<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>CallGuard&#187; CallGuard makes any call recorder PCI DSS compliant</title>
	<atom:link href="http://www.callguard.co/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.callguard.co</link>
	<description>PCI DSS compliance for every call recording system</description>
	<pubDate>Fri, 30 Sep 2011 09:17:53 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Choose how far to de-scope your organisation from PCI DSS</title>
		<link>http://www.callguard.co/2011/09/choose-how-far-to-de-scope-your-organisation-from-pci-dss/</link>
		<comments>http://www.callguard.co/2011/09/choose-how-far-to-de-scope-your-organisation-from-pci-dss/#comments</comments>
		<pubDate>Mon, 12 Sep 2011 14:26:01 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[Press Release]]></category>

		<category><![CDATA[home page news]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=5059</guid>
		<description><![CDATA[Technology partners Veritape and ExoIS showcase CallGuard and PeepSafe™ at the PCI SSC North American Community Meeting in Scottsdale, Arizona.
Organisations taking payments by telephone and recording their calls, and who are looking to make their call recordings PCI DSS compliant, should look no further than CallGuard, from Veritape.
CallGuard delivers PCI DSS compliance to any call [...]]]></description>
			<content:encoded><![CDATA[<h2>Technology partners Veritape and ExoIS showcase CallGuard and PeepSafe™ at the PCI SSC North American Community Meeting in Scottsdale, Arizona.</h2>
<p>Organisations taking payments by telephone and recording their calls, and who are looking to make their call recordings PCI DSS compliant, should look no further than <a href="http://www.callguard.co" >CallGuard</a>, from <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">Veritape</a>.</p>
<p>CallGuard delivers <a href="http://www.callguard.co/callguard/" >PCI DSS compliance to any call recording system</a> by <a href="http://www.callguard.co/callguard/how-callguard-works/" >eliminating sensitive card data</a> from telephone conversations before they are recorded. It can also <a href="http://www.callguard.co/callguard/cut-contact-centre-fraud/" >prevent agents from seeing any card data on screen</a> and hence eliminate the potential for card data theft.</p>
<p>How does it work? Customers, when making payments by phone, enter their card details using their telephone keypad. CallGuard automatically detects and <a href="http://www.callguard.co/callguard/how-callguard-works/" >blocks DTMF tones</a> (containing the payment card data) from a call recorder. At the same time, CallGuard automatically enters the customer’s card details into the relevant fields on the Agent’s screen. It obscures the card details, so the Agent handling the call never sees the customer’s personal data. The end result is that you can fully observe PCI DSS call recording requirements and continue to record your calls.</p>
<p>However, Veritape’s technology extends wider than call recordings. Having been incorporated within the <a href="http://www.exois.com/managed-services/peepsafe-tm-secure-portal/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com/managed-services/peepsafe-tm-secure-portal/');" target="_blank">ExoIS PeepSafe™</a> solution, Veritape’s technology can also be used to help remove cardholder data from voice, mail and fax channels. It can also remove cardholder data from entire applications and network segments. This technology partnership gives organisations the ability to <a href="http://www.exois.com/managed-services/peepsafe-tm-secure-portal/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com/managed-services/peepsafe-tm-secure-portal/');" target="_blank">completely descope their corporate environment from PCI DSS</a>.</p>
<p><a href="http://www.exois.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com');" target="_blank">ExoIS</a> is a leading provider of information security, compliance services and products and a PCI Qualified Security Assessor Company (QSAC). It is the powerhouse behind PeepSafe™ 2.0, a cost effective, fully managed secure portal environment that incorporates encrypted email, fax, voice messages, online storage and the safe processing of cardholder data.</p>
<p><a href="http://www.exois.com/managed-services/peepsafe-tm-secure-portal/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com/managed-services/peepsafe-tm-secure-portal/');" target="_blank">PeepSafe™</a> can completely de-scope voice-only environments from PCI DSS, removing the risk of “at home agents.” It can also de-scope entire call centres, ensuring that corporate call recording systems are fully PCI DSS compliant, greatly reducing the risk of agent fraud. Incorporating a tokenization engine and integrating with any internal application, database and payment gateway, PeepSafe™ can be quickly implemented with minimal effect on existing business processes.</p>
<p>Together, CallGuard and PeepSafe™ deliver more choice to organisations looking to de-scope part or all of their operation from PCI DSS.</p>
<p><em>“Our technology partnership allows us to deliver a choice of unique services to a wide range of customers,”</em> says Cameron Ross, Veritape’s Managing Director. <em>“CallGuard works well for organisations wanting to ensure that their call recordings are PCI DSS compliant. PeepSafe’s™ powerful, fully-integrated reach means that organisations can de-scope themselves entirely from the demands of PCI DSS.  And both PeepSafe and CallGuard put the interests of the customer first, by ensuring that card holder data is robustly secure.”</em></p>
<p>- Ends -</p>
<p><br class="spacer_" /></p>
<p><strong>Notes for Editors:</strong></p>
<p><span><strong>About Veritape:</strong></span></p>
<ul>
<li>CallGuard makes recorded calls fully PCI compliant. Quick to implement, it works with any call recording system.</li>
<li>Veritape specialises in developing innovative, powerful, PCI DSS compliant call recording software solutions; we deliver cost-effective, flexible alternatives to traditionally expensive fixed hardware call recording solutions.</li>
<li>Veritape is the only call recording company accredited as a PCI DSS Participating Organisation. Well regarded within the call recording industry, we regularly give direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council.</li>
<li>Our clients include Jaguar, CPM, Exodus Travel, Intasure, PhotoBox and Mobile Mini.</li>
<li>For more information about Veritape visit us at <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">www.veritape.com</a>. For more information about Callguard, go to <a href="http://www.callguard.co" >www.callguard.co</a>. For interviews and case studies contact Cathy Gibbon, Marketing Manager on 0845 899 5500 x791.</li>
</ul>
<p><strong>About ExoIS:</strong></p>
<ul>
