Friday, November 14, 2008

Electronic Signatures

Acquiring banks that are using Electronic Signature Capture Technology (ESCT) must ensure the following procedures are implemented:
  • Proper electronic data processing (EDP) controls and security measures are established, so that digitized signatures are recreated on a transaction-specific basis. Acquiring banks may recreate the signature captured for a specific transaction only in response to a retrieval request for the transaction.
  • Adequate controls exist over employees with authorized access to digitized signatures maintained in the acquiring bank or merchant host computers. Employees and agents should be allowed to access the stored, electronically captured signatures only on a "need to know" basis.
  • Digitized signatures are not accessed or used in a manner contrary to applicable industry regulations.
Bookmark and Share

0 comments: