Payment Card Industry (PCI)
The Payment Card Industry (PCI) requires that the university has a contractual obligation to comply with PCI Security Standards. Departments using credit cards for payment must adhere to these requirements.
All departments that accept, process, store and transmit credit card data as payments to the university must be in compliance with the PCI Data Security Program. Departments must complete and return a self-assessment questionnaire annually with the Director of Treasury Operations. In addation The departments subnets which take credit cards are subject to a quarterly network scan and a yearly penetration test.
Office of the Controller: http://www.rci.rutgers.edu/~univcont/policies/pci.php
The Office of Treasury Ooperations is responsible for credit cards and the establishment of merchant account numbers. Departments wanting to begin accepting credit cards for goods or services with the university must be in compliance with the Payment Card Industry Data Security Standard.
Treasury Operations: http://adminaffairs.rutgers.edu/treasury.shtml