Inference Solutions and the Value-Add Opportunity for Carriers to Provide PCI Compliance to Business Customers
The call to the service provider goes something like this…
“Hi, I manage customer relations for HousewaresRUs, and wanted to know if you can help me with PCI compliance.”
“Sure, I can do that. I’ll start with two quick questions. Are you taking credit card purchases from customers over the phone? Secondly, are you PCI compliant now, or just looking into it?”
“Yes, for phone-based purchases. For being compliant, umm, no, we’re not. What do I have to do here?”
“Well, let me first ask how quickly you’re looking to do this?”
“Right away, like NOW.”
What’s the problem?
This sense of urgency means one of two things, and probably both. The business has either had a security breach involving credit card fraud, or they have just been hit with non-compliance penalties. While it’s not known how often these things actually happen, what we do know is that businesses don’t want to talk about it, and the associated costs are usually buried where nobody will find them.
Both scenarios could just as well be happening together, as the lack of compliance would make the company vulnerable to fraud, which in turn raises red flags with their bank, after which they’ll be exposed for not being PCI compliant. This refers to the requirement for merchants to comply with the DSS – Data Security Standard – developed specifically for PCI – the Payment Card Industry – to keep personal payment data secure and reduce the risk of credit card fraud for consumers.
Regardless of which above scenario applies, this problem is costing them money – in terms of both penalties and lost sales – and if it drags on, their reputation will suffer as customers will go elsewhere when making credit card purchases over the phone. Hence the urgency for a solution ASAP.
I’m sure you can envision other variations that reflect the threats and challenges facing retailers who take credit card payments over the phone. PCI compliance, which involves a comprehensive set of 12 control requirements – such as having a secure network and measures for protecting cardholder data - is essential for retailers who take credit card payments over the phone in order to ensure security for their customers. Unfortunately, attaining PCI compliance can be challenging for many businesses, who often opt to sidestep the requirements and hope for the best, much like driving without insurance.
Compounding this is the fact that many retailers have not kept up with changing technologies – especially the cloud, and often don't properly understand their options when it comes to PCI compliance. This provides an opportunity for service providers who can address these challenges by providing the right tools for their customers, resulting in additional sales and revenues. By working with providers like Inference Solutions, which provides a turnkey solution that goes beyond just PCI compliance, service providers can offer new services and functionality to their large and small customers.
Why is PCI compliance a growing issue and concern?
The root of the problem lies in the massive growth in retailing over the Internet and over the phone, especially around data security. As credit card payments continue to increase the likelihood of fraud does as well. Credit card companies need to recoup those losses and requiring retailers and other organizations to maintain minimum security standard or risk fines is the preferred way to do that.
In credit card data security, the two obvious weak points are the storage of credit card data itself and the human interface that works with that stored data. Contact centers spend millions of dollars each year ensure their staff are appropriately trained and that access controls are in place to meet PCI requirements.
The problem is particularly pronounced in distributed environments, whether across a network of contact centers or retail sites. Take for example a retail chain with thousands of outlets that allows callers to pay over the phone, how do you standardize access controls and training across that network? The lack of centralization makes it very difficult, if not impossible, for IT and HR staff to monitor problems on a store-level basis, and it’s a costly way to manage the network.
The easiest option is for businesses to stop the practice of using the phone as a channel for credit card purchases, but that leaves a lot of lost sales on the table. A better response is to recognize that these challenges can be addressed with today’s cloud-based technologies, and vendors like Inference Solutions have figured this out.
How to address PCI compliance here?
There are several approaches and factors to consider in order to address the issue of PCI compliance. One option is for the business itself to become PCI compliant. The process of meeting all the requirements is demanding, and most businesses simply cannot justify the cost and effort to become compliant as well as support it on a 24/7/365 basis.
Furthermore, as evidenced by the above conversation, when problems related to PCI compliance come unexpectedly, they need to be addressed immediately. The business won’t have the luxury of time to go through the certification process, especially if they rely on revenues from these types of credit card orders.
