Security Statement
When we collect personal information from you we do so using advanced 128 bit SSL (secure socket layer) encryption (encoding). This means that ALL your personal data is encoded during the data transfer process to the highest standards used by all the major Banks. We are lawfully registered with the Information Commissioners Office as data capture and holding agents. We are also licensed by the Office of Fair Trading for consumer credit services.
Sagepay
Our online payment provider is Sagepay the UK’s leading Independent payment services provider, who utilise the
highest levels of encryption and security available on the internet. Sagepay is one of the foremost providers of electronic
payment clearing systems in the UK. For security reasons your payment card details are never stored by our staff or systems
For your extra safety we not only verify your payment card number, valid from and expiry date, but also the security
code on the reverse of your card, the cardholders address and their postcode.
VRM Swansea are PCI DSS (Payment Card Industry Data Security Standard) compliant for your security and peace of mind
A recent survey of businesses in the UK revealed that only 12% are operating safe and secure practises to a internationally recognised
security standard when it comes to handling your personal data and in particular your payment (Credit or debit) card data. Security
breaches involving the theft of payment card data are costly and time consuming to rectify. Your identity may even be cloned without
your knowledge.
Our operational business infrastructure is compliant to the PCI DSS, which is a worldwide security standard assembled by the
Payment Card Industry Security Standards Council (PCI SSC).
The PCI security standards are technical and operational requirements that were created to help organisations that process card
payments to prevent credit card fraud, hacking and various other security vulnerabilities and threats.
The standards apply to all organisations that store, process or transmit cardholder data - with guidance for software developers
and manufacturers of applications and devices used in those transactions. A company processing, storing, or transmitting cardholder
data should be PCI DSS compliant.
The Standard requires merchants who store, process or transmit cardholder data to:
- Build and maintain a secure IT network
- Protect cardholder data
- Maintain a vulnerability management program
- Implement strong access control measures
- Regularly monitor and test networks
- Maintain an information security policy
Barclays
Merchant Services
Our bank services provider is Barclays Merchant
services which is operated by Barclays Bank Plc
and is one of the foremost providers of electronic
payment clearing systems in the UK.
For your security we not only verify your payment
card number, valid from and expiry date, but also
the security code on the reverse of your card,
the cardholders address and their postcode.
|