<li>Founded just before the new millennium in the heart of Silicon Valley, <a href="http://www.exois.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com');" target="_blank">ExoIS</a> provides Information Security and Compliance services and products, helping clients identify and mitigate the risks inherent in today’s increasingly interconnected business environments.</li>
<li>As a PCI Qualified Security Assessor, today its services include a wide range of PCI services and other security and compliance offerings, covering the full spectrum of clients’ information security requirements.</li>
<li>ExoIS also offers a range of managed services including secure cloud hosting, datacenter outsourcing, compliance SaaS solutions and storage services. Visit <a href="http://www.exois.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com');" target="_blank">www.exois.com</a> to find out more.</li>
</ul>
<p><br class="spacer_" /></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/09/choose-how-far-to-de-scope-your-organisation-from-pci-dss/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Meeting the requirements of Visa&#8217;s Technology Innovation Program (TIP) in call centres</title>
		<link>http://www.callguard.co/2011/08/meeting-the-requirements-of-visas-technology-innovation-program-tip-in-call-centres/</link>
		<comments>http://www.callguard.co/2011/08/meeting-the-requirements-of-visas-technology-innovation-program-tip-in-call-centres/#comments</comments>
		<pubDate>Fri, 26 Aug 2011 09:17:19 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[blog]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=5033</guid>
		<description><![CDATA[Visa Europe has been operating a Technology Innovation Program (TIP) since April 2011. The TIP is designed to reduce compliance assessment requirements for merchants processing most of their transactions through EMV (&#8221;chip and pin&#8221;).
As of 01 October 2012, the TIP will be active in the USA (PDF). To qualify, merchants in the USA need to meet these [...]]]></description>
			<content:encoded><![CDATA[<p>Visa Europe has been operating a <a title="Visa Technology Innovation Programme (TIP)" href="http://www.visaeurope.com/en/newsroom/news/articles/2011/technology_innovation_programm.aspx" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.visaeurope.com/en/newsroom/news/articles/2011/technology_innovation_programm.aspx');" target="_blank">Technology Innovation Program</a> (TIP) since April 2011. The TIP is designed to reduce compliance assessment requirements for merchants processing most of their transactions through EMV (&#8221;chip and pin&#8221;).</p>
<p>As of 01 October 2012, the TIP will be <a title="Visa Expands Technology Innovation Program for  U.S. Merchants to Adopt Dual Interface Terminals (PDF)" href="http://usa.visa.com/download/merchants/bulletin-tip-us-merchants-080911.pdf" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://usa.visa.com/download/merchants/bulletin-tip-us-merchants-080911.pdf');" target="_blank">active in the USA</a> (PDF). To qualify, merchants in the USA need to meet these requirements:</p>
<ol>
<li>The merchant must have validated PCI DSS compliance within the previous 12 months or have submitted to Visa (via their acquirer) a defined remediation plan for achieving compliance, based on a gap analysis.</li>
<li>The merchant must have confirmed that sensitive authentication data (i.e., full contents of magnetic stripe, CVV2 and/or PIN data) is not stored, as defined in the PCI DSS.</li>
<li>At least 75 percent* of the merchant’s total transaction count must originate from dual-interface (contact/contactless) enabled chip-reading device terminals.</li>
<li>The merchant must not be involved in a breach of cardholder data. A breached merchant may qualify for TIP if they have subsequently validated PCI DSS compliance.</li>
</ol>
<p>(* Visa Europe stipulates that this figure should be 95% for EU merchants.)</p>
<p>Over time, as EMV enters the US market, and device terminals are changed for those which support EMV, brick-and-mortar retailers could easily find that they&#8217;re achieving 75% of payments in dual-interface terminals.</p>
<p>But what about the remaining proportion, some of which may be processed through contact centres? It&#8217;s here that meeting the second Visa TIP requirement becomes a challenge. Let&#8217;s have a look at it again:</p>
<p style="padding-left: 30px;"><em>The merchant must have confirmed that sensitive authentication data (i.e., full contents of magnetic stripe, CVV2 and/or PIN data) is not stored, as defined in the PCI DSS.</em></p>
<p>Historically, this has proven a challenge for organisations of all sizes, in the contact centre environment. Under the PCI DSS requirements, CV2 data must not be stored at all, post-authorisation, in any format. This includes in <a title="Veritape call recording" href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">telephone call recordings</a>. So to ensure that the Visa TIP remains accessible to you, you need to remove CV2 information from your call recording environment, as a minimum.</p>
<p>Luckily, there are 5 ways in which you can do that. Some are easier than others, and some will not be relevant to your situation. We&#8217;ve put together a handy guide to help you decide which approach is best for you. You can read it here: <a href="http://www.callguard.co/2011/08/five-ways-to-make-call-recordings-pci-dss-compliant/" >http://www.callguard.co/2011/08/five-ways-to-make-call-recordings-pci-dss-compliant/</a>.</p>
<h2>One more thing</h2>
<p>If you process <span style="text-decoration: underline;">only</span> Visa transactions, you can stop reading now. Move along, nothing further to see.</p>
<p>Still here? Yes&#8230; because as <a title="Branden Williams" href="https://www.brandenwilliams.com/blog/2011/08/16/why-visas-tip-doesnt-matter/trackback/" onclick="javascript:pageTracker._trackPageview('/outbound/article/https://www.brandenwilliams.com/blog/2011/08/16/why-visas-tip-doesnt-matter/trackback/');" target="_blank">Branden Williams</a> points out, no merchant processes <span style="text-decoration: underline;">only</span> Visa transactions, right? It therefore seems unlikely that there would be any organisation which could actually use the TIP to reduce its assessment burden right now. However, we concur with Branden, and we hope (even expect?) that the other card brands will follow suit, and allow many merchants to reduce their compliance costs and burden in the near future.</p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/08/meeting-the-requirements-of-visas-technology-innovation-program-tip-in-call-centres/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Five ways to make call recordings PCI DSS compliant</title>
		<link>http://www.callguard.co/2011/08/five-ways-to-make-call-recordings-pci-dss-compliant/</link>
		<comments>http://www.callguard.co/2011/08/five-ways-to-make-call-recordings-pci-dss-compliant/#comments</comments>
		<pubDate>Tue, 16 Aug 2011 10:38:23 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[CallGuard]]></category>

