terms

Security & Compliance

PCI DSS Compliance

Atlantis Security & Compliance

PCI DSS Compliance

1. Overview

Atlantis takes payment security seriously.

The Payment Card Industry Data Security Standard, commonly known as PCI DSS, provides technical and operational security requirements designed to help protect payment account data.

PCI DSS applies to environments that store, process, or transmit cardholder data, as well as systems that can affect the security of those environments.

Atlantis Systems Technologies Filipinas Corp. has completed the applicable PCI DSS assessment for the e-commerce payment environment included within its defined PCI DSS scope.

2. PCI DSS v4.0.1 Compliance

Atlantis Systems Technologies Filipinas Corp. has completed its PCI DSS v4.0.1 SAQ A-EP assessment for its in-scope e-commerce payment environment and maintains passing external vulnerability scans performed by a PCI Security Standards Council Approved Scanning Vendor.

SAQ A-EP applies to certain e-commerce environments where the merchant website can affect the security of a payment transaction, even when payment processing may involve authorized third-party payment service providers.

3. Maintaining Our Payment Security

Atlantis Systems Technologies Filipinas Corp. is committed to maintaining the security of the e-commerce payment environment included within its PCI DSS assessment scope.

Our compliance activities include:

  • Completion of the PCI DSS v4.0.1 SAQ A-EP assessment for the in-scope e-commerce payment environment;
  • Passing external vulnerability scans conducted by a PCI SSC Approved Scanning Vendor;
  • Ongoing monitoring and attention to the security of the assessed payment environment; and
  • Use of secure payment processes and authorized payment partners, where applicable.

Atlantis does not store full credit or debit card numbers on its public website. Card payments are processed through secure payment infrastructure and/or authorized payment partners within the applicable PCI DSS scope.

4. Compliance Scope

Atlantis Systems Technologies Filipinas Corp.'s PCI DSS v4.0.1 compliant status applies specifically to the e-commerce payment environment covered by its SAQ A-EP assessment.

This statement should not be interpreted as automatically applying to every Atlantis product, service, system, business unit, website, application, or environment outside the defined PCI DSS assessment scope.

Atlantis Systems Technologies Filipinas Corp.'s compliance status is supported by its completed SAQ A-EP assessment and maintained passing external vulnerability scans.

Relevant compliance documentation may be made available to authorized partners, payment providers, acquiring banks, or regulators upon reasonable request and subject to confidentiality review.

5. Important Limitation

This page is provided for general security and compliance information. It does not expand the scope of Atlantis Systems Technologies Filipinas Corp.'s PCI DSS assessment and does not constitute a representation that every Atlantis system, product, service, business unit, or environment is PCI DSS compliant.

6. Security and Compliance Inquiries

For questions regarding our PCI DSS compliance statement, please contact Atlantis Systems Technologies Filipinas Corp. through our Contact Us page or email helpdesk@ph.atlantis.asia.