant service providers&lt;/a&gt;. &lt;/p&gt;
&lt;p&gt;NOTE: MasterCard does not endorse or make any representation of any kind as to the nature or quality of service or other performance of any QSA, or Service Provider. MasterCard disclaims any liability of any kind directly or indirectly resulting from the use of or reliance on information appearing or not appearing herein and makes no representation as to the accuracy of any such information.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=40312" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/NPTech/default.aspx">NPTech</category></item><item><title>March 24 Virtual Conference on PCI</title><link>http://forums.blackbaud.com/blogs/pci/archive/2009/03/19/virtual-conference-on-pci-sponsored-by-sc-magazine-on-march-24.aspx</link><pubDate>Thu, 19 Mar 2009 20:07:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:40294</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=40294</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2009/03/19/virtual-conference-on-pci-sponsored-by-sc-magazine-on-march-24.aspx#comments</comments><description>&lt;p&gt;SC Magazine is sponsoring an all-day virtual conference on PCI. Speakers include Steven Peltzman, CIO&amp;nbsp;from the Museum of Modern Art and Troy Leach, Technical Director at the PCI Security Standards Council.&lt;/p&gt;
&lt;p&gt;This is billed as &amp;quot; A completely virtual event where registrants can visit vendor booths, hear from industry experts and retrieve valuable information.&amp;quot;&amp;nbsp; Should be cool.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;Registration was easy. Go to &lt;a class="" href="http://www.scmagazineus.com/pages/section/823/"&gt;SC Magazine&amp;#39;s site&lt;/a&gt; to sign up.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=40294" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/NPTech/default.aspx">NPTech</category></item><item><title>PCI SSC Prioritized Approach for DSS 1.2 Webinar</title><link>http://forums.blackbaud.com/blogs/pci/archive/2009/03/16/pci-ssc-prioritized-approach-for-dss-1-2-webinar.aspx</link><pubDate>Mon, 16 Mar 2009 13:56:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:40168</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=40168</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2009/03/16/pci-ssc-prioritized-approach-for-dss-1-2-webinar.aspx#comments</comments><description>&lt;p&gt;The PCI Security Standards Council has created &lt;a href="https://www.pcisecuritystandards.org/education/prioritized.shtml"&gt;The Prioritized Approach&lt;/a&gt; to help merchants and other organizations (including nonprofits) through their PCI DSS compliancy process. This web seminar will introduce the Prioritized Approach and how to put it to use.&amp;nbsp;The &lt;a href="http://forums.blackbaud.com/controlpanel/blogs/Download%20the%20accompanying%20Prioritized%20Approach%20tool%20%28xls%29"&gt;Excel tool&lt;/a&gt; groups together the requirements of PCI DSS 1.2 into six key milestones to consider in their card data security strategy. The Prioritized Approach offers guidance on how to focus PCI DSS implementation efforts in a way that expedites the security of cardholder data. It also:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;Helps identify highest risk targets&lt;/li&gt;&lt;li&gt;Creates a common language around PCI DSS implementation efforts&lt;/li&gt;&lt;li&gt;Enables merchants to demonstrate progress on compliance process to key stakeholders – banks, acquirers, QSAs, others&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;If you want to learn more, check out one of these web seminars:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;Wednesday, March 18, 2009 at 11:30 a.m. ET (&lt;b&gt;&lt;a href="http://register.webcastgroup.com/event/?wid=0800318094557"&gt;register&lt;/a&gt;&lt;/b&gt;) or 7:30 p.m. ET (&lt;b&gt;&lt;a href="http://register.webcastgroup.com/event/?wid=0800318094558"&gt;register&lt;/a&gt;&lt;/b&gt;)&lt;/li&gt;&lt;li&gt;Monday, March 23, 2009 at 11:30 a.m. ET (&lt;b&gt;&lt;a href="http://register.webcastgroup.com/event/?wid=0800323094608"&gt;register&lt;/a&gt;&lt;/b&gt;) or 7:30 p.m. ET (&lt;b&gt;&lt;a href="http://register.webcastgroup.com/event/?wid=0800323094609"&gt;register&lt;/a&gt;&lt;/b&gt;)&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=40168" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/NPTech/default.aspx">NPTech</category></item><item><title>Webinar: Beta Program for The Raiser’s Edge 7.86</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/10/15/webinar-beta-program-for-the-raiser-s-edge-7-86.aspx</link><pubDate>Wed, 15 Oct 2008 16:55:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:37528</guid><dc:creator>Bucky Wall</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=37528</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/10/15/webinar-beta-program-for-the-raiser-s-edge-7-86.aspx#comments</comments><description>&lt;p&gt;Last week, Anne McDonell, Blackbaud’s Client Feedback Manager, Kevin Brunson, Sr. Product Support Lead for The Raiser’s Edge and I hosted a webinar on The Raiser’s Edge 7.86 beta. The webinar provided an overview of issues surrounding PCI compliance and a demo of the integration of The Raiser’s Edge and the new Blackbaud Payment Service.&lt;/p&gt;