		<category><![CDATA[blog]]></category>

		<category><![CDATA[call recording]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[software]]></category>

		<category><![CDATA[veritape]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=5029</guid>
		<description><![CDATA[

PCI DSS is becoming an accepted regulatory necessity. Differing interpretations of the guidelines can cause confusion to businesses seeking to become PCI DSS compliant.
There is no single approved method for making call recordings compliant. In fact, there are several PCI DSS compliant methods and, if you are looking for such a solution, you need to [...]]]></description>
			<content:encoded><![CDATA[<p><span></p>
<div>
<p>PCI DSS is becoming an accepted regulatory necessity. Differing interpretations of the guidelines can cause confusion to businesses seeking to become PCI DSS compliant.</p>
<p>There is no single approved method for making call recordings compliant. In fact, there are several PCI DSS compliant methods and, if you are looking for such a solution, you need to choose the option which best suits your business.</p>
<p>Here is an overview of which methods, when properly implemented, will make call recordings PCI DSS compliant:</p>
<p><span style="text-decoration: underline;"><strong><strong>These methods can work</strong></strong></span></p>
<p><strong><strong>1.<span> </span>Pause and resume.</strong></strong></p>
<p>The “pause and resume” method records the entire call apart from the sensitive authentication data. It is technically difficult to set up and tricky to maintain during future changes within your organisation.</p>
<p><strong><strong>2.<span> </span>Turn off your call recording.</strong></strong></p>
<p>Literally, switch off your call recorder. You will lose all the benefits associated with call recording such as training, customer service and compliance. This method cannot be used by businesses operating in some regulated financial sectors.</p>
<p><strong><strong>3.<span> </span>Transfer to an IVR.</strong></strong></p>
<p>Transfer calls to an automated payment card processing solutions such as an IVR. IVRs are not particular favourites with customers and they do require significant integration with back-end IT and telephony.</p>
<p><strong><strong>4.<span> </span>CallGuard.</strong></strong></p>
<p><a href="http://www.callguard.co" >CallGuard</a>, by Veritape, automatically detects and <a href="http://www.callguard.co/callguard/how-callguard-works/" >blocks DTMF tones</a> and therefore the payment card data from call recordings. Call recording continues as usual and no sensitive data is captured or stored in any format. It works with any call recording system.</p>
<p><strong><strong>5.<span> </span>Semafone.</strong></strong></p>
<p>Centrally masks the DTMF digits entered by a caller, so they are not recorded on the call recording system. Call recording continues as usual.</p>
</div>
<p></span>Visit <a href="http://www.callguard.co/pci-dss/compare/" >www.callguard.co/compare</a> to compare these methods in more detail.<span></p>
<div>
<p><br class="spacer_" /></p>
<p><span style="text-decoration: underline;">And for completeness, <a href="http://www.callguard.co/pci-dss/non-compliant-methods/" >these methods are non-PCI DSS compliant</a></span></p>
<p><strong><strong>1. Manual pause and resume.</strong></strong> The PCI DSS guidelines state that card data should be removed from calls automatically, not manually.</p>
<p><strong><strong>2. Encryption only.</strong></strong> The PCI DSS guidelines bar the storage of sensitive authentication data in any format, even if it has been encrypted.</p>
<p><strong><strong>3. Use speech recognition for removal after the recording has been made.</strong> </strong>It is tricky to detect and remove payment information (essentially numbers) without compromising other parts of the recording. If some payment information is missed, the recording is not PCI DSS compliant.</p>
<p><br class="spacer_" /></p>
<p><a href="http://www.callguard.co" >CallGuard</a>, by Veritape, will make any call recording system PCI DSS compliant, meaning that you can retain your existing call recording infrastructure. <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">Veritape</a> is the only call recording company credited as a PCI DSS Participating Organisation and we give regular direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council. We understand how PCI DSS impacts on your business.</p>
</div>
<p></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/08/five-ways-to-make-call-recordings-pci-dss-compliant/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Five urban legends about PCI DSS and call recording</title>
		<link>http://www.callguard.co/2011/08/five-urban-legends-about-pci-dss-and-call-recording/</link>
		<comments>http://www.callguard.co/2011/08/five-urban-legends-about-pci-dss-and-call-recording/#comments</comments>
		<pubDate>Tue, 09 Aug 2011 12:31:33 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[CallGuard]]></category>

