Overview

Summary

Payment-card data is a gold mine for cybercriminals. In the case of financially motivated data breaches, adversaries monetize this data directly or indirectly, resulting in identity theft, payment-card fraud and the impersonation of affected users. NTT DATA helped Eximbay comply with the Payment Card Industry Data Security Standard (PCI DSS) and Designated Entities Supplemental Validation (DESV) requirements while securing their payment processing business operations. Our PCI Qualified Security Assessors and governance, risk and compliance experts worked closely with the Eximbay team to create the right solution for the business.

Business need

Business need

underline underline

Secure payment-card data and comply with global industry standards

Eximbay is one of Korea’s major providers of solutions for digital-payment processing. Handling payment card data is a critical component of its business operations.

Following a critical cyberincident, they were mandated by payment card brands to undergo a fresh Payment Card Industry Data Security Standard (PCI DSS) assessment by a PCI Qualified Security Assessor.

In addition, because of the nature of their business operations and perceived risk profile, they were also asked to certify on Designated Entities Supplemental Validation (DESV) requirements.

Eximbay had been a PCI DSS certified organization for a long time; however, following the cyberevent, they realized that they needed to engage a trusted partner that understands the importance of cybersecurity in the context of a financial services environment. This partner needed to be well versed in assessing and advising on payment-data security controls, leveraging global industry standards such as PCI DSS. They also wanted a partner with a comprehensive cybersecurity portfolio so that Eximbay could realize their critical business outcomes while ensuring robust security of their cardholder payment-data environment.

"We were highly impressed by the quality of NTT DATA’s work, particularly their ability to deliver results promptly in response to our urgent requests. Their expertise in PCI DSS consultation was invaluable, as they precisely identified areas requiring improvement and provided clear guidance."

Joonhun Kim, CIO, Eximbay
Solution

Solution

underline underline

Securing payment-data operations and cardholder data

The NTT DATA team conducted a comprehensive assessment of Eximbay’s infrastructure, identifying gaps and risks that needed to be addressed.

We then developed a detailed strategy and a list of actionable items to ensure compliance with PCI DSS and DESV requirements.

By leveraging our global capabilities, consulting center of excellence, knowledge-base and regional experts, NTT DATA delivered these outcomes on time, with no impact on Eximbay’s business operations.

"Thanks to the support from NTT DATA, we successfully achieved full compliance and obtained the necessary reports in time."

Joonhun Kim, CIO, Eximbay
Outcomes

Outcomes

underline underline

Secure payments and PCI DSS compliance transforms Eximbay

Our services allowed Eximbay to comply with the requirements requested by global payment card brands and their business partners, and delivered:

  • Increased data security
  • Enhanced customer trust
  • Streamlined operations
Client profile
Contact us

Sprechen Sie mit einem Experten

Wir sehen eine vernetzte Welt, in der Technologie das Potenzial hat, Menschen, Daten und Dinge zusammenzubringen. Die Vernetzung ist für Unternehmen heute wichtiger denn je, und wir sind bestrebt, Ihnen bei der Weiterentwicklung und Anpassung Ihrer Arbeitsweise zu helfen. Lassen Sie uns wissen, wie wir Ihnen helfen können, Großes zu erreichen.

sprechen-sie-mit-unseren-experten
Man carrying his tablet while talking on a mobile phone
Jetzt Kontakt aufnehmen