Blogs by Category: 1
  • News
  • Blog
  • Help & FAQ
  • Contact Us
  • 866-493-7037
    If you have any questions or need immediate assistance, we’re here to help you.

    Our sales staff is available to take your call Monday through Friday, 9:00 AM - 5:30 PM Eastern Standard Time.
Follow Us: Follow ShopVisible on Facebook Follow ShopVisible on Twitter
Home >> ShopVisible Blog

ShopVisible Blog


Subscribe
Include comments
Archive
2013
 April (2)
 March (11)
 February (3)
 January (5)
 
2012
 December (3)
 November (7)
 October (5)
 September (6)
 August (1)
 July (2)
 June (4)
 May (7)
 April (3)
 March (8)
 February (2)
 January (3)
 
 
Recent Posts
ShopVisible’s First Quarter Marked By Growth, Innovation
  Comments: 0
  Rating: 0 / 0
TheLatinProducts.com Launches New Commerce Site
  Comments: 0
  Rating: 0 / 0
Is Same Day Delivery The Next Big Thing?
  Comments: 1
  Rating: 0 / 0
ShopVisible Publishes Influence & Impact Report
  Comments: 0
  Rating: 0 / 0
MobileShopTalk : Mobile Payments Backed By Credit Cards? Not So Much
  Comments: 0
  Rating: 0 / 0
eCommerce Bytes : Mobile Shoppers Use Alternative Payments
  Comments: 0
  Rating: 0 / 0
Pymnts.com : ShopVisible Publishes Influence & Impact Report
  Comments: 0
  Rating: 0 / 0
Advancing Your SEO: Best Practices For Better Search Results
  Comments: 2
  Rating: 0 / 0
2013 World Alliance Conference Keynotes Top National Business Leaders
  Comments: 0
  Rating: 0 / 0
Online Retailing: 2012-13 E-commerce Award Winners Announced
  Comments: 0
  Rating: 0 / 0
 
Authors
BC (2)
Bharat C (2)
DannieB (32)
e-commerce info (1)
E-Commerce Information (1)
Emma G (1)
JVM (19)
Kendrick (1)
Kendrick Woolford (2)
Lauren Smith (40)
Marketing (107)
marketing@shopvisible.com (3)
Nithya (1)
PAN Communications (1)
Sean Cook (2)
SEO Information (1)
Stacy Shade (6)
The Frog (4)
Webster J Frogg (10)
Will Devlin (4)
 
The Facebook Like Button's Effect In Ecommerce
By Lauren Smith
12/3/2010 1:14:00 PM  

The recent introduction of the Facebook "Like" button to over 50,000 websites is quickly changing the way many customers approach their online purchases. No longer do customers solely depend on word of mouth or expert product reviews from publications such as Consumer Reports. Instead, they can instantly see purchases and reviews from people in their social network. By adopting the “Like” button technology on their websites, retailers have the capability to reach a broader audience than ever before.


Consumers can make a purchase online and click the “Like” button to share the item they just purchased on Facebook. Not only are they showing what they purchased, but they’re also creating a personal endorsement. According to a recent Nielsen study, ninety percent of customers are most likely to trust a review from someone they know. Instead of depending on other customers to make purchases and write a review, customers can instantly be introduced to a new retailer or product through their social network.


While the “Like” option is a great resource for consumers, it is extremely powerful for retailers. By allowing customers to connect with their Facebook account, retailers can gain access to valuable information from Facebook’s Open Graph platform. By using a consumer’s public interests and information, a website can be instantly customized to suit individual users. For example, if John lists skiing as an interest, then visits a sporting goods website through Facebook, that retailer can use the real time data to create a shopping experience unique to John. The front page can show the latest ski wear, popular gear purchases among others with the same interest, and the highest reviews. In his presentation at the Digital Consumer Marketing Summit in Atlanta, Loran McDonald of Silverpop stressed the importance of providing guidance. With so many stores, products, and options, the majority of consumers are seeking a bit of guidance. It’s critical that you as a retailer step in and provide sincere help to your customer. What does this add up to? More conversions.


Maintaining your brand’s presence on Facebook is a must. The opportunity to create a large following of consumers that are loyal to your brand can’t be dismissed. By allowing customers to “like” your brand, “like” individual product pages on your site, and share reviews and purchases with their network gives you an unlimited audience. With this capability, even small retailers without large advertising budgets can increase their visibility and revenue. Using Facebook interests as a starting point, ecommerce retailers can create personalized shopping experiences that brick and mortar stores simply can’t provide.

Currently rated 0 by 0 people

Tags: N/A
Categories: SEO, social media, Ecommerce Blog, Social Commerce
Bookmark and Share
Subscribe:  Email  | RSS  
What to Consider Before Going Mobile
By Kendrick Woolford
10/25/2010 11:11:00 AM  

Last week I attended a seminar hosted by Google entitled “Engaging the Connected Consumer with Mobile”. Elliot Nix, who conducted the session, shared some insightful tips for meeting the emerging mobile phenomenon head on.