		<category><![CDATA[blog]]></category>

		<category><![CDATA[call recording]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[data security]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[veritape]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=5015</guid>
		<description><![CDATA[As the PCI DSS directive has established itself, inevitably urban legends about it have also evolved, causing confusion for organisations and individuals alike.
One of Veritape’s core values is to deliver straightforward technology which is easy to both understand and use. In our opinion, the confusion around PCI DSS is not necessary and we think that [...]]]></description>
			<content:encoded><![CDATA[<p>As the PCI DSS directive has established itself, inevitably urban legends about it have also evolved, causing confusion for organisations and individuals alike.</p>
<p>One of Veritape’s core values is to deliver straightforward technology which is easy to both understand and use. In our opinion, the confusion around PCI DSS is not necessary and we think that it diverts attention away from its primary objective of protecting customers and payment card data. In an effort to set the record straight, here are clarifications to five common urban legends about PCI DSS and call recording.</p>
<p><br class="spacer_" /></p>
<p><strong>1. We can encrypt the call recordings</strong></p>
<p>It is a fact that if the PAN (that’s the long number of the front of the card) is stored in call recordings, it must be encrypted. However, once a payment has been authorised, the three- or four-digit CV2 security number on the card must not be stored at all.</p>
<p>Encryption is not an adequate tool to prevent the CV2 from being stored because, by design, every call recording system which uses encryption also uses decryption to give supervisors, trainers and other staff members the ability to listen to calls. Yes, encryption is used in some of your other payment processes, like the secure payment connection used in web browsers.</p>
<p>But it&#8217;s the fact that both encryption and decryption abilities sit side by side in the same environment (i.e. your call centre) which makes encryption for sensitive authentication data inappropriate. Point 3.2 of the PCI DSS Requirements and Security Assessment Procedures make this very plain: &#8220;Do not store sensitive authentication data after authorization (even if encrypted)&#8221;.</p>
<p><br class="spacer_" /></p>
<p><strong><strong>2. I don’t have to comply yet; I’m a small business so I don’t have to comply</strong></strong></p>
<p>All deadlines for compliance have passed. All organisations, irrespective of their size, are now required to be PCI DSS compliant.</p>
<p><br class="spacer_" /></p>
<p><strong><strong>3. PCI DSS isn’t an issue for us as you can’t mine data from audio recordings</strong></strong></p>
<p>The reality is that card data is easily mined from audio recordings, using any number of free or paid-for tools. As technology becomes more sophisticated, it is becoming easier to do so - there are plenty of speech recognition software tools available which will index and locate card data from within audio recordings.</p>
<p><br class="spacer_" /></p>
<p><strong><strong>4. Using an IVR system will make me PCI DSS compliant</strong></strong></p>
<p>Not necessarily. While there are PCI DSS compliant IVR systems on the market, many of them do not comply. Using an external IVR to handle card payments may just move the problem around. Sometimes calls handled in this way are recorded too! Furthermore, sometimes the IVR does not prevent card data from being sent back to your site which means that your on-site recording systems still capture the card data.</p>
<p>You may still need to employ a method of making call recordings associated with payments PCI DSS compliant. (On a practical note, you also need to consider the impact on customer service satisfaction levels caused by IVRs – many customers do not like them.)</p>
<p><br class="spacer_" /></p>
<p><strong><strong>5. Audio data breaches in contact centres don&#8217;t happen so the risk of a fine is minimal</strong></strong></p>
<p>The simple fact is that if you were to suffer a data breach as a result of information stored in call recordings, you would leave your business open to fines from your card acquirer.</p>
<p>It&#8217;s true that contact centre data breaches involving audio are not in the public eye, but they certainly do happen. The UK&#8217;s largest two acquiring banks have separately reported to Veritape that their customers have suffered audio data breaches and been fined for doing so. In addition, in some US states, where data breach notification is being introduced, data breaches are becoming more widely reported – read about Netflix’s recent headache at <a href="http://www.callguard.co/blog"  target="_blank">www.callguard.co/blog</a>. Strict confidentiality agreements between card issuers, acquirers and merchants, coupled with a lack of mandatory data breach requirements, largely account for why audio data breaches aren’t in the public eye – but they do occur.</p>
<p><br class="spacer_" /></p>
<p>So there you go: clarification on five urban legends about <a href="http://www.callguard.co/pci-dss/how-do-i-become-pci-dss-compliant-for-call-recordings/"  target="_blank">PCI DSS and call recording</a>.  If you have found this information about PCI DSS and call recording useful, visit our website at <a href="http://www.callguard.co"  target="_blank">www.callguard.co</a>. CallGuard, by <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">Veritape</a>, will make your existing call recording system PCI DSS compliant, ensure that payment card data remains secure and minimise the risk of card data theft.</p>
<p><a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">Veritape</a> is the only call recording company accredited as a PCI DSS Participating Organisation, giving regular direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council. We understand how PCI DSS affects your business.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/08/five-urban-legends-about-pci-dss-and-call-recording/feed/</wfw:commentRss>
		</item>
		<item>
		<title>PCI DSS + call recording - key facts in plain English</title>
		<link>http://www.callguard.co/2011/07/pci-dss-and-call-recording-facts-in-plain-english/</link>
		<comments>http://www.callguard.co/2011/07/pci-dss-and-call-recording-facts-in-plain-english/#comments</comments>
		<pubDate>Tue, 26 Jul 2011 16:48:27 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[CallGuard]]></category>