&lt;p&gt;You can see a recording of the &lt;a href="http://www.blackbaud.com/files/blogs/Beta%20Program%20for%20RE%20786-PCI%20Compliance%2010-9-08.wmv"&gt;webinar&lt;/a&gt; and &lt;a href="http://www.blackbaud.com/files/blogs/RE_Beta_Webinar_100708.ppt"&gt;download the presentation.&lt;/a&gt; If you are interested in joining The Raiser’s Edge 7.86 beta program, please fill out the &lt;a href="http://vovici.com/wsb.dll/s/f87eg35cf4"&gt;Application Survey&lt;/a&gt; or email &lt;a href="mailto:anne.mcdonell@blackbaud.com"&gt;Anne McDonell&lt;/a&gt;. We’re holding a repeat of the webinar on Thursday and Friday, October 23 and 24. If you would like to attend, &lt;/font&gt;&lt;a href="https://www124.livemeeting.com/lrs/1100003672/Registration.aspx?pageName=b5cdg6m3d17k4ps3"&gt;register now&lt;/a&gt;! 
&lt;p&gt;Bucky Wall, Director of Corporate Readiness&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=37528" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category></item><item><title>On the Road With Bucky Wall</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/10/02/on-the-road-with-bucky-wall.aspx</link><pubDate>Thu, 02 Oct 2008 19:16:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:37254</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=37254</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/10/02/on-the-road-with-bucky-wall.aspx#comments</comments><description>&lt;p&gt;&lt;em&gt;Posted on behalf of Bucky Wall:&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;Last week, Jake Marcinko, Blackbaud&amp;#39;s Data Security Manager, and I attended the PCI Security Standard Council&amp;#39;s (PCISSC) annual community meeting in Orlando, FL (You may recall from an earlier press release that Blackbaud joined the PCISSC this past summer.) The main focus of this year&amp;#39;s meeting was the roll-out of the PA &amp;amp; PCI DSS Standards 1.2. &lt;/p&gt;
&lt;p&gt;In general, it was a bit of an eye-opener. This was mostly because it&amp;#39;s fairly clear that the non-profit space is not on the Security Council&amp;#39;s RADAR. You would think it should, since charitable giving topped 300 billion last year in the US alone (and while I don&amp;#39;t have stats as to the amount donated via credit cards, you can bet it&amp;#39;s a sizable number). &lt;/p&gt;&lt;strong&gt;Why is the non-profit community a bit of an afterthought? A few things come to mind….&lt;/strong&gt; 
&lt;ul&gt;
&lt;li&gt;We haven&amp;#39;t seen a serious breach of security resulting in the loss of a large number of credit card information. And, unfortunately, many organizations don&amp;#39;t have self-auditing processes and wouldn&amp;#39;t know if there was a breach. &lt;/li&gt;
&lt;li&gt;Most non-profits have a relatively small number of credit cards in their databases, so any loss would be relatively small in comparison to a large merchant (can you say, &amp;quot;TJ-MAX?&amp;quot;)&lt;/li&gt;
&lt;li&gt;General credit card security concerns have been slow to arise in the non-profit space.&lt;/li&gt;
&lt;li&gt;The unique relationship between donor and the receiving organization is fundamentally different than that between merchant and purchaser. Donors don&amp;#39;t complain as much as purchasers…&lt;/li&gt;&lt;/ul&gt;
&lt;p&gt;&lt;strong&gt;Why should we want to be on the Council&amp;#39;s RADAR?&lt;/strong&gt;&lt;br /&gt;Decisions have been made and will continue to be made over the next few years that will impact the way non-profits accept credit card donations. You will want a say in these decisions. You might even consider joining the council (see: &lt;a href="https://www.pcisecuritystandards.org/participation/join.shtml" target="_new"&gt;https://www.pcisecuritystandards.org/participation/join.shtml&lt;/a&gt;)&lt;/p&gt;By joining you will be able to: 
&lt;ul&gt;
&lt;li&gt;Vote for Participating Organization representatives on the PCI Security Standards Council Board of Advisors. &lt;/li&gt;
