Home / Knowledge / News / Information Technology / NRF announces best practices for PCI Compliance
NRF announces best practices for PCI Compliance
Jan '09
The National Retail Federation announced the release of the first installment of Best Practices for PCI developed in cooperation with PCI Knowledge Base. This release contains 25 best practices which provide guidance to companies on how leading retailers are addressing all of the requirements outlined in the PCI Data Security Standards.

The Best Practices were developed based on more than 300 hours of anonymous interviews with key retail executives and other industry leaders, including contributions from BJ's Wholesale Club, Yum! Brands, Saks, Burlington Coat Factory, IBM, Microsoft, PCMS and many others. The PCI Best Practices will be available on the NRF and PCI Knowledge Base websites to members.

“These PCI best practices were created with input from many organizations,” said NRF CIO Dave Hogan. ”They provide a road map that will assist retailers to more cost-effectively achieve and maintain PCI Compliance. As the requirements for PCI change, so, too, will the best practices.”

Key PCI Best Practices, designed to help retailers achieve “cost-effective compliance,” include:

• The use of tokenization solutions to centralize card data and reduce the number of systems in PCI scope
• Training for retailers to conduct their own self-assessment to reduce costs and drive compliance toward a risk-based model
• Implement low-cost, consistent service provider security evaluations to manage the security risk of outsourcing

The Best Practices are presented in a summary matrix with details for each. Each Practice provides:

• Description of the best practice
• How much retailers are typically spending to implement the best practice
• How much implementing the best practice could reduce costs, based on experiences of leading retailers
• What department within the retailer typically manages implementation of this best practice
• Which PCI requirements the best practice addresses
• Current implementation of the best practice by F1000 vs. SME retailers
• Potential value (applicability) of the best practice – or what percent “should” implement the best practice
• The opportunity gap: the difference between the current implementation and potential implementation

“The best practices outlined complement the PCI Data Security Standards,” said David Taylor, founder of the PCI Knowledge Base and developer of the research. “These standards tell retailers what to do, and these Best Practices tell retailers how retail industry peers actually implement the standards in practice.”

“NRF's PCI best practices are an excellent primer for any retailer to understand what their peers are doing to assure PCI compliance, said John Polizzi, CIO and Senior Vice President of BJ's Wholesale Club. It provides a solid foundation to build an overall strategy for addressing their critical concerns related to protecting sensitive information.”

Attendees at the NRF Annual Convention can review the Best Practices and speak with David Taylor in the ARTS Pavilion booth 1859 on the exhibit floor. Also Perry Kramer, Vice President of BJ's Wholesale Club, will present some of the ways BJ's has used many of the Best Practices to reduce costs in the ARTS Update Sunday at 10:15 in room 1A07-08.

Must ReadView All

Apparel/Garments | On 26th Oct 2016

SGS develops 4C chemical management model for apparel

SGS, a leading inspection, auditing, certification, testing, and...

Textiles | On 26th Oct 2016

Platinum Equity acquires International Textile Group

International Textile Group (ITG) has been acquired by Platinum...

Textiles | On 26th Oct 2016

Whitehouse & URI Business Centre start RI textile network

Senator Sheldon Whitehouse and the University of Rhode Island...

Interviews View All

Sonia Agarwal

‘The terms eco-friendly and organic are common but everyone perceives them ...

Kamlesh Vaghela
RK Textiles

Very few machinery manufacturers have R&D units

Nuno Venda

‘There has been an increase in demand for water based inks, rather than...

Iago Castro Asensio
RCfil Distribuciones S.L.

Iago Castro Asensio, International Business Manager of RCfil...

Lynda Kelly
Suominen Corporation

Suominen Corporation is a manufacturer of nonwovens as roll goods for...

Kai Poehler
Voith Paper GmbH & Co. KG

The glass mat industry is growing by five to eight per cent annually. Kai...

Judy Frater
Somaiya Kala Vidya

Among the many honours showered on Frater, including Fulbright and Ford...

Igor Chapurin

"Now we can see the Russian trend in international fashion. And Russian...

Bani Batra

Bani Batra’s couture wedding collection is inspired by traditional Indian...

Press Release

Press Release

Letter to Editor

Letter to Editor

RSS Feed

RSS Feed

Submit your press release on


Letter To Editor

(Max. 8000 char.)

Search Companies

October 2016

October 2016

Subscribe today and get the latest update on Textiles, Fashion, Apparel and so on.


Browse Our Archives


Advanced Search