		<category><![CDATA[blog]]></category>

		<category><![CDATA[call recording]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<category><![CDATA[veritape]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=4990</guid>
		<description><![CDATA[
The PCI DSS call recording guidelines are maturing. In parallel, conflicting and sometimes inaccurate interpretations of the directive are becoming more prevalent.
The end customer, for whom the guidelines have been introduced, appears to being lost in the mix. And for a business seeking to sort out their PCI DSS compliance needs, it is becoming a [...]]]></description>
			<content:encoded><![CDATA[<p><br class="spacer_" /></p>
<p>The PCI DSS call recording guidelines are maturing. In parallel, conflicting and sometimes inaccurate interpretations of the directive are becoming more prevalent.</p>
<p>The end customer, for whom the guidelines have been introduced, appears to being lost in the mix. And for a business seeking to sort out their PCI DSS compliance needs, it is becoming a needlessly confusing place to be.</p>
<p>One of <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">Veritape’s</a> core values is to deliver straightforward technology which is easy to understand and use. We have been clocking the growing confusion around PCI DSS with concern as, in our opinion, it is unnecessary.  So with the objective of informing instead of confusing, we have laid out some key facts, explained in plain English, about <a href="http://www.callguard.co/pci-dss/how-does-pci-dss-affect-my-business/" >PCI DSS and what it means for business taking payments by phone and recording calls.</a> Here they are:</p>
<p>1.  The <a href="http://www.callguard.co/pci-dss/" >PCI DSS guidelines</a> do apply to your business if it takes card payments by phone and records its calls</p>
<p>2.  These guidelines have been put in place to protect your customers’ card data and to reduce the risk of credit card fraud. It is a customer centric measure and of course, happy customers stick around, so ultimately, PCI DSS can be good for your business</p>
<p>3.  The PCI DSS guidelines specify that after a payment has been authorised, the sensitive authentication data (i.e. the three- or four- digit CV2 security number on the card) are not stored in any format. That means not in stored data files, not in recorded calls, not in a spreadsheet, not in an email and not scribbled down on paper whilst taking a call.</p>
<p>4.  If you store the PAN (that’s the long number on the front of the card) then you need to ensure it’s encrypted. However, encrypting the CV2 is not acceptable – you simply can’t store it at all.</p>
<p>5.  The PCI DSS guidelines don’t say that agents cannot be involved in taking a card payment over the phone. They do recommend that you should consider ways of preventing an agent who takes card payments by phone from being able to see sensitive card data on their screen.</p>
<p>6.  There is no approved method for making your business’ call recordings PCI DSS compliant. There are several ways to meet the guidelines but you will need to choose what works best for your business. Compare these methods of making call recordings PCI DSS compliant at www.callguard.co/compare.</p>
<p>So there you go: six uncomplicated key facts about PCI DSS and call recording.</p>
<p><a href="http://www.callguard.co" >CallGuard</a>, by Veritape, will make any call recording system PCI DSS compliant, meaning that you can retain your existing call recording infrastructure. <a href="http://veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://veritape.com');" target="_blank">Veritape</a> is the only call recording company credited as a PCI DSS Participating Organisation and we give regular direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council. We understand how PCI DSS impacts on your business. Visit <a href="http://www.callguard.co" >www.callguard.co</a> for more information.</p>
<p><br class="spacer_" /></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/07/pci-dss-and-call-recording-facts-in-plain-english/feed/</wfw:commentRss>
		</item>
		<item>
		<title>A big well done to CPM</title>
		<link>http://www.callguard.co/2011/07/a-big-well-done-for-cpm/</link>
		<comments>http://www.callguard.co/2011/07/a-big-well-done-for-cpm/#comments</comments>
		<pubDate>Mon, 18 Jul 2011 13:43:38 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[CallGuard]]></category>

		<category><![CDATA[blog]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<category><![CDATA[veritape]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=4943</guid>
		<description><![CDATA[Congratulations to our customer, CPM. CPM&#8217;s Pan-European, multi-channel contact centre of excellence, based in Barcelona has recently received the accolade of full PCI DSS accreditation. Achieving complete PCI DSS compliance has enabled CPM to enhance its existing service provision and offer prospective new clients the use of a fully accredited and secure PCI environment. Follow [...]]]></description>
			<content:encoded><![CDATA[<p>Congratulations to <a href="http://www.callguard.co/callguard-customers/" >our customer</a>, <a href="http://www.cpm-int.com/home.html" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.cpm-int.com/home.html');" target="_blank">CPM</a>. CPM&#8217;s<span> Pan-European, multi-channel contact centre of excellence, based in Barcelona has recently received the accolade of full <a href="http://www.callguard.co/pci-dss/" >PCI DSS</a> accreditation. </span><span>Achieving complete PCI DSS compliance has enabled CPM to enhance its existing service provision and offer prospective new clients the use of a fully accredited and secure PCI environment. <a href="http://www.callcentreclinic.com/news/call-centre-solutions/cpms-pan-european-contact-centre-attains-pci-dss-accreditation-45581.htm" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.callcentreclinic.com/news/call-centre-solutions/cpms-pan-european-contact-centre-attains-pci-dss-accreditation-45581.htm');" target="_blank">Follow this link</a> for more information about CPM&#8217;s PCI DSS accreditation.</span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/07/a-big-well-done-for-cpm/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Veritape and Ground Labs partnership improves PCI DSS compliance for call centre customers</title>
		<link>http://www.callguard.co/2011/07/ground-labs-and-veritape-partnership-improves-pci-dss-compliance-for-call-centre-customers/</link>
		<comments>http://www.callguard.co/2011/07/ground-labs-and-veritape-partnership-improves-pci-dss-compliance-for-call-centre-customers/#comments</comments>
		<pubDate>Mon, 11 Jul 2011 14:35:05 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[Press Release]]></category>

		<category><![CDATA[home page news]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=4928</guid>
		<description><![CDATA[