The more distributed the store sites and/or contact centers, the more important it becomes to provide a consistent experience for customers at all times – not just during regular business hours. This is even more important for larger businesses where economies of scale matter, along with the need to ensure security across all sites, phone systems, and IVR platforms. For these and other reasons, a cloud-based, on-net solution is the way forward.
Whether businesses choose to play by the rules or not, PCI compliance is required when credit card payments are handled. If businesses want to continue using the phone for purchase transactions, and if becoming compliant in-house isn’t viable, the next best thing is to use a third-party hosted solution from a service provider. This represents a great use case for SaaS, and in a distributed environment, service providers are ideal partners. Not only do they have the network reach to provide a centralized platform to support all sites, but they have the scale for continuous uptime, and are generally viewed as the trusted partner, which matters for such an important revenue driver.
From a business perspective, offering a cloud-based payment platform that is PCI compliant represents a new value-added service that service providers can sell to retailers and contact center operations. With this platform being PCI compliant, the customer’s problem is solved right away by partnering with the service provider. The only change is that credit card payments will now be handled at the carrier’s end – via Inference Solutions in a PCI compliant environment - instead of at the non-compliant store level. Given the risk and costs associated with not being compliant, the trade-off for shifting payment processing offsite represents a strong value proposition.
Inference Studio
Inference Solutions offers a range of offerings for service providers, notably Inference Studio, their hosted PCI compliant IVR platform for handling credit card payments over the phone. It’s worth noting that Inference Studio provides more than just insurance against non-compliance penalties and a quick fix to allow businesses to keep using telephony for credit card payments. They also enable businesses to maintain using this payment model as they migrate telephony from TDM to VoIP. To support evolving technology beyond VoIP, Inference Solutions offers enhanced capabilities such as speech recognition and voice biometrics, which will become part of nextgen IVR platforms.
Furthermore, Inference complements what service providers can offer as a trusted network provider. The company is certified for Level 1 PCI compliance, the highest designation across all four PCI Levels, which means they can support the largest scale customers. Being cloud-based, the solution can be configured and deployed quickly, with upgrades and future enhancements being added rapidly.
In terms of economics, this model with Inference and a service provider offers a distinct advantage. Since call volumes can vary widely from site to site, there’s a lot of cost uncertainty when retailers manage these payments in a decentralized fashion. With this model, all the traffic is aggregated over a common network – the existing carrier's network – and with call volumes being pooled, the result is a lower per-session cost than if each site was managing its own call volume.
Conclusion
These days, retailers cannot afford to turn business away, and it’s simply bad business to stop taking payments over the phone. While online purchasing keeps gaining ground, the phone remains a vital channel for sales. PCI compliance is both complex to understand and costly to attain, but with cloud-based solutions like Inference Studio, these should no longer be viewed as reasons to sidestep the issues. Many businesses continue to do so, but at some point, they will be exposed, and the risks are more than just financial. The path forward won’t be apparent to them until the dots are connected between a vendor like Inference Solutions and their service provider, and hopefully this article provides a good starting point.
This paper is sponsored by Inference Solutions.
