Secure customers` card data with CardVault tokenization

ACCEP T P AY M EN T S
S E C U R E P A Y M E N TS
Secure customers’ card data with CardVault tokenization
Your company’s network and hard drives are magnets for criminals trying to steal personally identifiable
information, medical records and credit card numbers. Today’s rash of data breaches proves cyber thieves are
both highly motivated and sophisticated, and companies large and small are at risk.
Your company reputation is at stake. On average, a data breach costs $5.5 million* — and there’s more than
just sales and revenue to factor. There are lawsuits, damage to your brand, customer flight, fines for not
complying with the Payment Card Industry Data Security Standard (PCI DSS) — and a cost to bring your systems
into compliance on top of that. Conforming to PCI requirements and federal privacy laws can be difficult and
expensive since you must secure every data touch point.
CardVault® from 3Delta Systems is an innovative and proven data tokenization solution that minimizes your
risk by removing sensitive card data from your environment. CardVault is available with a variety of payment
processing options or as a stand-alone offering.
TOKENIZATION AND FRAUD PREVENTION
With tokenization, instead of using sensitive customer data like credit card
numbers, you use substitute values, or tokens. Initially, cardholder data is
submitted to CardVault in 3DSI’s secure payment processing network, where it
is encrypted and stored in a secure PCI-certified environment. Your company is
given the token to store in place of the card number. When you send a
transaction, you use the token — just like processing any other transaction, but
without the risk of transmitting card data.
Using tokens does not change the payment processing experience. With 3DSI’s
through-processing, CardVault tokens can be used for sales, refunds, voids and
credits. And the tokens are useless to criminals if your company’s system is
compromised.
CardVault’s robust security has been the choice of e-commerce retailers, B2B and
B2G companies since 2003. It supports Level-3 transactions to help B2B clients
realize lower interchange rates on those transactions.
3DSI also gives you maximum flexibility and protection to help guard against
fraud. You can define access controls, user restrictions and transaction
processing thresholds to identify and block unusual behavior. Your account
administrator may apply the restrictions universally or to individual users,
depending on management levels and job functions within your organization.
3DSI’s fraud-fighting transaction verification and authentication tools empower
you to run your business with confidence and give you the ability to avoid costs
associated with high-risk transactions.
* “2014 Cost of a Data Breach Study,” Ponemon Institute
page 1
CARDVAULT BENEFITS
Works with existing technology
•Use your host system with CardVault’s platformneutral design.
•Integrate with enterprise accounting and back-office
solutions such as SAP, JD Edwards, Oracle, Microsoft
and more.
•No distributed software required.
Risk-free customer convenience
•E-commerce applications allow customers to
manage profiles without storing card data on the
host system.
•No data re-entry for customers. Account
information is stored for subsequent transactions.
•Update any saved field, including cardholder
name and expiration date, without retrieving card
information.
Supports all commerce — B2B, B2G, and B2C
Stores and processes all major card brands
• Visa
• MasterCard • American Express
• Discover
• JCB • Diners Club
Multiple payment channels
•Internet/e-commerce.
•Mail order/telephone order/call center.
•Enterprise accounting systems, including SAP
integration.
Enhanced security and reduced risk
•Accept and process card payments without storing
card data on internal systems.
•Store PCI-protected card information at 3DSI’s PCIDSS-certified environment.
Several card-collection and interface options
•Silent POST: Your customers enter data in a
seamlessly integrated Web portal on your website,
with sensitive card data delivered directly to 3DSI —
never entering your system.
•Hosted Page: Your customers enter data on a 3DSIhosted Web page, preventing sensitive data from
ever entering your system.
•Web Services: System-to-system communication
exchanging cardholder data and tokens.
•SAP/ERP-integrated module: CardVault’s power,
accessed directly in your ERP system.
Flexible implementation
•Securely transfer legacy card data to 3DSI for
tokenization, then purge it from your system.
•Let 3DSI assign tokens or assign them yourself.
Format-emulating options are available.
•Process server-to-server transactions in real time or
in file-based batch.
•Update, add or delete cardholder records in real
time.
HOW IT WORKS
1. Enter transaction info and card data in your ERP (or order entry system or Web commerce site).
2. Your ERP sends transaction info and card data to 3DSI.
0HUFKDQW
(532UGHU(QWU\6\VWHP
:HE&RPPHUFH6LWH
7RNHQL]DWLRQ
3URFHVV
3. We send transaction info and card data to the card network for processing. We store and tokenize the card data.
4. Card network provides us with the transaction result.
&DUG1HWZRUN
9LVD0DVWHU&DUG
$PHULFDQ([SUHVV
5. We send the transaction result and token to your ERP.
6. ERP updates the order with the transaction result and updates the customer profile with the token.
About AOC Solutions
AOC Solutions, a veteran-owned business established in 1996, is a leader in creating commercial payments
technology. Our services are transforming traditional business processes by creating and implementing
financial management products, e-commerce solutions and contact center operations that help organizations
significantly reduce costs while increasing revenues.
About 3Delta Systems
Founded in 1999, 3DSI provides secure Web-based payment solutions, including credit card payment processing
and top-tier tokenization security, for enterprise, B2B, B2G, B2C and e-commerce clients. Its solutions enable
merchants and buyers to authorize and settle encrypted electronic payments in real time, and tokenize
cardholder data for long-term storage and security.
[email protected] • 703.234.6300
AOC Solutions Inc. • 14151 Newbrook Drive, Suite 200, Chantilly, Virginia 20151
©2015 AOC Solutions Inc. • All rights reserved • 04/2015