PCI DSS SAQ?

Element can help you answer the PCI DSS Self Assessment Questionnaire (SAQ) by reducing the number of questions you are responsible for answering.

The Payment Card Industry Data Security Standard Self-Assessment Questionnaire (PCI DSS SAQ) is a tool for merchants and service providers to self-evaluate their compliance with the PCI DSS. The PCI SAQ was crafted for merchants that are not required to undergo an on-site data security assessment. It is often required by a merchant's acquirer or payment brand.

There are multiple versions of the SAQ to fit different business categories. For instance, version "A" applies to card-not present (e-commerce or mail/telephone order) merchants where all cardholder data functions are outsourced, whereas version "C" applies to businesses with point-of-sale systems connected to the internet with no electronic cardholder data storage. Each version of the PCI SAQ consists of over 225 questions. The SAQ can be difficult to understand and time consuming to answer.

Element’s PCI DSS-certified payment processing platform can drastically reduce the number of questions required to complete the PCI DSS SAQ. This will save you time when completing the SAQ. But most importantly, you will gain the confidence that your payment transactions are protected by the most secure payment solution available. Element sits on the PCI Security Standards Council; that means we are always up-to-date with the very latest security requirements. The Element Express Processing Platform offers state-of-the-art payment security with virtual terminal, recurring billing and web-based reporting capabilities.

Our PCI DSS experts have the answers to your questions. Contact us now for help completing the PCI SAQ.

Eligibility To Complete Shortened SAQ:

  • Merchant does not store, process, or transmit any cardholder data on merchant premises but relies entirely on third party service provider(s) to handle these functions;
  • The third party service provider(s) handling storage, processing, and/or transmission of cardholder data is confirmed to be PCI DSS compliant;
  • Merchant does not store any cardholder data in electronic format; and
  • If Merchant does store cardholder data, such data is only in paper reports or copies of receipts and is not received electronically.
Element Payment Services Inc. is a registered ISO/MSP with First National Bank of Omaha. © 2009 Element Payment Services, Inc.
Website updated on: 1/6/2009