Important: SecureTrust is now part of VikingCloud, so please be aware that you might see a mixture of SecureTrust and VikingCloud in your PCI Manager portal.
Security of cardholder data is one of the most important things that you need to manage when you process card transactions. For this reason, the Payment Card Industry Security Standards Council (PCI SSC) mandates that all businesses that process card transactions must comply with the Payment Card Industry Data Security Standard (PCI DSS).
We partner with SecureTrust to provide you with access to the PCI Manager, which you can use to complete your PCI compliance requirements. After you complete your PCI compliance requirements, you can view your PCI compliance status in Payroc Insights.
Accessing the PCI Manager
When we board you to our services, we automatically register you with SecureTrust’s PCI Manager. SecureTrust sends you an email within three days to confirm your registration and to provide you with credentials and instructions to access your PCI Manager portal.
You can access SecureTrust’s PCI Manager portal at: https://managepci.com/safemaker/login/portal.
To learn how to use the PCI Manager, download the PCI Portal User Guide.
For more information about PCI DSS and PCI DSS compliance, contact SecureTrust at 1-800-213-8918 or email PayrocPCIsupport@securetrust.com.
Using the PCI Manager
You can use the PCI Manager to complete Self-Assessment Questionnaires (SAQs), vulnerability scans, and penetration tests.
SAQs
To confirm whether your security practices meet the PCI DSS requirements, you can complete self-assessment questionnaires on the PCI Manager.
Vulnerability scans
Depending on how you accept payments or whether you store cardholder data, you might need to use the PCI Manager to scan your network for security vulnerabilities. The scan helps identify weaknesses that unauthorized users could use to access your data.
Penetration tests
For complex network environments, you might need to use the PCI Manager to run tests that identify weaknesses in your network that a vulnerability scan can’t detect.