Start YourCustomized Search
SOLUTION AREA
SOLUTION PROVIDERS
- 8x8 (36) Apply 8x8 filter
- Alcatel-Lucent Enterprise (50) Apply Alcatel-Lucent Enterprise filter
- AT&T (44) Apply AT&T filter
- AudioCodes (48) Apply AudioCodes filter
- Avaya (389) Apply Avaya filter
- Cisco (564) Apply Cisco filter
- Dell (11) Apply Dell filter
- Five9 (46) Apply Five9 filter
- Fuze (39) Apply Fuze filter
- Genesys (96) Apply Genesys filter
- HP (98) Apply HP filter
- IBM (171) Apply IBM filter
- Jabra (9) Apply Jabra filter
- Logitech (56) Apply Logitech filter
- Lumen (2) Apply Lumen filter
- Masergy (50) Apply Masergy filter
- Microsoft (762) Apply Microsoft filter
- Mitel (230) Apply Mitel filter
- NEC (128) Apply NEC filter
- Nectar (58) Apply Nectar filter
- Polycom (95) Apply Polycom filter
- Ramp (37) Apply Ramp filter
- RingCentral (121) Apply RingCentral filter
- Sennheiser (18) Apply Sennheiser filter
- Slack (13) Apply Slack filter
- Tata Communications (59) Apply Tata Communications filter
- Unify (185) Apply Unify filter
- Vonage Business (79) Apply Vonage Business filter
- Yealink (8) Apply Yealink filter
- Zoom (16) Apply Zoom filter
- Acme Packet (24) Apply Acme Packet filter
- Allworx (2) Apply Allworx filter
- Arkadin (22) Apply Arkadin filter
- Aspect (34) Apply Aspect filter
- BT (25) Apply BT filter
- CaféX (8) Apply CaféX filter
- CallTower (14) Apply CallTower filter
- Clarity Connect (10) Apply Clarity Connect filter
- Continuant (1) Apply Continuant filter
- Damaka (4) Apply Damaka filter
- Dialogic (5) Apply Dialogic filter
- Dimension Data (44) Apply Dimension Data filter
- Empirix (11) Apply Empirix filter
- Enghouse Interactive (17) Apply Enghouse Interactive filter
- Inference Solutions (9) Apply Inference Solutions filter
- IntelePeer (27) Apply IntelePeer filter
- IR (11) Apply IR filter
- Jive (21) Apply Jive filter
- Kurmi Software (21) Apply Kurmi Software filter
- Lifesize (33) Apply Lifesize filter
- Lightware (3) Apply Lightware filter
- Mavenir (5) Apply Mavenir filter
- Modality Systems (8) Apply Modality Systems filter
- Momentum (36) Apply Momentum filter
- Netfortris (5) Apply Netfortris filter
- NetSapiens (6) Apply NetSapiens filter
- NewVoiceMedia (31) Apply NewVoiceMedia filter
- Nureva (26) Apply Nureva filter
- NUWAVE (5) Apply NUWAVE filter
- Orange (32) Apply Orange filter
- OVCC (8) Apply OVCC filter
- Panasonic (18) Apply Panasonic filter
- PanTerra Networks (9) Apply PanTerra Networks filter
- ScanSource (21) Apply ScanSource filter
- SIPPIO (3) Apply SIPPIO filter
- Snom (20) Apply Snom filter
- Star2Star (8) Apply Star2Star filter
- StarLeaf (12) Apply StarLeaf filter
- Tadiran Telecom (2) Apply Tadiran Telecom filter
- TekVizion (8) Apply TekVizion filter
- Unimax (7) Apply Unimax filter
- Verint (33) Apply Verint filter
- Voice4Net (2) Apply Voice4Net filter
- VOSS (84) Apply VOSS filter
- Voxbone (14) Apply Voxbone filter
- West (28) Apply West filter
- XO Communications (3) Apply XO Communications filter
- Yorktel (17) Apply Yorktel filter
- Zultys (2) Apply Zultys filter
- 3CX (8) Apply 3CX filter
- ADDASOUND (1) Apply ADDASOUND filter
- Aerohive (1) Apply Aerohive filter
- Aryaka (1) Apply Aryaka filter
- Asurion (22) Apply Asurion filter
- Avnet (7) Apply Avnet filter
- Bandwidth (4) Apply Bandwidth filter
- Calabrio (5) Apply Calabrio filter
- Consilium Software (9) Apply Consilium Software filter
- Drum (5) Apply Drum filter
- ESI (6) Apply ESI filter
- Esna (16) Apply Esna filter
