MasterCard fundamentally views our member Acquirers as owning the acquiring payment channel. Given this perspective, MasterCard works to administer the SDP Program through our Acquirers, working with merchants to further secure the transaction infrastructure.Please note that acquirers themselves do not need to go through the SDP compliance process but they must manage the SDP process for their merchants.
To ensure compliance with the MasterCard SDP Program, acquirers must:
1) Submit a completed SDP Acquirer Submission and Compliance Status Form to sdp@mastercard.com on quarterly basis that reports on:
2) Deploy a SDP security compliance program for all merchants in accordance with the SDP implementation schedule
3) Ensure that merchants comply with the PCI Data Security Standard through the use of the appropriate SDP compliance validation tools, including onsite assessments, the self-assessment questionnaire and network security scans.
4) Register merchants once they demonstrate compliance with the requirements of the SDP Program mandate. This on-going registration is an annual requirement and is completed via the MasterCard Registration Program, (MRP). Note that there is no fee to register compliant SDP merchants in the MRP. The MRP is accessed through MasterCard OnLine.
To ensure compliance with the MasterCard SDP Program, acquirers must:
1) Submit a completed SDP Acquirer Submission and Compliance Status Form to sdp@mastercard.com on quarterly basis that reports on:
For each merchant, acquirers must provide :
|
For this quarter: |
Submit the form no later than: |
|---|---|
| 1 January to 31 March | 31 March |
| 1 April to 30 June | 30 June |
| 1 July to 30 September | 30 September |
| 1 October to 31 December | 31 December |
2) Deploy a SDP security compliance program for all merchants in accordance with the SDP implementation schedule
3) Ensure that merchants comply with the PCI Data Security Standard through the use of the appropriate SDP compliance validation tools, including onsite assessments, the self-assessment questionnaire and network security scans.
4) Register merchants once they demonstrate compliance with the requirements of the SDP Program mandate. This on-going registration is an annual requirement and is completed via the MasterCard Registration Program, (MRP). Note that there is no fee to register compliant SDP merchants in the MRP. The MRP is accessed through MasterCard OnLine.
