MERCHANT | SERVICE PROVIDER | ACQUIRER/ ISSUER | SOFTWARE VENDOR |
---|---|---|---|
PCI DSS audit | PCI DSS audit | PCI DSS audit | PCI SSF validation |
PCI ASV scans | PCI ASV scans | PCI ASV scans | PCI PIN validation |
PCI SAQ support | PCI SAQ support | PCI 3DS validation | PCI P2PE validation |
Pentests | Pentests | Pentests | PCI 3DS validation |
Pentests |
Issuer - bank or other organization issuing the card under the authority of payment organizations, e.g. VISA or MC.
Acquirer - bank or organization that a merchant uses to process payment card payments. Receives authorization requests and sends to the issuer (Issuer) for acceptance. Provides services in the processes: authorization, clearing, settlement for the merchant. Acquirer usually is:
- Merchant's bank
- Clearing agent
- Service provider (sometimes)
- Card organization (JCB, Discover, Amex)
- Never VISA or MC
Merchant - an organization that accepts credit card payments during a purchase.
Service Provider - the processor of the transaction.
Software Vendor - a provider of software.