Cotton Traders
Cotton Traders achieved PCI compliance in October

Cotton Traders tightens credit card protections

Retailer deploys 'tokenisation' middleware

Written by Angelica Mari

Clothing manufacturer Cotton Traders has increased customer payment data security to become compliant with the Payment Card Industry Data Security Standard (PCI DSS).

The company is deploying 'tokenisation' middleware which ensures that credit card details are replaced by a token held in a data depository kept separate from its SAP order-processing system.

"Customer security has always been at the top of our priorities. We want to ensure that our customers know we will manage their data safely," said Nick Turner, development manager at Cotton Traders.

Encrypted valid credit card data stored by the retailer prior to the new system has already been tokenised, said Turner, and information on expired cards has been wiped.

Cotton Traders is using a hosted system from Cybersource, which was chosen after an evaluation by SAP consultancy BizAps.

The retailer achieved PCI compliance in October, but lost thousands of customers' personal details earlier this year as a result of card-not-present fraud.

"In January 2008 we identified a security issue and immediately brought in industry experts to resolve the problem," the company said at the time. An anti-fraud unit backed by UK payments association Apacs has so far made one arrest in connection with the case, which remains under investigation.

The implementation of IT supporting the PCI DSS may be particularly challenging for businesses without a proper security and risk management policy in place, according to Mike Maddison, head of UK security and privacy services at Deloitte.

"Companies already struggle to assess where sensitive information is actually held even before any technical work is carried out," he said.

"That said, the complexity of security measures introduced to the IT setup of organisations working to comply with PCI regulations may disrupt business processes. That is one of the reasons why such projects have such a long time span."

reader comments

related articles

Credit cardRetail

Retailer loses thousands of card details in online hack

Clothing business Cotton Traders lost details belonging to up to 38,000 customers when its web site was hacked 11 Jun 2008

 

Payment verification platform opens up to e-crime

Loophole in payment system allows fraudsters to splash out in online shopping 13 Jun 2008

Virgin Media loses 3,000 customer records

Firm found that an unencrypted CD containing bank account details of UK customers has gone missing 20 Jun 2008

Review 2008: Top 10 retail IT stories

We look back at Computing’s highlights in the retail industry in 2008 31 Dec 2008

PCI Council gives helping hand to merchants

Prioritized Approach framework to help attain PCI DSS compliance 04 Mar 2009

Card fraud factory raided

Devices for stealing Chip and PIN card details found by police 13 Aug 2008

related whitepapers

today's top stories

Lack of enterprise appeal takes shine off Chrome OS

Enterprise buyers unlikely to ditch Windows for Chrome OS in the near term, say experts 09 Jul 2009

How Satyam cleaned up its act

Chief executive CP Gurnani tells Angelica Mari why Tech Mahindra opted to keep the Satyam brand after it bought the scandal-hit services firm, and explains what the deal means for existing and prospective customers 09 Jul 2009

Open source bites back

Recession-hit companies are tired of vendors holding a gun to their heads over software licensing, says CEO of Ingres 09 Jul 2009

"We will ensure Britain remains at the forefront of the digital revolution"

As new trials of superfast broadband get under way, minister Pat McFadden explains the government’s digital vision 09 Jul 2009

Put social networks to work on your career

Increasing numbers of IT professionals using sites such as LinkedIn to grow contacts and find jobs 09 Jul 2009

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you use social networking sites to look for a job?

Would you use social networking sites to look for a job?

Tell us what you think about job hunting through LinkedIn, Facebook, Twitter etc

View poll results

Latest audio and video articles

network cablesVideo

How to maximise the value of your IT networking investment

A panel of experts discuss networking strategies that deliver real value to business 03 Jul 2009

green footprintsVideo

How to manage enterprise energy use - and the role IT can play

A panel of experts explore how firms can get to grips with their carbon footprint and make smarter use of energy 01 Jul 2009

Latest in-depth articles

Google ChromeAnalysis

Lack of enterprise appeal takes shine off Chrome OS

Enterprise buyers unlikely to ditch Windows for Chrome OS in the near term, say experts 09 Jul 2009

Satyam CEO CP GurnaniNews

How Satyam cleaned up its act

Chief executive CP Gurnani tells Angelica Mari why Tech Mahindra opted to keep the Satyam brand after it bought the scandal-hit services firm, and explains what the deal means for existing and prospective customers 09 Jul 2009

Advertisement

Primary Navigation