Veritape and Ground Labs are pleased to announce a partnership which will improve PCI DSS compliance for call centre customers by keeping contact centres secure and reducing fraud.
CallGuard, introduced to the market in 2010, has proven to be a significant development in the area of PCI DSS compliance for recorded telephone calls. It works with any call [...]]]></description>
			<content:encoded><![CDATA[<p><br class="spacer_" /></p>
<div>
<p><strong>Veritape and Ground Labs are pleased to announce a partnership which will improve PCI DSS compliance for call centre customers by keeping contact centres secure and reducing fraud.</strong></p>
<p><a href="http://www.callguard.co" >CallGuard</a>, introduced to the market in 2010, has proven to be a significant development in the area of PCI DSS compliance for recorded telephone calls. It <a href="http://www.callguard.co/callguard/compatible/" >works with any call recording system</a> and makes recorded calls fully PCI DSS compliant by removing sensitive cardholder data. Historically, contact centre operators have found this difficult to do.</p>
<p>Stephen Cavey, Director of Corporate Development at Ground Labs, says <em><em>&#8220;When choosing to work closely with a partner we must ensure they are market leaders in their respective product category. Veritape’s CallGuard solution is a clear leader in contact centre solutions by providing the ability to eliminate cardholder data from contact centre agents&#8217; screens and call recordings, eliminating the possibility of fraud. Working with Veritape to combine our respective capabilities offers call centres a rapid path to achieve ongoing PCI compliance.&#8221;</em></em></p>
<p><a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">Ground Labs</a> is renowned for <a href="http://www.groundlabs.com/products" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/products');" target="_blank">Card Recon</a> and <a href="http://www.groundlabs.com/products" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/products');" target="_blank">Enterprise Recon</a>, its <a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">cardholder data discovery</a> software solutions for <a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">PCI DSS</a> compliance. UK-based Veritape is a leader in the field of contact centre PCI DSS compliance for call recordings, through its CallGuard products. The partnership will ensure that customers of both organisations will be able to further descope their call centre operations from PCI compliance and remove card data from their environment.</p>
<p>Ground Labs’ Card Recon and Enterprise Recon solutions are powerful tools that will accurately detect <a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">cardholder data</a> stored within contact centre environments. Contact centres typically accept payment via telephone, email and by fax. Ensuring that cardholder data is identified properly, and then stored securely, is a constant challenge in this environment.</p>
<p>Cameron Ross, Managing Director of Veritape, explains <em><em>&#8220;We first met with Ground Labs at the PCI London conference in January this year and were immediately impressed. Since then, we have worked closely together, on a number of initiatives and opportunities, to introduce their technology to our customer base. Many of our customers have asked for a simple, effective method of finding all card data in their environment. Ground Labs are the market leaders in this area. The Card Recon and Enterprise Recon solutions help our customers make sure that they are correctly handling sensitive data under the PCI DSS requirements. &#8220;</em></em></p>
<p>The partnership between Ground Labs and Veritape includes the introduction of both companies&#8217; technologies to each other&#8217;s customer base and also encompasses development work on additional products.</p>
<p>Stephen Cavey says <em><em>&#8220;Veritape&#8217;s technical development on our shared product pipeline is impressive, and we are excited at the prospect of working together to deliver secure cardholder data solutions to the contact centre industry.”</em></em></p>
<p><br class="spacer_" /></p>
<p>- ends –</p>
<p><br class="spacer_" /></p>
<p><strong><strong>Notes for Editors:</strong></strong></p>
<p><strong><strong>About Veritape</strong></strong></p>
<p>•<span> </span>Veritape’s <a href="http://www.callguard.co" >CallGuard</a> technology makes recorded calls fully PCI compliant. Quick to implement, it works with any call recording system.</p>
<p>•<span> </span>Veritape specialises in developing innovative, powerful, PCI DSS compliant <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">call recording software solutions</a>; we deliver cost-effective, flexible alternatives to traditionally expensive fixed hardware call recording solutions.</p>
<p>•<span> </span>We are the only call recording company accredited as a PCI DSS Participating Organisation. Well regarded within the call recording industry, we regularly give direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council.</p>
<p>•<span> </span>Our clients include Jaguar, CPM, Exodus Travel, Intasure, PhotoBox and Mobile Mini.</p>
<p>•<span> </span>For more information about CallGuard visit <a href="http://www.callguard.co"  target="_blank">www.callguard.co</a>. For more information about Veritape visit us at <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');">www.veritape.com</a>. For interviews and case studies contact Cathy Gibbon, Marketing Manager on 0845 899 5500.</p>
<p><br class="spacer_" /></p>
<p><strong><strong>About Ground Labs</strong></strong></p>
<p>Ground Labs is a global leader in the development of security and auditing software solutions for the payment card industry. Its flagship products, <a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">Card Recon</a> and <a href="http://www.groundlabs.com/" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com/');" target="_blank">Enterprise Recon</a>, identify data storage risks on thousands of computer systems worldwide, helping companies prevent security breaches that result in the theft of customers’ credit and debit card numbers. For more information and product demos, visit <a href="http://www.groundlabs.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.groundlabs.com');" target="_blank">www.groundlabs.com</a>.</p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/07/ground-labs-and-veritape-partnership-improves-pci-dss-compliance-for-call-centre-customers/feed/</wfw:commentRss>
		</item>
		<item>
		<title>What does CallGuard have in common with jellyfish and coloured stones?</title>
		<link>http://www.callguard.co/2011/07/what-does-callguard-have-in-common-with-jellyfish-and-coloured-stones/</link>
		<comments>http://www.callguard.co/2011/07/what-does-callguard-have-in-common-with-jellyfish-and-coloured-stones/#comments</comments>
		<pubDate>Tue, 05 Jul 2011 11:09:48 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[CallGuard]]></category>

		<category><![CDATA[blog]]></category>

		<category><![CDATA[call recording]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[home page news]]></category>

		<category><![CDATA[pci dss]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[veritape]]></category>

		<guid isPermaLink="false">http://www.callguard.co/?p=4924</guid>
		<description><![CDATA[They all use types of filter.
Nuclear power plant filter: stops jellyfish - www.bbc.co.uk/news/uk-scotland-edinburgh-east-fife-13971005
Chelsea filter: stops particular wavelengths of light, to assist the identification of coloured stones - http://en.wikipedia.org/wiki/Chelsea_filter 
Wimbledon Net Mix: quietens the &#8220;grunt&#8221; - http://www.bbc.co.uk/5live/wimbledon/netmix
CallGuard Filter: stops your credit card data being stored in call recordings - http://www.callguard.co/callguard
]]></description>
			<content:encoded><![CDATA[<p>They all use types of filter.</p>
<p>Nuclear power plant filter: stops jellyfish - <a href="http://www.bbc.co.uk/news/uk-scotland-edinburgh-east-fife-13971005" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.bbc.co.uk/news/uk-scotland-edinburgh-east-fife-13971005');" target="_blank">www.bbc.co.uk/news/uk-scotland-edinburgh-east-fife-13971005</a></p>
<p>Chelsea filter: stops particular wavelengths of light, to assist the identification of coloured stones - <a href="http://en.wikipedia.org/wiki/Chelsea_filter" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://en.wikipedia.org/wiki/Chelsea_filter');" target="_blank">http://en.wikipedia.org/wiki/Chelsea_filter </a></p>
<p>Wimbledon Net Mix: quietens the &#8220;grunt&#8221; - <a href="http://www.bbc.co.uk/5live/wimbledon/netmix" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.bbc.co.uk/5live/wimbledon/netmix');" target="_blank">http://www.bbc.co.uk/5live/wimbledon/netmix</a></p>
<p>CallGuard Filter: stops your credit card data being stored in call recordings - <a href="http://www.callguard.co/callguard"  target="_blank">http://www.callguard.co/callguard</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/07/what-does-callguard-have-in-common-with-jellyfish-and-coloured-stones/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Veritape and ExoIS partnership de-scopes contact centres from PCI DSS</title>
		<link>http://www.callguard.co/2011/06/veritape-and-exois-partnership-completely-de-scopes-contact-centres-from-pci-dss/</link>
		<comments>http://www.callguard.co/2011/06/veritape-and-exois-partnership-completely-de-scopes-contact-centres-from-pci-dss/#comments</comments>
		<pubDate>Tue, 14 Jun 2011 11:42:55 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[Press Release]]></category>

