Retail Technology
| Log in | Subscribe

Subscribe | Log in
Retail Technology

Latest Building Online Britain roundtable draws industry experts into lively debate

Latest Building Online Britain roundtable draws industry experts into lively debate


High Street retailers are not taking online security seriously enough, according to industry experts in a recent roundtable discussion.


Despite pressure mounting to comply with Payment Card Industry Data Security Standard (PCI DSS) requirements, online-only retailers are leaving their High Street competitors behind in the race to meet the standard it emerged.


According to figures issued by Visa earlier this year, just 9% of the UK's Level 1 retailers (i.e. those that handle more than six million transactions a year) have actually managed to achieve PCI DSS compliance.


Graham Boler, consultant at ECSC, said: "Most merchants are really now only coming to terms with the standard. While the larger retailers have embraced it pretty strongly, in the UK the next tier of High Street retailers are only estimated to be about 5% compliant."


Too many risk non-compliance


Neil Lathwood, IT director at UKFast, added: "By not investing in the standard retailers are shooting themselves in the feet and putting themselves at a disadvantage to their competitors. They are also leaving themselves open to huge fines."


In a move to encourage businesses to adopt the standard, Visa increased its fine for a data breach by a Level 4 merchant (processing fewer than 20,000 ecommerce transactions annually) from £2,500 to £10,000 last year. In the first half of 2009, £200,000 a month was also collected in fines.


However, it does appear that businesses are moving in the right direction even if they don’t have the standard, with the number of companies storing sensitive card authentication data dropping by 2.5% in January this year.


Daniel Atherton, managing director of Athernet Solutions, said: "The benefits to retailers and online merchants is that it will weed out a lot of unscrupulous websites and put pressure on those that are ignorant and do not realise what levels of security they need."


The roundtable discussions are held in association with UK hosting services provider UKFast, with the aim of bringing business leaders together to share advice and provide new ideas for other developing companies. Jason Zemmel of Sterling Pharmacy, Reshad Hossenally from Ticket Arena and Richard Bromley from Ken Bromley Art Supplies completed the panel.