&lt;li&gt;Nominate a representative to stand for election to the PCI Security Standards Council Board of Advisors.&lt;/li&gt;
&lt;li&gt;Comment on drafts of all revisions to the DSS specification, and on any new specifications, prior to public release.&lt;/li&gt;
&lt;li&gt;Attend Community Meetings hosted by the PCI Security Standards Council.&lt;/li&gt;
&lt;li&gt;Recommend new initiatives for consideration to the PCI Security Standards Council.&lt;/li&gt;&lt;/ul&gt;
&lt;p&gt;I plan to push for a special interest group within the council focusing on the needs of non-profits, but it may take some politicking to get this approved. &lt;/p&gt;&lt;strong&gt;What were my main take-aways?&lt;/strong&gt; 
&lt;ul&gt;
&lt;li&gt;Look for the &amp;quot;touch points&amp;quot; regarding credit card data. Who sees or touches credit card information and why? If you don&amp;#39;t need this information, then get rid of it. &lt;/li&gt;
&lt;li&gt;Self-assess. Contact a Qualified Assessor to help if needed, but take some time to see how vulnerable your data environment is, keeping in mind you will probably need change some of your business practices based on what you discover.&lt;/li&gt;
&lt;li&gt;Requirements are not absolute. There is a lot of grey area associated with these requirements, look at the best practices and see what makes sense to your organization. &lt;/li&gt;&lt;/ul&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=37254" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category></item><item><title>Web Seminar Redux</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/09/18/web-seminar-redux.aspx</link><pubDate>Thu, 18 Sep 2008 15:58:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:35977</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=35977</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/09/18/web-seminar-redux.aspx#comments</comments><description>&lt;p&gt;Our encore &lt;a href="http://www.blackbaud.com/events/webseminars.aspx"&gt;web seminar&lt;/a&gt; regarding PCI DSS compliance was held yesterday, September 17. If you have any questions regarding the web seminar, leave a comment below. If you are interested in taking part in an early adopter program for The Raiser’s Edge or any of our other products, contact Bucky Wall at &lt;a href="mailto:bucky.wall@blackbaud.com"&gt;bucky.wall@blackbaud.com&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;If you missed&amp;nbsp;yesterday&amp;#39;s seminar, check out the &lt;a href="https://www124.livemeeting.com/cc/1100003672/view?id=P97JTF" target="_new"&gt;recording&lt;/a&gt;, or &lt;a href="http://www.blackbaud.com/files/support/AES_PCI_Webinar_091008.ppt" target="_new"&gt;download the presentation&lt;/a&gt;.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=35977" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category></item><item><title>Web Seminar: Recap and Feedback</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/09/12/web-seminar-recap-and-feedback.aspx</link><pubDate>Fri, 12 Sep 2008 14:55:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:34514</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=34514</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/09/12/web-seminar-recap-and-feedback.aspx#comments</comments><description>&lt;p&gt;Yesterday&amp;nbsp;afternoon, Blackbaud’s Director of Corporate Readiness Bucky Wall and Accounting and Education Solutions Program Manager Wanda Mahon facilitated our first &lt;a href="http://www.blackbaud.com/events/webseminars.aspx"&gt;web seminar&lt;/a&gt; regarding PCI DSS compliance.&lt;/p&gt;
&lt;p&gt;The seminar covered the impact of the new PCI DSS regulations on all Blackbaud customers as well as specific changes to versions 7.77 of The Financial Edge, The Education Edge, and Blackbaud Student Information System. These changes had been shared previously in the &lt;a href="http://www.blackbaud.com//files/support/newsletters/eefesbmessage.htm"&gt;email&lt;/a&gt; sent to the primary contacts and site administrators for all organizations who use Accounts Receivable 7, Cash Receipts 7, and Student Billing 7.&lt;/p&gt;