		<category><![CDATA[home page news]]></category>

		<guid isPermaLink="false">http://callguard.co/?p=4902</guid>
		<description><![CDATA[Veritape is delighted to announce that its CallGuard plug-and-play technology, which makes any call recorder PCI DSS compliant, is now a core part of ExoIS’ updated PeepSafe portal.

ExoIS, a PCI Qualified Security Assessor Company (QSAC), is a leading US provider of information security and compliance services and products. ExoIS is the powerhouse behind PeepSafe, the [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Veritape is delighted to announce that its CallGuard plug-and-play technology, which makes any call recorder PCI DSS compliant, is now a core part of ExoIS’ updated PeepSafe portal.</strong></p>
<div>
<p><a href="http://www.exois.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.exois.com');" target="_blank">ExoIS</a>, a PCI Qualified Security Assessor Company (QSAC), is a leading US provider of information security and compliance services and products. ExoIS is the powerhouse behind PeepSafe, the cost-effective secure portal environment for encrypted email, fax and voice messages, online storage and the safe processing of cardholder data.</p>
<p>UK-based Veritape is an expert in bringing PCI compliance to the contact centre sector, having provided call recording solutions for more than a decade. Its <a href="http://www.callguard.co" >CallGuard</a> technology works with any call recording system, ensuring that all recorded calls are PCI compliant.</p>
<p>Contact centre environments present a real challenge for operators because of high staff turnover and the introduction of malware and viruses from a multitude of different sources. Consequently, maintaining a secure desktop environment and stopping the theft of card data is challenging. The combination of PeepSafe and CallGuard achieves this by completely de-scoping the agent desktop and removing all card data from it. And because the resulting application spans emails, faxes, online storage and voice data, contact centres can, for the first time, totally eliminate card data from their environment.</p>
<p>By deploying PeepSafe, companies can de-scope entire parts of their organization and dramatically reduce their PCI footprint by ensuring that cardholder information is not accidentally re-introduced into their environment.  And the ability to reduce the scope of PCI DSS by using software delivered on demand is unique to PeepSafe.</p>
<p>Ruth Xovox, Chief Compliance Strategist at ExoIS, says <em>“CallGuard’s addition to our PeepSafe portal means it adds considerable value to the contact centre industry. We are delighted to be working with Veritape and value their considerable expertise and experience.”</em></p>
<p>Already widely in use, PeepSafe takes companies’ ability to de-scope entire functions and network segments to a completely new level.  <em>“As we’ve seen from recent high-profile breaches, it is so important that contact centers improve data security and eliminate sensitive cardholder data from their environment. PeepSafe coupled with CallGuard is the simplest and quickest way for companies to comply with PCI DSS guidelines on call recording and to de-scope” says  Cameron Ross, Managing Director of Veritape. “We are proud to be helping to eliminate fraud and adding value to our customers by partnering with ExoIS.”</em></p>
<p>- Ends –</p>
<p><strong>Notes for Editors:</strong></p>
<p>About Veritape:</p>
<p>•<span> </span><a href="http://www.callguard.co" >CallGuard</a> makes recorded calls fully PCI compliant. Quick to implement, it works with any call recording system.</p>
<p>•<span> </span>Veritape specialises in developing innovative, powerful, PCI DSS compliant call recording software solutions; we deliver cost-effective, flexible alternatives to traditionally expensive fixed hardware call recording solutions.</p>
<p>•<span> </span>Veritape is the only call recording company accredited as a PCI DSS Participating Organisation. Well regarded within the call recording industry, we regularly give direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council.</p>
<p>•<span> </span>Our clients include Jaguar, CPM, Exodus Travel, Intasure, PhotoBox and Mobile Mini.</p>
<p>•<span> </span>For more information about Veritape visit us at <a href="http://www.veritape.com" onclick="javascript:pageTracker._trackPageview('/outbound/article/http://www.veritape.com');" target="_blank">www.veritape.com</a>. For interviews and case studies contact Cathy Gibbon, Marketing Manager on 0845 899 5500 x791.</p>
<p><br class="spacer_" /></p>
<p><strong>About ExoIS:</strong></p>
<p>•<span> </span>Founded just before the new millennium in the heart of Silicon Valley, ExoIS provides Information Security and Compliance services and products, helping clients identify and mitigate the risks inherent in today’s increasingly interconnected business environments.</p>
<p>•<span> </span>As a PCI Qualified Security Assessor, today its services include a wide range of PCI services and other security and compliance offerings, covering the full spectrum of clients’ information security requirements.</p>
<p>•<span> </span>ExoIS also offers a range of managed services including secure cloud hosting, datacenter outsourcing, compliance SaaS solutions and storage services.</p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/06/veritape-and-exois-partnership-completely-de-scopes-contact-centres-from-pci-dss/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Veritape and Novo Technologies announce joint partnership</title>
		<link>http://www.callguard.co/2011/06/veritape-and-novo-technologies-announce-joint-partnership/</link>
		<comments>http://www.callguard.co/2011/06/veritape-and-novo-technologies-announce-joint-partnership/#comments</comments>
		<pubDate>Thu, 09 Jun 2011 15:42:18 +0000</pubDate>
		<dc:creator>veritape</dc:creator>
		
		<category><![CDATA[Press Release]]></category>

		<category><![CDATA[home page news]]></category>

		<guid isPermaLink="false">http://callguard.co/?p=4862</guid>
		<description><![CDATA[CallGuard brings PCI DSS compliance solutions to North American call centres through new Veritape and Novo Technologies joint partnership.

