PCI compliance requirements for key loading have changed.
Starting January 2024, PCI PIN v3 Security Requirement 32-9 prohibits cleartext key injection for POI v5 and higher devices. This makes encrypted key injection the new standard going forward. Organizations using POI v4 devices should transition accordingly, as the PCI PTS certification for POI v4 devices expired on April 30, 2024.
Futurex’s encrypted key injection solution is the first to deliver support for encrypted key loading to help comply with control objective 32.9 - making Futurex the encrypted key injection solution standard going forward.
FAQ SECTION
Is my organization impacted?
Any organization that loads keys and needs to comply with PCI PIN must implement encrypted key loading.
Please note: if your organization utilizes POI v4 devices, the PCI PTS certification for POI v4 devices expired on April 30, 2024. This necessitates immediate migration efforts to avoid heightened security risks, audit scrutiny, and liability exposure.
How can I solve this?
Futurex’s encrypted key loading functionality is the only solution on the market to cover the new PCI PIN compliance and can be deployed as a service quickly and easily.
Futurex provides an encrypted key injection protocol developed with leading payment terminal manufacturers. Our solution delivers streamlined encrypted key injection with PCI PIN v3 compliance. It can be deployed as an on-premises appliance and in the cloud for easy integration into existing workflows.
What are common key injection challenges?
- Compliance:
Constantly changing regulations leave organizations with legacy key injection solutions struggling to find (much less implement) PCI-compliant encrypted key injection solutions, given so few options on the market. - Complexity:
Organizations must manage cryptographic servers, key injection devices, terminals, and secure rooms – traditionally involving manual intensive processes and multiple tools.
A new and improved key injection solution is necessary to simplify the process and reduce training overhead.
Achieve compliance and streamline management easily.
- Achieve PCI PIN compliance faster than ever
- Once implemented, log into the portal and select the key injection service you need.
- Load hundreds of terminals per hour
- Inject keys into any payment terminal with just a few mouse clicks.
- Deploy from anywhere with ease
- Reduce installation time with a fully encrypted, secure cloud platform that enables deployment from any location.
- Full-service key administration
- Skip the hiring, training, management, and audit complexity.
Schedule time to talk to our compliance experts today.
Futurex has enabled us to radically streamline the deployment and maintenance of our payment devices across a whole range of geographic markets and customer use cases.
Darren Shaw
Chief Product Officer
Miura Systems