Skip to main content

PCI Questionnaire Guidelines for EpicPay Gateway

Updated over 4 years ago

The Payment Card Industry Data Security Standard (PCI DSS) is a set of requirements designed to ensure that ALL companies that process, store or transmit credit card information maintain a secure environment. Now that you are a merchant accepting credit and debit cards, you are required to complete an annual Self-Assessment Questionnaire (SAQ) to ensure you are PCI compliant. EpicPay wants to assist you with getting compliant!

Let’s Get Started!

We have compiled some instructions to assist you in becoming compliant:

  • Log in

**Important Please Read Below for Login Information**

This will be the site to login for your PCI Compliance Questionnaire. Your username for the PCI merchant portal is your 5 digit Merchant ID number, and your default password is the 5 digit Merchant ID number followed by your business state abbreviation (must be capitalized). For example: Merchant ID# 12345 located in Illinois - Login is 12345 with a password of 12345IL. If you cannot locate this information, you can call our dedicated Compliance Center at (855) 826-2128 to obtain it. Please note that if you have two merchant accounts, they can be linked together where you only have one login and one questionnaire to cover both. You can contact EpicPay or SecureGive to check on this.

Login Example:

Username = EpicPay Merchant ID Ex: 12345

Password = 12345TX (Last 5 of Merchant ID + State Abbreviation where you’re located)

Once logged in, you will be prompted to change your password.

Welcome to your PCI Compliance Tool!

Choose “Get Started”

Part 1: Merchant Information

Verify that the Merchant Information is correct. If changes need to be made, click on the “Edit” option in the upper right-hand corner to make any updates to the Merchant Information.

Part 2: Type of Merchant Business

You will now choose which type of Merchant Business applies to your company.

Part 3: Relationships

Does your company have a relationship with one or more third-party service providers (e.g. gateways, webhosting companies, airline booking agents, loyalty program agents, etc.)? Answer Yes

Does your company have a relationship with more than one acquirer? Answer No

Part 4: Processing Solution

Now choose how you process payments

Moto/E-Commerce?

During the payment process, the consumer’s browser is redirected to a checkout/payment page (URL or iFrame) that is controlled entirely by a PCI-Compliant third party service provider.

Do you store any sensitive cardholder data electronically? Answer = NO

How do you process payments?

Moto/E-commerce

Answer = Hosted Payment and iFrame

Please enter your Integrated Payment solution information.

Service Provider: EpicPay

Service: PCI DSS Services: Merchant Services, Payment Gateway/Switch, Payment Processing: Internet / e-commerce;

**Once Part 4 has been completed, you must agree to the Terms & Conditions in the bottom left hand corner and then you will choose Save & Continue to proceed to the PCI Questionnaire.

Part 5: Eligibility

This is where you will see the SAQ Questionnaire that suits your processing methods.

SAQ-A: Should be the Questionnaire that fits your processing methods.

Confirm your eligibility to take questionnaire A

Here you will be asked several questions about how you process. If all is true, check the box on “I agree that the statements above are true”, and then choose Continue to proceed to the questionnaire.

Part 6: Questionnaire

You will be prompted to answer various questions relating to protection of cardholder data. You should be able to answer “I attest that I have read and adhere to the requirements in this section” to all questions taking into consideration the following things:

  • EpicPay provides immediate encryption of all card data and it is not stored on your computer.

  • All our systems are PCI compliant and provide a point to point encryption through to the processor.

  • Your Responsibility is to be sure that your internet network and everything connected to it is secure.

Review and Sign

Congratulations! You have completed the Questionnaire, you will need to review and e-sign this form as a declaration of your status with the payment card industry.

Now you will have the option to print or email a copy of the Questionnaire, Attestation of Compliance, and Certificate of Validation.

Congratulations! You are now PCI Compliant. Please remember todays date, as you will have to re-validate your PCI Compliance every year to stay in Compliance.

If you have any questions or need assistance with your PCI Questionnaire or Scans, please contact Aperia at (855) 826-2128.

Did this answer your question?