Verisec 10XPAY Cryptography as a Service – PCI DSS 4.0 compliant card payment security

Verisec International AB, a global pioneer in Cloud-based card payment security, announced today that Verisec 10XPAY Cryptography as a Service is compliant with the new version of the Payment Card Industry Data Security Standard (PCI DSS). The PCI DSS 4.0 is the latest criterion for protecting payment data, established from the PCI Security Standards Council (PCI SSC), a worldwide expert forum.

Stockholm, Sweden August 31st, 2024

By achieving PCI DSS 4.0 compliance, Verisec 10XPAY becomes one of the firsts in meeting the global baseline of technical and operational requirements, designed to protect payment data according to the latest standard version.

The Verisec 10XPAY service delivers entirely Cloud-based payment security that allows financial entities – including the largest banks, payment processors, and emerging fintechs – to have scalable, adaptable solutions and significantly lower costs over the years. Verisec 10XPAY’s integration with existing payment applications is seamless. It simplifies remote key management with Cloud-native tools and processes. Verisec 10XPAY significantly reduces the PCI compliance scope of its customer’s audits.

The PCI DSS 4.0 standard version, effective from the beginning of 2024, incorporated major changes compared to previous versions. Multi-factor authentication, password, e-commerce and phishing requirements have been expanded. It clarifies and assigns roles and responsibilities for each of the criteria, while also providing implementation guidelines. It leaves more room for organisations to remain compliant as payment technology evolves, while meeting security objectives. The PCI DSS 4.0 further clarifies validation and reporting options to support transparency and detail consistency and accuracy.

In addition to PCI DSS 4.0, the Verisec compliance portfolio includes PCI PIN and PCI P2PE compliant, Verisec 10XPAY Cloud HSM Decryption Solution, and KIF Services (Remote Key Injection).

Verisec is a worldwide leader in Cryptography as a Service and digital identity services, equipping entities and organisations to create secure payment flows and protect identities. Verisec offers the only platform with intelligent Cloud cryptography, a unique control plane that delivers remote key management, enabling users to “bring their own keys” (BYOK), supporting easy migration from traditional on-premises solutions and moreover, leaving full control in the hand of its customer.

Verisec has been a Principal Participation Organisation of the PCI SSC since March 2024.

Further information

Product page: https://www.verisecint.com/10xpay/

PCI SSC: https://www.pcisecuritystandards.org/

PCI DSS 4.0: https://blog.pcisecuritystandards.org/at-a-glance-pci-dss-v4-0