&lt;p&gt;If you have any questions regarding the web seminar, leave a comment below. If you are interested in taking part in an early adopter program for The Raiser’s Edge or any of our other products, contact Bucky Wall at &lt;a href="mailto:bucky.wall@blackbaud.com"&gt;bucky.wall@blackbaud.com&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;If you missed&amp;nbsp;yesterday&amp;#39;s seminar, check out the &lt;a href="http://www.blackbaud.com/files/blogs/Credit%20Card%20Changes%209-11-08.wmv" target="_new"&gt;recording&lt;/a&gt;, or sign up for Credit Card Changes That Impact You on September 17 at 2:00 p.m. ET.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=34514" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category></item><item><title>PA-DSS Compliance for Patron Edge</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/09/05/pa-dss-compliance-for-patron-edge.aspx</link><pubDate>Fri, 05 Sep 2008 14:22:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:33645</guid><dc:creator>Nicholai Burton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=33645</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/09/05/pa-dss-compliance-for-patron-edge.aspx#comments</comments><description>&lt;p&gt;We are making several important changes to the next version of Patron Edge in an effort to meet &lt;a title="PA-DSS rules" href="https://www.pcisecuritystandards.org/security_standards/pa_dss.shtml" target="_blank"&gt;PA-DSS rules&lt;/a&gt;. These changes are required in order for your organization to reach compliance with &lt;a title="PCI standards" href="http://en.wikipedia.org/wiki/PCI_DSS" target="_blank"&gt;Payment Card Industry standards&lt;/a&gt; and continue to process credit cards. Patron Edge and Patron Edge Online will not be using the Blackbaud Payment Service, but will reach compliance using a different method.&amp;nbsp;Please refer to this article from &lt;a class="" title="The Spotlight" href="http://www.blackbaud.com/thespotlight"&gt;The Spotlight&lt;/a&gt; for full details:&lt;/p&gt;
&lt;p&gt;&lt;a class="" href="http://forums.blackbaud.com/blogs/patronedge/archive/2008/09/03/important-announcement-regarding-patron-edge-3-340.aspx"&gt;Important announcement regarding Patron Edge 3.340&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;More details will be coming related to our compliance measures as the next release approaches, both on The Spotlight and on the Patron Edge documentation page.&lt;/p&gt;
&lt;p&gt;Has your organization started planning for PCI compliance? Share your thoughts or best practices in the comments.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=33645" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/upgrades/default.aspx">upgrades</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PE/default.aspx">PE</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PEO/default.aspx">PEO</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/patron+edge/default.aspx">patron edge</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PA+DSS/default.aspx">PA DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/patron+edge+online/default.aspx">patron edge online</category></item><item><title>Brave New World: Introducing the Blackbaud Payment Service</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/09/03/brave-new-world-introducing-the-blackbaud-payment-service.aspx</link><pubDate>Wed, 03 Sep 2008 17:20:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:33562</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>9</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=33562</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/09/03/brave-new-world-introducing-the-blackbaud-payment-service.aspx#comments</comments><description>&lt;p&gt;Blackbaud can help you comply with the Payment Card Industry Data Security Standard (PCI-DSS) by providing software solutions that meet the Payment Application Security Standards (PA-DSS). The goal of the PA-DSS is to help software vendors like Blackbaud develop secure payment applications that comply with the requirements of the PCI-DSS. In order to make our software PA-DSS compliant, Blackbaud has opted to remove credit card data from all applications.&lt;/p&gt;
&lt;p&gt;In order to make The Raiser&amp;#39;s Edge, NetSolutions, Blackbaud NetCommunity, and Blackbaud Enterprise CRM compliant with PCI-DSS and PA-DSS guidelines while still allowing you to process transactions, Blackbaud is pleased to announce &lt;strong&gt;The Blackbaud Payment Service (BBPS)&lt;/strong&gt;. BBPS will integrate with the PA DSS compliant versions of our software applications.&lt;/p&gt;
&lt;p&gt;With BBPS, credit card numbers will no longer be visible in the software applications and storage of credit card information will be transitioned to the BBPS. Within each application, credit card numbers will be replaced with reference tokens. When you process credit card transactions, your software will connect to the BBPS service. The reference token in your database will summon the stored credit card number to be used in the transaction.&lt;/p&gt;
