Table of Contents



Cyrious SMS 8.6 is NOT a PCI Certified Application. Cyrious SMS 8.9 is awaiting approval. If you are using Cyrious SMS 8.9pci, refer to the following page for assistance:

PCI Certification - TrustKeeper - SAQ-D Compliance Questionaire SMS 8.9



Disclaimer: All information provided in these pages is meant to be helpful for a typical Sign, Print, or Graphics company. If your business model differs significantly from these typical establishments, these recommendations may not apply. In all cases, you are responsible for providing the correct answer and Cyrious assumes no direct or indirect liability with the guidance below.


tocOnce you are logged into TrustKeeper at https://elavonpci.trustkeeper.net/, one of the steps is to set up your Compliance Questionaire. The information below is meant to help you answer those questions. Please note that the answers provided only concern Cyrious' applications. Many of the questions concern Cyrious and other applications you have and must be answered in this context.

SAQ-D Questionaire

The SAQ Questionaire is the document where you must attest that you are following all of the best practices necessary to secure the card holder information you come into contact with.


For users of Cyrious SMS or Control, Cyrious recommends you complete SAQ-D. If you never place a single credit card number into Control or SMS, and no employe ever has, ever does, or ever will then you probably qualify to use SAQ-C. This does not just apply to processing credit card information, but storing any credit card number in the system also. SAQ-C is easier to complete, but if you find that your or an employee has, does, or will put credit card information into SMS or Control you will end up not being in compliance.


The information below assumes you are using Questionaire D. If you are using another form, then this information does not apply to you.

Security Questions

Unfortunately, Cyrious does not know the status of your network. Our support technicians are not authorized to answer any questions on your network security. You will need to have these questions verified by someone knowledgeable about your specific network configuration. In some cases, you may need to make changes or implement additional security measures.

Section 3: Stored Data Protection

Note: This information only applies to SMS 8.6, it does not apply to any other version of Cyrious SMS and should not be utilized in the assistance of completing the questionnaire if you have any other version.

The information provided here has been made available to assist you with answering the questions in required of our software in Section 3. Stored Data Protection, but you must confirm these for all systems you use.

Section 4. Transmitted Data Protection

Cyrious SMS 8.6 information for the requirements of our software in Section 4. Transmitted Data Protection, but you must confirm these for all systems you use.

Section 6. Application and System Security

Cyrious SMS 8.6 information for the requirements of our software in Section 6. Application and System Security, but you must confirm these for all systems you use.

Section 7. Access Restrictions

Cyrious SMS 8.6 information for the requirements of our software in Section 7. Access Restrictions, but you must confirm these for all systems you use.

Cyrious SMS 8.6 has security policies that can restrict this information from individuals. This section requires you to attest that you are using these security features and that you have certain policies in place to control this access.

Section 8. Account Security

Cyrious SMS 8.6 information for the requirements of our software in Section 8. Account Security, but you must confirm these for all systems you use.

Section 10. Access Tracking

Cyrious SMS 8.6 information for the requirements of our software in Section 8. Account Security, but you must confirm these for all systems you use.

Confirmation

If you are running Cyrious SMS 8.6 that version is not PCI certified, however does not store sensitive authentication data after authorization.

Next Step