Credit card payment processing policy

Payment Processing

  1. All online credit card payments are securely processed through Finix, a third-party payment processing platform that is responsible for the secure authorization, processing, and transmission of payment card data.
  2. Finix maintains PCI DSS compliance for the payment processing services it provides. ABTS Convention Services relies on Finix to securely process payment transactions.
  3. ABTS Convention Services does not store customers’ full Primary Account Numbers (PAN), CVV security codes, magnetic stripe data, or PIN data on its servers or internal systems.
  4. All payment transactions are transmitted using industry-standard TLS encryption.
  5. Customers are responsible for providing accurate billing information when submitting payment.

Security

  1. Access to the Finix administrative portal is limited to authorized personnel with a legitimate business need.
  2. Administrative accounts must use strong passwords and multi-factor authentication (MFA) whenever supported and enabled.
  3. Access rights to the Finix platform shall be reviewed periodically and removed promptly when no longer required.
  4. Website software, servers, and supporting infrastructure shall be maintained with current security updates and patches.
  5. ABTS Convention Services will promptly investigate any suspected security incident involving payment information and follow its incident response procedures.

Compliance

ABTS Convention Services is committed to protecting customer payment information and maintaining compliance with applicable Payment Card Industry Data Security Standard (PCI DSS) requirements. Payment card data is processed through Finix, and ABTS Convention Services follows applicable PCI DSS responsibilities based on its integration with the Finix payment platform.