&lt;p&gt;If you have an existing &lt;a href="http://www.blackbaud.com/esupport/esupport.asp?resource=&amp;amp;number=0&amp;amp;id=BB490176"&gt;Merchant ID&lt;/a&gt; or get one before October 1, 2008, you may be able to postpone updating to a PA-DSS compliant version until October 1, 2009. You should contact your processor or acquiring bank ASAP to determine your compliance requirements and timelines - they may require immediate compliance.&lt;/p&gt;
&lt;p&gt;If you choose not to use the BBPS, you should back up your credit card data before updating to the PA-DSS version of our software. You will need to contact a &lt;a href="http://www.pcisecuritystandards.org/pdfs/pci_qsa_list.pdf" target="_new"&gt;Qualified Security Assessor&lt;/a&gt; for advice on how to secure this credit card information in accordance with PCI DSS.&lt;/p&gt;
&lt;p&gt;If you have any questions about BBPS, or anything else related to PCI-DSS and PA-DSS requirements, please leave a comment below.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=33562" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Blackbaud+Payment+Service/default.aspx">Blackbaud Payment Service</category></item><item><title>Sign Up for Our Web Seminar</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/08/20/sign-up-for-our-web-seminar.aspx</link><pubDate>Wed, 20 Aug 2008 17:59:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:33052</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=33052</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/08/20/sign-up-for-our-web-seminar.aspx#comments</comments><description>&lt;p&gt;Sign up for &lt;a href="https://www124.livemeeting.com/lrs/1100003672/Registration.aspx?pageName=2mtcd7hpg7777043" target="_new"&gt;Credit Card Changes That Impact You&lt;/a&gt; on either September 11 at 2:00 p.m. ET or September 17 at 2:00 p.m. ET to learn more about the new Payment Card Industry Data Security Standard (PCI DSS) and how it will impact the way your organization handles credit cards. This session will highlight changes being made within Accounts Receivable 7, Cash Receipts 7, and Student Billing 7. Blackbaud is committed to making these changes within our products in order to help your organization become PCI DSS compliant.&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=33052" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category></item><item><title>Straight Off the Press: We've Joined the PCI Security Standards Council</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/07/01/Straight-Off-the-Press_3A00_-We_2700_ve-Joined-the-PCI-Security-Standards-Council.aspx</link><pubDate>Tue, 01 Jul 2008 09:12:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:31752</guid><dc:creator>Sarah McBride</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=31752</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/07/01/Straight-Off-the-Press_3A00_-We_2700_ve-Joined-the-PCI-Security-Standards-Council.aspx#comments</comments><description>&lt;p&gt;Yesterday we joined the Payment Card Industry (PCI) Security Standards Council as a new participating organization. For the full story, read the &lt;a href="http://www.blackbaud.com/default.aspx?pgpId=2531&amp;amp;PRID=264" class="" title="Blackbaud Joins PCI Security Standards Council "&gt;press release&lt;/a&gt;.&amp;nbsp;The Council&amp;#39;s goal is to ensure everyone involved with consumer payments protects their data.&amp;nbsp;As a participating organization, we have the opportunity to work directly with them&amp;nbsp;in the development of the PCI Data Security Standard (DSS) and other payment card data protection standards.&lt;br /&gt;&lt;br /&gt;This also means we will have access to the latest payment card security standards so we can share our feedback, keep you informed, and make sure our products are in&amp;nbsp;line with the standards.&amp;nbsp;In the coming months, we&amp;#39;ll continue to keep you in the loop via this blog, our &lt;a href="http://www.blackbaud.com/support/newsletters/supnewsletters.aspx" class="" title="support newsletters"&gt;support newsletters&lt;/a&gt;, and our new &lt;a href="http://forums.blackbaud.com/forums/199.aspx" class="" title="PCI-DSS forum"&gt;PCI-DSS forum&lt;/a&gt;. &lt;br /&gt;&lt;/p&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=31752" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category></item><item><title>New - PCI-DSS Forums!</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/06/20/new-pci-dss-forums.aspx</link><pubDate>Fri, 20 Jun 2008 20:27:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:31568</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=31568</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/06/20/new-pci-dss-forums.aspx#comments</comments><description>