Veritape, the UK based supplier of PCI compliant call recording solutions is delighted to announce a joint partnership with Canadian based Novo Technologies that will see the inclusion of CallGuard™ in its NovoPCI™ solution portfolio. CallGuard delivers [...]]]></description>
			<content:encoded><![CDATA[<p><strong>CallGuard brings PCI DSS compliance solutions to North American call centres through new Veritape and Novo Technologies joint partnership.</strong></p>
<div class="entry">
<p>Veritape, the UK based supplier of PCI compliant call recording solutions is delighted to announce a joint partnership with Canadian based Novo Technologies that will see the inclusion of CallGuard™ in its NovoPCI™ solution portfolio. CallGuard delivers PCI DSS compliance to any call recording system by eliminating sensitive card data from telephone conversations before they are recorded.</p>
<p>The background: to help to counter payment card fraud, the payment card industry (PCI) has established a single set of Payment Card Industry Data Security Standard (PCI DSS) standards.  Key highlights from these standards for companies that use call recording solutions include the imperative that no sensitive card data is to be stored, the statement that encrypting sensitive card data on its own is not a sufficient answer and the recommendation that companies should look towards solutions where agents do not enter the card data (rather, the customer does).. CallGuard ticks all three boxes.</p>
<p>Veritape and Novo Technologies’ complimentary partnership combines the recognized expertise of two experienced players in the call recording industry: Veritape, the only call recording company accredited as a PCI DSS Participating Organisation, delivers proven PCI compliant call recording solutions and Novo Technologies is a leading innovator and supplier of flexible, cost-effective and adaptable call recording solutions. This powerful combination now gives organizations access to a suite of high-performance solutions that target PCI DSS compliance.</p>
<p>CallGuard is compatible with any call recording system. Incredibly simple to install, it provides a proven, effective solution that will make any business using any call recording system PCI DSS compliant. With CallGuard, customers communicate their payment card details by using their telephone keypad and these key presses generate “DTMF tones” through the telephone. CallGuard automatically detects and blocks DTMF tones (and therefore the payment card data) from the call recording. Concurrently CallGuard automatically enters the customer’s card details into the relevant fields on the Agent’s screen, obscured with ‘***’ asterisks or similar just like a password field, meaning that the Agent handling the call does not see the card data. This means that the customer is always on the line throughout the call, allowing the Agent to remain fully in control of the conversation and customer service - unlike some PCI compliant call recording solutions, there is no external IVR involved.</p>
<p>Cameron Ross, Veritape’s Managing Director said:</p>
<p><em>“For the first time, any business which already owns a call recording system can quickly and easily ‘bolt on’ PCI DSS compliance, by using CallGuard. Veritape is passionate about delivering high quality, PCI DSS compliant call recording solutions. We are delighted to announce our partnership with Novo Technologies, well known as an industry leader with a real focus on service and quality.”</em></p>
<p><em>“CallGuard’s unique technology allows every call center to rapidly comply with the PCI DSS requirements without breaking the bank.”</em> said Louis Turmel, President and CEO of Novo Technologies inc. <em>“Novo endeavours to partner with the best in the industry.  Today’s announcement is especially important to us since our customers and those that we serve in various markets are looking for cost-effective solutions to ensure higher performance when addressing compliance requirements.”</em></p>
<p>- Ends -</p>
<p><strong>About Veritape:</strong></p>
<ul>
<li>Veritape CallGuard makes recorded calls fully PCI compliant. Quick to implement, it works with any call recording system.</li>
<li>Veritape specialises in developing innovative, powerful, PCI DSS compliant call recording software solutions; we deliver cost-effective, flexible alternatives to traditionally expensive fixed hardware call recording solutions.</li>
<li>Veritape is the only call recording company accredited as a PCI DSS Participating Organisation. Well regarded wthin the call recording industry, we regularly give direct feedback on our customers’ PCI compliance challenges and insights to the PCI Council.</li>
<li>Our clients include Jaguar, CPM, Exodus Travel, Intasure, PhotoBox and Mobile Mini.</li>
<li>For more information about Veritape visit us at www.veritape.com. For interviews and case studies contact Cathy Gibbon, Marketing Manager on 0845 899 5500.</li>
</ul>
<p><strong>About Novo Technologies:</strong></p>
<ul>
<li>Novo Technologies is a leading innovator and supplier of flexible, cost-effective and adaptable call recording and quality monitoring solutions for contact centers.</li>
<li>For over 15 years, Novo Technologies’ call recording solutions have been used to build hundreds of compliance and quality management applications. With its leadership in the development and integration of new software solutions, Novo dedicates itself to helping organizations proactively and effectively capture and manage corporate transactional content. Consequently, organizations are able to extract business intelligence from customer interactions, thus providing their clientele with the best customer experience.</li>
<li>Novo’s solutions are implemented in call centers of all sizes coming from a variety of industries in North America. For more information about Novo Technologies, please visit us at www.novotechnologies.com.</li>
</ul>
</div>
<p><br class="spacer_" /></p>
]]></content:encoded>
			<wfw:commentRss>http://www.callguard.co/2011/06/veritape-and-novo-technologies-announce-joint-partnership/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

