SlideShare ist ein Scribd-Unternehmen logo
1 von 6
Downloaden Sie, um offline zu lesen
TOKENISATION
&
It's Implementation
Compliances
About Tokenisation
Tokenisation means masking or substituting sensitive data with
unique identification number while retaining
all the essential information about the data. This equivalent unique
replacement data is called a token.
Tokenisation is a global practice aimed at preventing disclosure of
card details to any entity apart from the
cardholder, card network or issuer. The concept of tokenisation was
first introduced in 2005 by
Shift4payments to protect cardholder data.
Necessary compliances required
for implementing tokenisation
Businesses that accept card payments need to be in compliance with the
Payment Card Industry Data Security Standard (“PCI DSS”), which adds
credibility to ensure their customers.
Card networks are required to get the token requestor certified for (a) token
requestor’s systems, including hardware deployed for this purpose, (b) security
of token requestor’s application, (c) features for ensuring authorised access to
token requestor’s app on the identified device, and, (d) other functions
performed by the token requestor, including customer on-boarding, token
provisioning and storage, data storage, transaction processing, etc.
Necessary compliances required
for implementing tokenisation
Card networks are required to get the card issuers / acquirers, their service
providers and any other entity involved in payment transaction chain, certified
in respect of changes done for processing tokenised card transactions by
them.
Registration of card on token requestor’s app shall be done only with explicit
customer consent through AFA, and not by way of a forced / default /
automatic selection of check box, radio button, etc.
Secure storage of tokens and associated keys by token requestor on
successful registration of card shall be ensured.
Necessary compliances required
for implementing tokenisation
Card issuers shall ensure easy access to customers for reporting loss of
“identified device” or any other such event which may expose tokens to
unauthorised usage. Card network, along with card issuers and token
requestors, shall put in place a system to immediately de-activate such tokens
and associated keys.
Dispute resolution process shall be put in place by card network for tokenised
card transactions.
Card network shall ensure monitoring to detect any malfunction, anomaly,
suspicious behaviour or the presence of unauthorized activity within the
tokenisation process and implement a process to alert all stakeholders.
For MOre
Information Visit
www.khaitanlegal.com

Weitere ähnliche Inhalte

Ähnlich wie Best Advocates in Mumbai - Khaitan Legal Associates.pdf

Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...
Danail Yotov
 
Information Technology Act 2000 An Overview
Information Technology Act 2000  An OverviewInformation Technology Act 2000  An Overview
Information Technology Act 2000 An Overview
Anubhav
 

Ähnlich wie Best Advocates in Mumbai - Khaitan Legal Associates.pdf (20)

Digital wallet
Digital walletDigital wallet
Digital wallet
 
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
Security Architecture for On-Line Mutual Funds Trading With Multiple Mobile A...
 
RBI Tokenization And Impact on Digital Adoption
RBI Tokenization And Impact on Digital AdoptionRBI Tokenization And Impact on Digital Adoption
RBI Tokenization And Impact on Digital Adoption
 
Dynamag by MagTek
Dynamag by MagTekDynamag by MagTek
Dynamag by MagTek
 
PayU 3D Secure Merchant Guide
PayU 3D Secure Merchant GuidePayU 3D Secure Merchant Guide
PayU 3D Secure Merchant Guide
 
Digital wallet
Digital walletDigital wallet
Digital wallet
 
FinTech, Internet of Things & Patents
FinTech, Internet of Things & PatentsFinTech, Internet of Things & Patents
FinTech, Internet of Things & Patents
 
All about Contactless payments
All about Contactless paymentsAll about Contactless payments
All about Contactless payments
 
v 1.0
v 1.0v 1.0
v 1.0
 
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
FATF FinTech & RegTech initiative: Gilbraltar Distributed Ledger Technology R...
 
Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...Payment gateway/payment service providers and future trends in mobile payment...
Payment gateway/payment service providers and future trends in mobile payment...
 
Embedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment IndustryEmbedded System Security: Learning from Banking and Payment Industry
Embedded System Security: Learning from Banking and Payment Industry
 
General discussion paper for airports
General discussion paper for airportsGeneral discussion paper for airports
General discussion paper for airports
 
General discussion paper for airports
General discussion paper for airportsGeneral discussion paper for airports
General discussion paper for airports
 
Card payment evolution v1.0
Card payment evolution v1.0Card payment evolution v1.0
Card payment evolution v1.0
 
PCI,Smart Card,ATM and E-commerce
PCI,Smart Card,ATM and E-commercePCI,Smart Card,ATM and E-commerce
PCI,Smart Card,ATM and E-commerce
 
The Integration of Credit Card.pdf
The Integration of Credit Card.pdfThe Integration of Credit Card.pdf
The Integration of Credit Card.pdf
 
Information technology-act 2000
Information technology-act 2000Information technology-act 2000
Information technology-act 2000
 
EMV: Preparing for Changes to the Retail Payment Process
EMV: Preparing for Changes to the Retail Payment ProcessEMV: Preparing for Changes to the Retail Payment Process
EMV: Preparing for Changes to the Retail Payment Process
 
