Workgroup Wiki | Join | Contact | Member Services | Sitemap
Home
Events & Meetings
Conferences
Asia-Pacific
Registration
Main Conference Hotel IT Leaders' Roundtable
Conference Agenda Conference Speakers Hotel & Venue Information Presentation Links Sponsor/Exhibitor Info Past Events
European
Registration
Main Conference Hotel IT Directors' Roundtable Infra. & Device Forum Mtg.
Conference Agenda Conference Speakers Full Week Agenda Hotel & Venue Information Presentation Links Sponsor/Exhibitor Info Past Events
Middle East
Upcoming Event Past Events
North American
Registration
Hotel IT Leaders' Roundtable Main Conference
Agenda
Keynote Speakers
10th Anniversary Celebration Conference Speakers Hotel & Venue Info Presentation Links Sponsor/Exhibitor Info Past Events
Speaking Opportunities Register Interest
Members' Meetings Meeting & Event Calendar Sponsor and Exhibit
Membership
List of Members Join
Apply for a New Membership
Join as Hospitality Member Join as Industry Partner Join as Another Member Type
Upgrade to Platinum Enroll under an Existing Membership Add a Forum to Your Membership
Member Benefits
Benefits for Hoteliers Benefits for Industry Partners
Benefits for Benefactors Benefits for Platinum Members
Benefits for Others
Member Types & Dues Options for Nonmembers Member Services
Collaboration
Workgroup & Forum Overview Workgroup Summary (PDF)Workgroups
Active Workgroups
Customer ProfileEvent RFP SubmissionsFolio Detail ExchangeHosted Payment Capture SystemsIntelligent Guest RoomPoint of SaleProduct DistributionReference ArchitectureSecure Payments Framework
Maintenance Workgroups
Back Office IntegrationCellular CoverageContent Delivery SolutionDevice Control IntegrationEntertainment Device ControlGuest & Room Status MessagingVoice Communication
Retired Workgroups
Digital SignageDistribution Content ManagementFood and Beverage OrderingFuture LookingGuest Self-ServiceIdentity Compliance ServiceKiosk IntegrationOpen Data ExchangePayment Systems & Data SecurityProtocol & Message TransportSingle Guest Itinerary
Prospective Workgroups Workgroup Lifecycle Join A Workgroup Provide Direction Monitor Progress Forum & Workgroup Policies
Forums
Infrastructure & Device Forum Software Forum Cross-Workgroup Collaboration
Governance CouncilInfrastructure Resource Team
Forum Leadership
Forum Chair Roles
Add a Forum to Your Membership Forum Fees Forum & Workgroup Policies
Collaboration SiteMeeting Schedule Participate / Get Involved
Join a Workgroup Monitor Progress Provide Direction Prospective Workgroups
Standards
Technical Specs
Specs by Product Type Version Equivalence Info Adopters Development Schedule RFP Checklist How to Implement
Released Product Specs Specs by Product Type Certification
Program Details Why Certify Buy Certified Find Certified Partners How to Certify
Intellectual Property (IP) Claims
Resources
Specifications Adopters
Submit an Update
Best Practices White Papers Discussion BoardCredit Card Security Innovation Award
2011 Competition 2010 Winners 2009 Winners
Member Listing Vendor Marketing Resources
Conference Speaking/Exhibiting Differentiation through Certification Premium Memberships Referencing HTNG in PR Use of HTNG Logo
Hospitality Terminology
Press
Publications Press Releases
2011 Releases 2010 Releases 2009 Releases 2008 and Prior Years
Newsletters
Interface
Interface 2012 Interface 2011 Interface 2010 Interface 2009 and Earlier
Outreach
Outreach 2012 Outreach 2011 Outreach 2010
Member Newsfeed
About HTNG
About Membership Member List Leadership
Board of Governors Executive Advisors Forum Chairs Staff Vendor Council
Policies
Code of Conduct Event Attendance Forum & Workgroup Legal Disclaimers Membership Privacy Policy Refund Policies
Activities
Conferences Standards Development Meetings Workgroups Architecture
Careers Contact
Resources Menu
  • Specification Adoption Tracker
  • Best Practices
  • White Papers
  • Discussion Board
  • Credit Card Security
  • Hospitality Terminology Glossary
  • Innovation Award
  • Member Listing
  • Vendor Marketing Resources
Home Credit Card Security

Hotel Credit Card Security

HTNG is helping the hotel industry battle the credit card thieves on several fronts.  This page provides details on data security specifications, best practices, and some of our workgroup efforts to address the problem.

 

HTNG's Efforts to Improve Hotel Data Security

New Workgroup Efforts

On September 27, 2011, HTNG announced the Secure Payments Framework Workgroup, an effort designed by security executives representing, initially, 16 major hotel groups.  Its objective is do design a security framework for credit card data in hospitality, that will provide end-to-end security regardless of the number of systems or companies involved in a transaction.  The group will document this framework in a white paper that will serve as a guide to vendors and as blueprint for development and refinement of standards. See the press release.

The Hosted Payment Capture Systems Workgroup, which was chartered in July 2011, will address the exchange of data necessary for a complex hotel organization with multiple payment gateways and processors to migrate to a hosted payment processing environment--reducing PCI scope of systems such as PMS and POS.

If you think you might have something to add to either of these efforts, fill out our Participate in a Workgroup form to register your interest and become updated on meeting information.  The Secure Payments Framework Workgroup is currently open to hoteliers only but is expected to be opened to participation by vendors and service providers after the completion of the initial framework white paper.

 

HTNG members can also monitor the progress of these and any HTNG workgroups by submitting the Monitor Progress form.

Available Now - Certifiable Specifications

Our Payments and Data Security Workgroup has created solutions to help protect guest credit card data.

The Payments Processing Specification describes the messages that enable hotel systems, such as Point-of-Sale and Property Management, to process lodging industry payment card transactions with payment gateways or acquiring banks.

The Data Proxy Specification defines messages that allow sensitive cardholder information to be stored offsite and replaced by substitute numbers that are worthless to others, thus reducing or eliminating PCI compliance requirements for local PMS, Point of Sale and other systems.  It can be used independently or in conjunction with the Payments Processing Specification.

 

 

 

 


Understanding the Scope of the Issue

Verizon Business recently reported that 40% of data breaches that it investigated in 2010 were in hotels.  For detailed information about the nature of the breaches, we suggest you review these reports:

Verizon Business Report 2011
Trustwave SpiderLabs Global Security Report 2011

 


 

Joint Press Release Informs Hoteliers About Action Needed to Secure Their Hotel's Data

On March 15, 2011, HTNG joined with two other major hotel industry associations--the American Hotel & Lodging Association (AH&LA) and Hospitality Financial and Technology Professionals (HFTP) to issue a joint statement to hotels regarding actions they need to take immediately to thwart organized cyber crime attacks on guest credit card data.  Read the press release.

 
©  2002 - 2012 Hotel Technology Next Generation Careers | Legal | Contact