Human Experience Elevated

PCI TR-31 Mandate Guidelines


Listen Later

On today's episode of the podcast, we're digging into the incoming compliance standards updates for ATMs, coming out of the Payment Card Industry Security Standards Council. Banking professionals and ATM operators may or may not be familiar with PCI TR-31 which, come the deadline of December 31, 2024, will require an upgrade to all ATM encrypting pin pad hardware.

Retailers are advised not to delay compliance as there could be consequences for waiting too long. They emphasize the importance of updating both hardware and software components of ATMs. Machines older than May 2014 might need replacements, especially those operating on the WinCE 5.0 platform. Retailers are encouraged to start preparations early to avoid potential backlogs and challenges.

The PCI Security Standards Council has new standards for ATM PIN pads and data encryption. The mandates have two key deadlines:

  • By December 31, 2024: All terminals capable of being upgraded to the latest version of encrypting pin pad (EPP) must be upgraded. Non-upgradable terminals must be replaced.
  • On January 1, 2025: Operational ATMs are required to have current firmware and software that uses the TR31 Phase 3 key blocks. This is aimed at providing greater security for PINs and data transferred through the ATM and onto payment network infrastructure.

Machines that do not comply with these mandates after the deadlines will essentially become non-operational as they will not be supported by host processors.

...more
View all episodesView all episodes
Download on the App Store

Human Experience ElevatedBy Hyosung TNS