- Exinda (2) Apply Exinda filter
- EZuce (3) Apply EZuce filter
- GUnify (6) Apply GUnify filter
- Highfive (4) Apply Highfive filter
- Huawei (47) Apply Huawei filter
- Imagicle (3) Apply Imagicle filter
- IPCortex (1) Apply IPCortex filter
- KnoahSoft (1) Apply KnoahSoft filter
- KOVA (1) Apply KOVA filter
- Logmein (9) Apply Logmein filter
- Metropolis Technologies (4) Apply Metropolis Technologies filter
- Mutare (2) Apply Mutare filter
- NextPlane (27) Apply NextPlane filter
- Ooma (15) Apply Ooma filter
- Patton (11) Apply Patton filter
- Radish Systems (1) Apply Radish Systems filter
- Radisys (3) Apply Radisys filter
- Shango (1) Apply Shango filter
- SMART (163) Apply SMART filter
- Stack8 (1) Apply Stack8 filter
- Swyx (1) Apply Swyx filter
- TrueConf (4) Apply TrueConf filter
- UJET (11) Apply UJET filter
- Voximplant (3) Apply Voximplant filter
CONTENT TYPE
- BC Expert Insights Market (38) Apply BC Expert Insights Market filter
- BC Expert Insights Objective - Vendor Neutral (41) Apply BC Expert Insights Objective - Vendor Neutral filter
- BC Expert Insights Planning (15) Apply BC Expert Insights Planning filter
- BC Expert Insights Solution (11) Apply BC Expert Insights Solution filter
- BC Expert Insights Vendor (79) Apply BC Expert Insights Vendor filter
- BC Expert Insights Vendor Solution (130) Apply BC Expert Insights Vendor Solution filter
- BC Expert Roundtable (119) Apply BC Expert Roundtable filter
- Bcs Webinar (0)
- Bcs Webinar Registration (0)
- Best Practice (38) Apply Best Practice filter
- Buyer Guide (14) Apply Buyer Guide filter
- Case Study (29) Apply Case Study filter
- Executive Interview (145) Apply Executive Interview filter
- Expert Roundtable (436) Apply Expert Roundtable filter
- Guest Contributions (34) Apply Guest Contributions filter
- Multimedia (38) Apply Multimedia filter
- News Analysis (2071) Apply News Analysis filter
- Newsfeed Article (1303) Apply Newsfeed Article filter
- Newsfeed Article (1) Apply Newsfeed Article filter
- Thought Leadership (21) Apply Thought Leadership filter
- Vendor Collateral (211) Apply Vendor Collateral filter
- Vendor Resource Best Practices (24) Apply Vendor Resource Best Practices filter
- Vendor Resource Buyers Guides (2) Apply Vendor Resource Buyers Guides filter
- Vendor Resource Multimedia Content (4) Apply Vendor Resource Multimedia Content filter
- Vendor Resource White Paper (4) Apply Vendor Resource White Paper filter
- Webinar (13) Apply Webinar filter
- Webinars (7) Apply Webinars filter
- White Paper (64) Apply White Paper filter
MORE FILTERS
INDUSTRY
- Banking And Investment (800) Apply Banking And Investment filter
- Education (446) Apply Education filter
- Energy And Utilities (487) Apply Energy And Utilities filter
- Finance (12) Apply Finance filter
- Government (675) Apply Government filter
- Healthcare (482) Apply Healthcare filter
- Hospitality (180) Apply Hospitality filter
- Insurance (100) Apply Insurance filter
- Manufacturing (704) Apply Manufacturing filter
- Media/Publishing (422) Apply Media/Publishing filter
- None (43) Apply None filter
- Professional Services (745) Apply Professional Services filter
- Retail & Distribution (798) Apply Retail & Distribution filter
- Technology (1611) Apply Technology filter
- Transportation (110) Apply Transportation filter
PUBLICATION DATE
Latest Articles
Latest Articles

Comments
There are currently no comments on this article.
You must be a registered user to make comments