I am new here: What are my first steps?
First of all: Welcome to the PCI Platform of usd AG. Please follow the steps listed below to use the Platform to manage and achieve your PCI DSS compliance.
Note: Have you registered with usd AG using your merchant bank's registration form? Then the steps from this article [link] apply to you. If you have registered directly with usd AG, read on now:
STEP 1: Get started with your PCI classification.
After logging in to the PCI Platform, you will find the "PCI Classification" function in the "Security Scans and Services" section. There we have stored questions for you about your individual handling of credit card data. Answering the questions forms the basis for determining the scope of your PCI DSS certification.
STEP 2: Use the self assessment to define your requirements.
Under "Security Scans and Services" you will find the function "Self-Assessment-Questionnaires". These are Self-Assessment Questionnaires and are abbreviated SAQ. To find the SAQ that is relevant for you, our SAQ wizard will guide you through this Self-Assessment. As a result, you will receive the SAQ that is appropriate for your company. Please complete the Questionnaire. According to PCI DSS regulations, it is necessary to use the appropriate SAQ per card acceptance channel "E-Commerce", "MOTO" (Mail Order/Telephone Order) and/or "POS" (Point of Sale).
STEP 3: Do you need an ASV scan for PCI DSS compliance?
The information you provide in the SAQ (status: compliant) determines whether you are required to perform ASV scans according to PCI DSS. If you are not required to perform an ASV scan, no further steps are necessary.
If ASV scans are required to achieve your PCI DSS compliance, you can specify your scope, order services and schedule the scans via the Platform under "Security Scans and Services".
Is there a way that multiple people can access one account and be informed about the status of the scans?
Only one email address can be specified for access to the PCI Platform. If several people are to be able to access the account and be informed about the status of the scan, we recommend that you set up your own email address including mailbox (e.g.: asv-scans@company.de) and use this email address to access the account. Communication will also take place via this email address, so that you can determine who should have access to the Platform as well as to the internal mailbox.
I need assistance with my PCI DSS compliance verifiction. What support or consulting does usd AG offer?
Our PCI DSS security experts are available to help you with specific questions on PCI DSS through individually conducted consulting packages via telephone or web conference. Please feel free to inquire about our consulting services.
I accidentally entered the wrong data during registration. How can I correct this?
Log in to the usd PCI Platform and select the button under the "Company Profile" section. Here you can change most data concerning your customer account. This includes, for example, changes that affect address, billing address, phone number, contact person, etc. If your company name has changed, please contact the PCI Competence Center at pci@usd.de.
The name of my company has changed. How can I update it?
The PCI Competence Center will be happy to make this change for you. To do so, please send us an e-mail to pci@usd.de and tell us the new company name. You can update your address, billing address, phone number, contact person etc. on the platform yourself.
My data has changed, what do I have to do?
Log in to the usd PCI Platform and select the "My Account" section. Under "Company Profile" you can change most data related to your customer account.
- Under "Company data", you can update general data of your company. Please verify that you have entered your current VAT ID (only for companies from the EU, except Germany). If your company name has changed, please contact the PCI Competence Center at pci@usd.de.
- Under "Contact Person data" you specify the details of the person who is the main contact for us in the context of your PCI DSS compliance. In addition, you can adjust the language settings for communication here.
- Under "Addresses" you can edit your billing address.
The language settings are not updating even though I selected a specific language.
Make sure you have cookies enabled in your internet browser.
Can several people access one account?
No, unfortunately this is not possible. Only one email address can be created per account.
I forgot my password. What do I do now?
On the "Login" page you will find the "Forgotten password" function. Just select it and you will receive a new password from us by email.
Invoices should be sent to a specific email address. Where can I specify this?
The PCI Competence Center will be happy to store an email address for you to which we send invoices. To do this, please send us an email to pci@usd.de with your details for sending invoices. Please check in your customer account whether the invoice address is still correct and make changes yourself if necessary.