Managed Services - Channel Insider
Empowering the next generation Channel
 

Sponsored Links
  • Cisco Small Business Advantage
  • Register for WES 2010 by February 19 and save $400.
  • up.time Easily Monitors Virtual/Physical/Cloud. Free Trial.
  • Seagate® Barracuda® drives fit every desktop need.
  • MSP Partners helps solution providers stay competitive.
  • Learn more about EnterpriseDB @ the Postgres Center
  • Earn 40-50% margins. Zenith open houses show how.
  • CDW Healthcare offers the IT solutions you need.
  • One number. One voicemail. Sprint Mobile Integration.
  • FREE Sophos Encryption Tool: Encrypt, compress and share files easily.
  • Give your customers more with LSI 6Gb/s solutions.






  • Channel Insider conferred 75 awards to vendor, distribution, solution provider and industry groups for performance excellence. Check out all the winners in the 28 Bull’s Eye Award categories.
    >> Bull’s Eye Central


     

    SAAS Vendor Achieves Highest Security Standards for Cloud Transactions

    in Managed Services


    Article Rating:starstarstarstarstar / 3
    Article Views: 3828

    Rate This Article:
    Add This Article To:
    Aria Systems’ on-demand billing software expects its Level One PCI compliance to play well with customers and partners alike.

    Increased reliance on cloud computing and on-demand software models is highlighting the need for airtight security, particularly where billing is concerned.

    Aria Systems, a provider of on-demand billing and customer lifecycle management, is leaving nothing to chance. On Jan. 7, the company revealed its A+ Billing Platform has achieved Level One PCI (Payment Card Industry), as recognized by the PCI Security Standards Council, a status Aria executives expect will instill confidence in the company’s customers and buoy its upcoming channel recruitment efforts.

    Aria’s achievement, still relatively rare in the SAAS (software as a service) world, is significant because level One PCI compliance covers the actual processes involved when data moves around the cloud, as opposed to just securing the infrastructure.

    “Anything we do that touches our customers’ financial information is PCI-compliant at the highest level,” says Aria CEO Ed Sullivan.

    Resource Library:

    Securing the cloud is a complex proposition for businesses that tap applications and transmit data through the Internet’s vast public infrastructure. The potential for data breaches exists at various levels, including network access points and the transmission of information through the cloud.

    “We think that’s one of the dangers of the cloud,” he says.

    Is your data safe?  Find out here.

    Sullivan contends that while some companies boast of PCI compliance, they are not compliant in the all-encompassing way that Aria has achieved. In many cases the infrastructure is secure, he says, but on the backend there are manual processes where potential breaches could occur.

    Aria’s technology automates all transaction-related activity, including tracking late payments and notifying merchants of default. Since its founding in 2003, Aria has processed more than 1 billion transactions and has about 1 million users currently, say executives.

    The vendor sells its technology through SAAS contracts either directly or through partnerships with companies such as Rackspace. The company now is setting its sights on the solution provider and managed services provider channels, and its vice president of marketing, Jim D’Arcangelo, believes the Aria’s Level One PCI compliance will play big with the channel companies.

    That’s because it addresses concerns over security and questions of accountability that tend to surface when providers add SAAS to their offerings. Providers want technology they sell to customers to be rock-solid, secure and profitable, D’Arcangelo says.

    In achieving Level One PCI compliance, Aria joins a distinguished group of IT heavies, including Google, Oracle and Microsoft, by meeting the credit card industry’s strictest security measures.

    Aria executives say the company spent the last six months updating its security standards and implementing the policies and procedures necessary for obtaining Level One PCI Compliance. 

    The security measures protect Aria customers against lost transactions and the financial penalties associated with credit card fraud, identity theft, network breaches and Internet viruses. Companies doing commerce over the Internet risk monthly fines of  $5,000 to $25,000 for failing to comply with PCI standards.

    In accordance with Level One PCI Compliance standards, Aria tracks and monitors access to network resources and cardholder data, encrypts data transmissions and tests periodically to prevent unauthorized access.

    Sullivan says people typically focus on protecting credit card numbers, which is important, but a truly secure transaction environment also has to meet privacy standards against letting cardholder data fall into the wrong hands. D’Arcangelo says Aria is in the early stages of designing a channel program for solution providers.





    Discuss SAAS Vendor Achieves Highest Security Standards for Cloud Transactions
     
    >>> Be the FIRST to comment on this article!
     

     
     
    >>> More Managed Services Articles          >>> More By Pedro Pereira
     


     


    [ci] feeds
    XML
    Add Channel News, Product Reviews, Trends and Analysis to your RSS newsreader or My Yahoo!


    HTML PLAIN TEXT

    Keep on top of news for VARs and Resellers with CI's Weekly Newsletter and Alerts.

     


    CHANNEL RESOURCE CENTER
     
     
    How much time do you spend hunting for enterprise IT content?
    Let Enterprise TechBrief do the work for you. Aggregated content, tech news, product reviews, vendor updates, how-to’s—all you need to boost your efficiencies and cut costs, all from one place.
    enterprisetechbrief.com
     
    Should You Be Using “up.time”?
    Easily Monitor Virtual, Physical, and Cloud based assets, applications and services from a unified Dashboard with up.time. Deep Monitoring across platforms and along with best-of-breed reporting. Over 700 enterprise customers in 32 countries.
    Free Trial Download Here (Virtual Appliance available)
    Managed service providers are using regulatory compliance and industry standards to win business and give customers peace of mind. Join host Larry Walsh of Ziff Davis Enterprise and his guests on Friday, February 19, 2010, at 1:00 pm ET for a discussion of “Compliance as a Service.”
    Register Today