We are a social service agency and our donor files, of course, contain private information which includes credit card information. Our third floor office is in a private building which is accessed through a controlled lobby. The donor filing system is in a door-less room in the rear portion of our floor. The filing cabinets are not locked.
Do other organizations lock their donor files? What level of security do you provide for your donor files? Thanks for your input. Karen
Karen-
If there are credit card numbers, then I believe you may be required to put them in a secure area to comply with PCI-DSS rules. We have our gift batch archives in a semi-secure room and are moving them into a more secure area shortly. Our main files are in PaperSave which is pretty secure. We're actually about to start a project for redacting credit card information that has been scanned into PaperSave over the last few years (ick!).
Mitch
Hi Mitch,
Would you mind sharing how you are planning to redact your cc info in PaperSave. Or better yet, how are you scanning cc info now to insure security/PCI compliance?
Thanks,
Christina