Le Lézard
Classified in: Science and technology
Subjects: Product/Service, Survey

90% of Organizations Concerned With Meeting PCI DSS 4.0 Timeline, Bluefin Survey Finds


Bluefin, the recognized leader in PCI-validated encryption and tokenization technologies that protect payments and sensitive data, unveiled the findings of a new data report it commissioned with S&P Global Market Intelligence, "The State of Enterprise Readiness for PCI DSS 4.0," which offers insight into the current state of payment data security and establishes a baseline for PCI DSS 4.0 readiness.

The overwhelming majority of survey respondents (94%) said they have significant or very significant concerns pertaining to payment data security. Additionally, only 21% indicate that they are very confident in their ability to protect customer data. As a result, breaches of financial data have become all too common ? 98% of respondents indicate their organization experienced at least one data breach over the past 24 months and 50% have experienced a breach that created a significant disruption to business operations.

While the majority of organizations (58%) place high importance on securing customer data, it's evident that the challenges to do so remain persistent. Organizations have turned to the Payment Card Industry Data Security Standards (PCI DSS) for guidance in combating payment data threats for nearly two decades and should continue to do so with the latest requirements in PCI DSS 4.0, which organizations must adapt to before the March 2025 deadline. Bluefin's survey revealed the following key findings when it comes to enterprise readiness for new PCI DSS 4.0 requirements:

"As payments stacks continue to evolve alongside customer needs and expectations, cybercriminals view this as a key opportunity to exploit emerging points of vulnerability and capture critical customer data," said Brent Johnson, CISO at Bluefin. "In this environment, it's not a matter of if an organization will experience attempts at being breached ? it's a matter of when. Businesses must ensure compliance with new PCI DSS 4.0 standards as part of a holistic approach to protecting customer data, and our new report serves as a guide for organizations as they look to meet these requirements ahead of the looming March 2025 deadline."

The report also found that there is a strong acknowledgment of the critical role of partners to support PCI DSS 4.0 readiness, with 86% percent of respondents indicating their organization will solely or mostly rely on third-party vendors for PCI DSS 4.0 in some capacity. Respondents place the highest prioritization on payment data security vendors that have an intimate knowledge of regulatory environments and PCI DSS compliance parameters, including expertise pertaining to the 4.0 updates.

"While PCI DSS 4.0 presents an array of operational and resource hurdles for enterprises to overcome, those that approach it with a strategic mindset will differentiate themselves and ultimately deliver a superior customer experience," said Jordan McKee, fintech research director at S&P Global Market Intelligence. "Developing an internal strategy, including the implementation of payment data security technologies like PCI-validated P2PE and tokenization, alongside working with trusted partners will be crucial for organizations to fully understand and address the required changes."

The State of Enterprise Readiness for PCI DSS 4.0 is based on a survey conducted in Q2 2023 of 250 North American PCI DSS decision-makers/influencers at enterprises across nearly a dozen industry verticals. To learn more about the report and download a full copy, please visit this page.

About Bluefin

Bluefin is the recognized integrated payments leader in encryption and tokenization technologies that protect payments and sensitive data. Our product suite includes solutions for contactless, face-to-face, call center, mobile, Ecommerce and unattended payments and data in the healthcare, higher education, government and nonprofit industries. The company's 300 global partners serve 34,000 connected enterprise and software clients operating in 55 countries. Bluefin is a Participating Organization (PO) of the PCI Security Standards Council (SSC) and is headquartered in Atlanta, with offices in Waterford, Ireland and Vienna, Austria.


These press releases may also interest you

at 17:45
The global automotive battery testers market  size is estimated to grow by USD 78.9 million from 2024-2028, according to Technavio. The market is estimated to grow at a CAGR of almost 3.73%  during the forecast period.  Increasing lifespan of...

at 17:44
Non-cash impairment of SEK 11.4 billion to be recorded in the second quarter 2024, relating to the impairment of intangibles mainly attributed to the Vonage acquisitionReflects lower anticipated market growth in some of Vonage's current portfolioThe...

at 17:40
Bayen Group, a leading provider of IT solutions and services, has been nominated for the prestigious Southern California Minority Supplier Development Council (SCMSDC) Supplier of the Year award by Northrop Grumman, a global aerospace and defense...

at 17:25
The global secondary tickets market size is estimated to grow by USD 132.1 billion from 2024-2028, according to Technavio. The market is estimated to grow at a CAGR of 34.25% during the forecast period. Rising popularity of sports events is driving...

at 17:25
The global electric car rental market size is estimated to grow by USD 18.00 billion from 2024-2028, according to Technavio. The market is estimated to grow at a CAGR of almost 16.68% during the forecast period. Increasing demand for rental cars due...

at 17:20
The global supercomputer market size is estimated to grow by USD 33.45 billion from 2024-2028, according to Technavio. The market is estimated to grow at a CAGR of over 28.54% during the forecast period. Commercial customers increasingly adopting...



News published on and distributed by: