Showing posts with label Attestation. Show all posts
Showing posts with label Attestation. Show all posts

Wednesday, 3 April 2013

GXS Achieves PCI DSS 2.0 Attestation of Compliance


Gaithersburg, MD (PRWEB) June 27, 2012

GXS, a leading provider of B2B integration services, today announced that it has received Payment Card Industry (PCI) Data Security Standard (DSS) 2.0 Attestation of Compliance for its PCI Gateway Cloud Tokenization service. To receive PCI DSS 2.0 compliance, GXS policies, procedures and technical systems were reviewed by a third-party auditor, AT&T. The security assessment included on-site validation of network security, cardholder data protection, vulnerability management, access control measures, network monitoring and information security policies.

Achieving PCI compliance was a high priority for us. Use of card-based payments for Business-to-Business (B2B) transactions has increased significantly in recent years,” said Patricia Hines, director of financial services industry marketing at GXS, But, the growth can only continue if B2B networks can support the highest industry standards to protect cardholder data.

The GXS Cloud Tokenization Solution accepts transactions and replaces personally identifiable information, such as card numbers, with a secure token, a randomized string of unidentifiable characters. The transaction with the token is then sent to be processed. One of GXSs premier Cloud Tokenization customers is Infor, the world’s third largest supplier of enterprise applications and services. Using GXS, Infor is able to offer a safe, reliable way of handling confidential data and ensure PCI compliance for its customers.

The PCI Security Standards Council released PCI DSS version 2.0 to provide greater clarity and flexibility and facilitate an improved understanding of the requirements and eased implementation for merchants. The PCI DSS 2.0 standard comprises a minimum set of requirements for protecting cardholder data. The standard applies to all entities involved in payment card processing including merchants, processors, acquirers, issuers, and service providers, as well as all other entities that store, process or transmit cardholder data.

About GXS:

GXS is a leading B2B integration services provider and operates the worlds largest integration cloud, GXS Trading Grid


GXS Achieves PCI DSS 2.0 Attestation of Compliance

Saturday, 2 March 2013

Avalaras Internal Controls Earn SSAE 16 Attestation; Auditing Achievement Reflects Commitment, Demonstrates Credentials


Bainbridge Island, WA (PRWEB) April 10, 2012

Avalara (http://www.avalara.com), the market leader and visionary in sales tax automation for businesses of all sizes, today announced its internal control activities have earned a Statement on Standards for Attestations Engagements (SSAE) 16, replacing its Statement on Auditing Standards No. 70 earned in 2010.

SSAE 16 is an attestation standard put forth by the Auditing Standards Board (ASB) of the American Institute of Certified Public Accountants (AICPA) that evaluates the internal controls of a service organization. An organization must demonstrate it has established and up-to-date control objectives and activities in place to earn a SSAE 16 attestation.

Virtually every function of the company was touched by the SSAE audit, from our data processing and building security to disaster recovery and backup, said Avalara Founder and CEO Scott McFarlane. The audits sheer scope and resulting attestation clearly reflect Avalaras commitment to maintaining strong controls and procedures for our customers. Its a worthwhile endeavor that demonstrates our credentials and builds on our foundation of trust.

SSAE 16 effectively replaces SAS 70 as the authoritative guidance for reporting on service organizations. SSAE 16 engagements are generally performed by audit, risk, and control oriented professionals who have experience in accounting, auditing, and information security. A SSAE 16 engagement allows a service organization to have its control policies and procedures evaluated and tested by an independent party.

About Avalara

Avalara is the leader and visionary in sales tax automation for businesses of all sizes. It simplifies the complexity associated with sales and use tax and in the process makes compliance achievable by all.

Avalara partners with nearly 170 of the worlds leading accounting and commercial software publishers to accomplish this. Its web-based offering provides the most complete set of transactional tax compliance services available, including tax calculation, exemption certificate management and returns processing. It also offers 1099 filing and reporting.

Avalara currently serves more than 60,000 registered users globally and calculates VAT, sales and use taxes on more than 750 million transactions annually. It also manages more than 1.5 million exemption certificates, submits approximately 500,000 returns and files and remits nearly $ 10 billion in sales and use tax collections per year.

Established in 2004, Avalara is a founding member and Certified Service Provider of the Streamlined Sales Tax initiative and one of the fastest-growing companies in America. It employs more than 275 professionals at its headquarters on Bainbridge Island, WA and offices in Seattle; Irvine, San Diego and Rocklin, CA; Falls Church, VA and Pune, India.

For more information, please visit http://www.avalara.com.








Avalaras Internal Controls Earn SSAE 16 Attestation; Auditing Achievement Reflects Commitment, Demonstrates Credentials