&lt;p&gt;We have added a new Forum dedicated to PCI-DSS to Nonprofit Topics in the Nonprofit Industries Forums. You can subscribe to this forum to receive every post by clicking Edit Profile on the Forums or Blog page, and selecting the Email tab to first set the following options: 
&lt;/p&gt;
&lt;ul style="list-style-type:disc;"&gt;
&lt;li&gt;If you want to receive emails from other forum participants, select Yes to Receive Emails.&lt;/li&gt;

&lt;li&gt;If you want to receive emails in HTML format, select Yes to Receive rich (HTML) emails.&lt;/li&gt;

&lt;li&gt;If you want to be notified by email of new posts to forums/threads you have subscribed to as well as of any replies to one of your posts, select Yes to Enable Email Notifications of forum/thread subscriptions and replies to my posts.&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Once you have done this, click Forum Subscriptions in the right sidebar Shortcuts section to receive emails from the PCI-DSS. Click No next to the PCI-DSS Forum to change the option to Yes to receive emails.&lt;/p&gt;

&lt;p&gt;&lt;a href="http://forums.blackbaud.com/forums/199.aspx"&gt;Join the discussion&lt;/a&gt; today!&lt;/p&gt;
&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=31568" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category></item><item><title>Payment Card Industry Data Security Standards Overview</title><link>http://forums.blackbaud.com/blogs/pci/archive/2008/06/13/payment-card-industry-data-security-standards-overview.aspx</link><pubDate>Fri, 13 Jun 2008 14:36:00 GMT</pubDate><guid isPermaLink="false">f90a95a0-00e2-4810-8af8-0bbdde08f853:31404</guid><dc:creator>Douglas Clinton</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://forums.blackbaud.com/blogs/pci/rsscomments.aspx?PostID=31404</wfw:commentRss><comments>http://forums.blackbaud.com/blogs/pci/archive/2008/06/13/payment-card-industry-data-security-standards-overview.aspx#comments</comments><description>&lt;p style="MARGIN-BOTTOM:0px;"&gt;&lt;strong&gt;What is PCI DSS?&lt;/strong&gt;&lt;/p&gt;
&lt;p style="MARGIN-TOP:0px;"&gt;The Payment Card Industry Data Security Standard (PCI DSS) is a set of requirements developed by the major credit card companies to enhance credit card data security. All organizations that process, store, or transmit payment card data must be PCI DSS compliant or risk losing their ability to process credit card payments. &lt;/p&gt;
&lt;p style="MARGIN-BOTTOM:0px;"&gt;&lt;strong&gt;When is it happening?&lt;/strong&gt;&lt;/p&gt;
&lt;p style="MARGIN-TOP:0px;"&gt;Beginning in October 2008, any organization that requires a new merchant ID from credit card companies must be PCI DSS compliant. Beginning in October 2009, all organizations must be PCI DSS compliant to process credit cards. &lt;/p&gt;
&lt;p style="MARGIN-BOTTOM:0px;"&gt;&lt;strong&gt;How can I learn more?&lt;/strong&gt; &lt;/p&gt;
&lt;p style="MARGIN-TOP:0px;"&gt;For more information about PCI DSS compliance, visit &lt;a href="http://www.blackbaud.com/PCI"&gt;www.blackbaud.com/PCI&lt;/a&gt;. General information regarding PCI DSS, including a PCI DSS self-assessment questionnaire, can be found at &lt;a href="http://www.pcisecuritystandards.org/"&gt;www.pcisecuritystandards.org&lt;/a&gt;. &lt;/p&gt;
&lt;p&gt;In the coming months, we will provide additional information about how you can become PCI DSS compliant on this blog and in our &lt;a href="http://www.blackbaud.com/support/newsletters/supnewsletters.aspx"&gt;newsletters&lt;/a&gt;. We encourage you to subscribe to both:&lt;/p&gt;
&lt;blockquote&gt;&lt;img height="16" alt="RSS Feed" src="http://upload.wikimedia.org/wikipedia/commons/thumb/4/43/Feed-icon.svg/16px-Feed-icon.svg.png" width="16" border="0" /&gt;&amp;nbsp;&amp;nbsp;&lt;a href="http://forums.blackbaud.com/blogs/pci/rss.aspx"&gt;PCI Compliance blog RSS feed&lt;/a&gt; &lt;br /&gt;&lt;img height="16" alt="Information" src="http://www.blackbaud.com/images/support/news/info1.gif" width="16" border="0" /&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://www.blackbaud.com/profile/Subscriptions.aspx"&gt;Support newsletters&lt;/a&gt; &lt;/blockquote&gt;&lt;img src="http://forums.blackbaud.com/aggbug.aspx?PostID=31404" width="1" height="1"&gt;</description><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/Credit+Card+Security/default.aspx">Credit Card Security</category><category domain="http://forums.blackbaud.com/blogs/pci/archive/tags/PCI+DSS/default.aspx">PCI DSS</category></item></channel></rss>