ACI Worldwide, Inc.
VAMP Compliance Checklist for Merchants and PSPs
Pages
1
Time to read
1 min
Publication
Language
English
Pages
1
Time to read
1 min
Publication
Language
English
This guide outlines the VAMP compliance checklist for merchants and payment service providers (PSPs). It details various strategies for bot and enumeration mitigation, including monitoring authorization patterns, implementing rate-limiting, and utilizing machine learning to identify abnormal credential flows. The document emphasizes the importance of standard operating procedures (SOPs), training, and governance by recommending the documentation of VAMP definitions and conducting monthly reviews with stakeholders. Additionally, it discusses the necessity of collaboration with acquirers, suggesting the sharing of dashboard snapshots and establishing escalation paths. The guide also covers fraud prevention controls, advocating for the enforcement of 3DS v2 for card-not-present payments and the deployment of device fingerprinting and IP geolocation checks. Finally, it addresses dispute and chargeback automation, recommending the automation of evidence collection and the establishment of service level agreements (SLAs) for timely responses to representment requests.