PCI is a globally valid, strict standard for technical, legal and organizational data security. The credit card organizations (e.g. VISA, MasterCard) have developed a uniform, global security and auditing standard called "Payment Card Industry (PCI) Data Security Standard".
PCI is a standard developed from the Visa Account Information Security Program (AIS/CISP), Mastercard Site Data Protection Program (SDP), American Express Security Operating Policy (DSOP), Discover Information Security and Compliance (DISC), and JCB Security Rules.
Businesses seeking certification must use a service provider approved by the credit card organizations for PCI testing and certification. Depending on the business model and number of transactions, certification requirements such as self-inspection, self-disclosure and network investigation are repeated annually.