by Tim Kinsella

When Visa released its suggested best practices for tokenization on July 16th, those of us in the industry knew it was just the beginning of a much broader debate on what these guidelines meant and whether or not they really were the best practices.

Merchant Link’s stance is very clear: while Visa’s best practices are a good start and we laud their endorsement of tokenization, there is more to be done. Just what needs to be done and how it needs to happen should be a source of great debate among not only solution providers, but also merchants.

Ericka Chickowski has certainly added to the debate in her recent piece in Dark Reading where she offers four best practices for tokenization. Her suggestions focus on:

1. Generating random tokens
2. Engaging a third party solution to create robust solutions
3. Ensuring that the server is PCI-compliant
4. Creating a multifaceted solution – one which includes both tokenization and encryption

What do you think? Leave us a comment with your insights.

Write a Comment