The Payment Card Industry Data Security Standard (PCI DSS) is a data security standard designed by the leading companies in the banking sector (Visa, Mastercard, American Express, Discover and JCB).

“Processors” or “storers” of sensitive payment data, such as Payment Service Providers like Lyra or e-merchants who have developed their own payment gateway, are therefore subject to an annual audit, carried out to ensure the maintenance of the highest level of security. In addition, quarterly internal and external scans are scheduled to maintain compliance.

PCI DSS establishes a set of security requirements to ensure the confidentiality of transactions. These requirements are implemented in the form of internal procedures, and Lyra ensures continuous monitoring of the security measures necessary for card payments. The PCI DSS standard evolves regularly; Lyra is currently compliant with version 4.0.1.

A certification renewed every year

PCI DSS

Since 2009, Lyra has been PCI DSS certified, ensuring a highly secure and reliable solution. This guarantee is mandatory for e-commerce, in order to protect the banking data of online buyers. It requires among other things for merchants and third-party agents:

  • Investments in an IT system architecture that complies with PCI DSS standards.
  • The implementation of procedures to formalize tasks related to IT security and the physical security of buildings and production sites.
  • The use of a state-of-the-art cryptographic solution dedicated to encrypting and decrypting the most sensitive data.

What does PCI DSS certification guarantee for e-merchants?

  • Risk management, securing your e-commerce transactions and costs
  • A mature vision of the security of your information system.
  • Comply with payment card industry requirements and reassure customers about making payments on your store.

PCI DSS – VISA

Our commitment: protect Visa cardholders with PCI DSS security standards

“Compliance with the Payment Card Industry Data Security Standard (PCI DSS) is mandatory for all entities that store, process, or transmit Visa cardholder data, including financial institutions, merchants and service providers. Visa’s programs manage PCI DSS compliance by requiring participants to regularly demonstrate such compliance.” Visa©

Thus, shortly after obtaining the renewal of our PCI DSS approval, our file is handed over to the card-issuing brand for compliance validation.

Once validated, this allows us to obtain access to the official list of PCI DSS-certified companies – Visa!

What does “being on the list” mean?

Like Visa, we aim to play an important role in the development of new payment channels and in ensuring a trusted payment system. On our side, we commit to complying with a series of constraints and regulations to ensure the sustainability of your business. On its side, Visa commits to verifying the accuracy of our commitment by analyzing our approval from an “issuer” perspective.

Finally, this global list includes all service providers working with the card-issuing brand. It is also the designated source for the payment industry to obtain information about registered and compliant agents. It guarantees that they provide a trusted payment system for merchants and data protection for buyers and Visa cardholders.

PCI DSS

Encrypt sensitive data for PCI-compliant migration using this PGP key

To migrate sensitive data to Lyra, such as credit card information or other Client sensitive data, it needs to be encrypted using this PGP key.

Import the key:

To import Lyra public key (below) use this command:

#to import Lyra Public Key
gpg --import <lyra_public_key.gpg>
#to list all imported keys
gpg --list-keys

Encryption:

After importing this public key, files to send can be encrypted by running this command:

#this will create encrypted <file_to_encrypt>.gpg
gpg --encrypt --recipient D929CF99F0082D56 <file_to_encrypt>

or:

#this will create encrypted <file_to_encrypt>.gpg 
gpg --encrypt --recipient security@lyra-network.com <file_to_encrypt>

Lyra Public Key:

  • Key ID: D929CF99F0082D56
  • Key type: RSA
  • Key size: 4096 bits
  • Fingerprint: 7725 F62F B072 28CE 7BD8  CCBA D929 CF99 F008 2D56
  • User ID: Lyra-Network Security Department – VAD GPG key <security@lyra-network.com>
-----BEGIN PGP PUBLIC KEY BLOCK-----
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=gEEM
-----END PGP PUBLIC KEY BLOCK-----