Information Technology Act 2000 An Overview
Information Technology Act 2000  An OverviewInformation Technology Act 2000  An Overview
Information Technology Act 2000 An Overview
 

Mehr von anjalimehta95

Mehr von anjalimehta95 (12)

Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdfCorporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pdf
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptxCorporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
Corporate Law Firms in Mumbai - Khaitan Legal Associates.pptx
 
Best Apps for Ev Charging Malaysia - Telio EV.pptx
Best Apps for Ev Charging Malaysia - Telio EV.pptxBest Apps for Ev Charging Malaysia - Telio EV.pptx
Best Apps for Ev Charging Malaysia - Telio EV.pptx
 
EV Charging App Malaysia - Telio EV.pdf
EV Charging App Malaysia - Telio EV.pdfEV Charging App Malaysia - Telio EV.pdf
EV Charging App Malaysia - Telio EV.pdf
 
Best Electric Charging App - Telioev.pptx
Best Electric Charging App  - Telioev.pptxBest Electric Charging App  - Telioev.pptx
Best Electric Charging App - Telioev.pptx
 
Best Electric Charging App - Telioev.pdf
Best Electric Charging App  - Telioev.pdfBest Electric Charging App  - Telioev.pdf
Best Electric Charging App - Telioev.pdf
 
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdfCorporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
 
Corporate law firms in mumbai - Khaitan Legal Associates.pptx
Corporate law firms in mumbai - Khaitan Legal Associates.pptxCorporate law firms in mumbai - Khaitan Legal Associates.pptx
Corporate law firms in mumbai - Khaitan Legal Associates.pptx
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal AssociatesCorporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal Associates
 
Corporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal AssociatesCorporate Law Firms in Mumbai - Khaitan Legal Associates
Corporate Law Firms in Mumbai - Khaitan Legal Associates
 
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdfCorporate law firms in mumbai - Khaitan Legal Associates.pdf
Corporate law firms in mumbai - Khaitan Legal Associates.pdf
 
Top Law Firms in Mumbai | Khaitan Legal
Top Law Firms in Mumbai | Khaitan LegalTop Law Firms in Mumbai | Khaitan Legal
Top Law Firms in Mumbai | Khaitan Legal
 

Kürzlich hochgeladen

一比一原版伦敦南岸大学毕业证如何办理
一比一原版伦敦南岸大学毕业证如何办理一比一原版伦敦南岸大学毕业证如何办理
一比一原版伦敦南岸大学毕业证如何办理
Airst S
 
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
e9733fc35af6
 
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
ss
 
一比一原版悉尼科技大学毕业证如何办理
一比一原版悉尼科技大学毕业证如何办理一比一原版悉尼科技大学毕业证如何办理
一比一原版悉尼科技大学毕业证如何办理
e9733fc35af6
 
一比一原版赫瑞瓦特大学毕业证如何办理
一比一原版赫瑞瓦特大学毕业证如何办理一比一原版赫瑞瓦特大学毕业证如何办理
一比一原版赫瑞瓦特大学毕业证如何办理
Airst S
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
bd2c5966a56d
 
一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理
Airst S
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
Airst S
 
一比一原版(UWA毕业证书)西澳大学毕业证如何办理
一比一原版(UWA毕业证书)西澳大学毕业证如何办理一比一原版(UWA毕业证书)西澳大学毕业证如何办理
一比一原版(UWA毕业证书)西澳大学毕业证如何办理
bd2c5966a56d
 
一比一原版(Warwick毕业证书)华威大学毕业证如何办理
一比一原版(Warwick毕业证书)华威大学毕业证如何办理一比一原版(Warwick毕业证书)华威大学毕业证如何办理
一比一原版(Warwick毕业证书)华威大学毕业证如何办理
Fir La
 
一比一原版(USC毕业证书)南加州大学毕业证学位证书
一比一原版(USC毕业证书)南加州大学毕业证学位证书一比一原版(USC毕业证书)南加州大学毕业证学位证书
一比一原版(USC毕业证书)南加州大学毕业证学位证书
irst
 
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
Airst S
 
一比一原版(UM毕业证书)密苏里大学毕业证如何办理
一比一原版(UM毕业证书)密苏里大学毕业证如何办理一比一原版(UM毕业证书)密苏里大学毕业证如何办理
一比一原版(UM毕业证书)密苏里大学毕业证如何办理
F La
 

Kürzlich hochgeladen (20)

一比一原版伦敦南岸大学毕业证如何办理
一比一原版伦敦南岸大学毕业证如何办理一比一原版伦敦南岸大学毕业证如何办理
一比一原版伦敦南岸大学毕业证如何办理
 
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
 
Chambers Global Practice Guide - Canada M&A
Chambers Global Practice Guide - Canada M&AChambers Global Practice Guide - Canada M&A
Chambers Global Practice Guide - Canada M&A
 
Philippine FIRE CODE REVIEWER for Architecture Board Exam Takers
Philippine FIRE CODE REVIEWER for Architecture Board Exam TakersPhilippine FIRE CODE REVIEWER for Architecture Board Exam Takers
Philippine FIRE CODE REVIEWER for Architecture Board Exam Takers
 
