URM
20 Case Studies
A URM Case Study
Century Mail, headquartered in Hong Kong, sells products to customers in Australia and New Zealand through phone, website, and mail order channels. The company needed help meeting PCI DSS requirements across its logistics and call centre operations, while managing reliance on third parties and multiple countries. URM was engaged to assess the environment and support Century Mail’s path to Level 1 merchant compliance.
URM carried out data flow analysis, gap analysis, segmentation work, remediation support, and a final onsite validation. A key recommendation was to use isolated virtual terminals on separate PCs in Hong Kong and the Philippines, allowing Century Mail to de-scope its cardholder data environment and align to SAQ C-VT requirements. With URM’s guidance, Century Mail completed remediation, trained staff, and successfully achieved a Report on Compliance (RoC).
Phil Gebbett
Director