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
 
一比一原版悉尼科技大学毕业证如何办理
一比一原版悉尼科技大学毕业证如何办理一比一原版悉尼科技大学毕业证如何办理
一比一原版悉尼科技大学毕业证如何办理
 
一比一原版赫瑞瓦特大学毕业证如何办理
一比一原版赫瑞瓦特大学毕业证如何办理一比一原版赫瑞瓦特大学毕业证如何办理
一比一原版赫瑞瓦特大学毕业证如何办理
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
 
Elective Course on Forensic Science in Law
Elective Course on Forensic Science  in LawElective Course on Forensic Science  in Law
Elective Course on Forensic Science in Law
 
一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
 
一比一原版(UWA毕业证书)西澳大学毕业证如何办理
一比一原版(UWA毕业证书)西澳大学毕业证如何办理一比一原版(UWA毕业证书)西澳大学毕业证如何办理
一比一原版(UWA毕业证书)西澳大学毕业证如何办理
 
一比一原版(Warwick毕业证书)华威大学毕业证如何办理
一比一原版(Warwick毕业证书)华威大学毕业证如何办理一比一原版(Warwick毕业证书)华威大学毕业证如何办理
一比一原版(Warwick毕业证书)华威大学毕业证如何办理
 
一比一原版(USC毕业证书)南加州大学毕业证学位证书
一比一原版(USC毕业证书)南加州大学毕业证学位证书一比一原版(USC毕业证书)南加州大学毕业证学位证书
一比一原版(USC毕业证书)南加州大学毕业证学位证书
 
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
一比一原版(JCU毕业证书)詹姆斯库克大学毕业证如何办理
 
Sangyun Lee, Duplicate Powers in the Criminal Referral Process and the Overla...
Sangyun Lee, Duplicate Powers in the Criminal Referral Process and the Overla...Sangyun Lee, Duplicate Powers in the Criminal Referral Process and the Overla...
Sangyun Lee, Duplicate Powers in the Criminal Referral Process and the Overla...
 
Cyber Laws : National and International Perspective.
Cyber Laws : National and International Perspective.Cyber Laws : National and International Perspective.
Cyber Laws : National and International Perspective.
 
It’s Not Easy Being Green: Ethical Pitfalls for Bankruptcy Novices
It’s Not Easy Being Green: Ethical Pitfalls for Bankruptcy NovicesIt’s Not Easy Being Green: Ethical Pitfalls for Bankruptcy Novices
It’s Not Easy Being Green: Ethical Pitfalls for Bankruptcy Novices
 
一比一原版(UM毕业证书)密苏里大学毕业证如何办理
一比一原版(UM毕业证书)密苏里大学毕业证如何办理一比一原版(UM毕业证书)密苏里大学毕业证如何办理
一比一原版(UM毕业证书)密苏里大学毕业证如何办理
 
Shubh_Burden of proof_Indian Evidence Act.pptx
Shubh_Burden of proof_Indian Evidence Act.pptxShubh_Burden of proof_Indian Evidence Act.pptx
Shubh_Burden of proof_Indian Evidence Act.pptx
 

Best Advocates in Mumbai - Khaitan Legal Associates.pdf

  • 2. About Tokenisation Tokenisation means masking or substituting sensitive data with unique identification number while retaining all the essential information about the data. This equivalent unique replacement data is called a token. Tokenisation is a global practice aimed at preventing disclosure of card details to any entity apart from the cardholder, card network or issuer. The concept of tokenisation was first introduced in 2005 by Shift4payments to protect cardholder data.
  • 3. Necessary compliances required for implementing tokenisation Businesses that accept card payments need to be in compliance with the Payment Card Industry Data Security Standard (“PCI DSS”), which adds credibility to ensure their customers. Card networks are required to get the token requestor certified for (a) token requestor’s systems, including hardware deployed for this purpose, (b) security of token requestor’s application, (c) features for ensuring authorised access to token requestor’s app on the identified device, and, (d) other functions performed by the token requestor, including customer on-boarding, token provisioning and storage, data storage, transaction processing, etc.
  • 4. Necessary compliances required for implementing tokenisation Card networks are required to get the card issuers / acquirers, their service providers and any other entity involved in payment transaction chain, certified in respect of changes done for processing tokenised card transactions by them. Registration of card on token requestor’s app shall be done only with explicit customer consent through AFA, and not by way of a forced / default / automatic selection of check box, radio button, etc. Secure storage of tokens and associated keys by token requestor on successful registration of card shall be ensured.
  • 5. Necessary compliances required for implementing tokenisation Card issuers shall ensure easy access to customers for reporting loss of “identified device” or any other such event which may expose tokens to unauthorised usage. Card network, along with card issuers and token requestors, shall put in place a system to immediately de-activate such tokens and associated keys. Dispute resolution process shall be put in place by card network for tokenised card transactions. Card network shall ensure monitoring to detect any malfunction, anomaly, suspicious behaviour or the presence of unauthorized activity within the tokenisation process and implement a process to alert all stakeholders.