It’s undeniable that 2010 has been a transformative year for mobile. The spike in acquisitions of mobile advertising companies, like that of Admob by Google, suggests that mobile is a trend to be reckoned with. Additionally, the explosion of new devices and their rapid adoption into mainstream use in 2010 simply strengthens the case for investing into a mobile campaign. Currently, 10-17% of traffic is of mobile origin but it is projected that by 2013 over 50% of site traffic will come from a mobile device.  Since 2008, there has been a 500% increase in mobile search. The numbers are pretty compelling; so what should you consider when thinking about going mobile?

Should I create an app or a mobile site?

As technology advances and we enjoy quicker load times the app becomes less relevant. Why? Apps were created in large part due to the lengthy browser load times available with the EDGE and first generation mobile technology. And while apps are undeniably an important step in the transformation of mobile use there will likely be a transition to the browser for search as we move beyond 4G speed.

How do I make a site ‘mobile optimized’?

First things first; look at how your site currently loads onto all the major mobile devices.  Do you like what you see? What behaviors do you want your consumers to engage in by looking at your site on a mobile phone? How can you make it easy for them to do that?

 

Create a site that is simple and intuitive to navigate. Don’t make them think hard on how to purchase something or find the nearest store.  Consider what you are selling and how to make your site relevant to both the product and the user. Perhaps your product isn’t appropriate to sell on a mobile device, but would a user like to research what you are selling? Make it easy for the consumer to get what they want out of your site. Create a site that is useful for a mobile device; think of the user first.


Currently rated 0 by 0 people

Tags: N/A
Categories: SEO, RSS, User Generated Content, PCI news, ecommerce news, Mobile Commerce, Ecommerce, Marketing, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
ShopVisible Powers Internet Retailer's Hot 100
By Marketing
12/7/2009 10:13:00 AM  

ShopVisible proudly announces that two of our ecommerce clients were honored in Internet Retailer Hot 100 Retail Websites 2010. This prestigious accolade is designed to showcase the best and brightest in the field of online retail. Internet Retailer sorts through an enormous amount of websites, submitted by readers, editors and industry experts each year to come up with the industry's best and brightest. In ShopVisible's case, we captured two of the highly coveted spots with Case-Mate and Bambeco, two progressively innovative pioneers online.

The Internet Retailer Hot 100 celebrates how "etailers responded to the recession with a burst of creativity" and identifies ten aspects of positive online commerce making ecommerce excel in spite of the economic downturn. ShopVisible clients Case-Mate and Bambeco are making waves online by:

 

  1. (1) Connecting with customers
  2. (2) Going mobile
  3. (3) Becoming expert sources for online retail
  4. (4) Making navigation more useful
  5. (5) Personalizing the online experience for shoppers
  6. (6) Making tough purchases easy
  7. (7) Selling themselves
  8. (8) Creating a sense of online urgency
  9. (9) Connecting the site and the store
  10. (10) Playing the value card

 

Case-Mate excels online for functionality, aesthetics and online selling prowess. Their inherent SEO driven platform provided by ShopVisible enables them to focus on driving sales, integrating into selling channels and thinking creatively as their ecommerce provider manages inventory, search and back-end business processes.

Bambeco is touching upon what is desirable in the market. Their eco-friendly online presence has helped them find a niche in the green retail and luxury home and decor spaces. Innovative and perceptive web marketing has helped enable Bambeco to sell creatively and with the help of ShopVisible, sell widely in an array of channels and online shopping marketplaces.

ShopVisible is so proud of our ecommerce family of clients, staff, developers and marketers. As we grow our brand we help push our etailing clients to the top of search positioning on the web. By being seen in all places online where shoppers are looking, vendors like Case-Mate and Bambeco can flourish.


Currently rated 0 by 0 people

Tags: ShopVisible, Internet Retailer Hot 100, Case-Mate, Bambeco, Ecommerce solution
Categories: SEO, RSS, User Generated Content, PCI news, ecommerce news, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
ShopVisible Launches PayLessDecor.com
By jvm
11/16/2009 9:09:00 AM  
Have you been looking for bamboo or faux wood blinds? Are you remodeling your home? Do you want to enhance your current window treatments with reasonably priced and aesthetically sound discount window fixtures?

Well look no further than ShopVisible's latest Ecommerce implementation, www.paylessdecor.com, a local expert in providing quality and affordable blinds, shades and curtains.

Payless Decor has long been selling their premium, designer and signature series window treatments but now, with the help of ShopVisible's Ecommerce solution, they are seeing better organic search results than ever before. Look at the below terms for which Payless Decor (seen recently in Ecommerce print and e-periodical, Internet Retailer) is showing up for in the realm of natural search; their free search positioning is stellar, with numerous page 1, position 1 results:

Keyword Pos
discount roller shades 1
discount bamboo shades 1
bamboo mini blinds 1
horizontal wood blinds 1
bamboo window covering 1
discounted window shades 1
discount roller shade 1
payless decor com 1
designer bamboo 1
window bamboo 1
1 2 premium 1
2.5 blinds 1


ShopVisible is proud to add another innovative addition to its Ecommerce family. Welcome Payless!

ShopVisible is a PCI compliant, Atlanta based Ecommerce and SEO technology firm, specializing in complex 3rd party shipping and accounting integrations.


Currently rated 0 by 0 people

Tags: ShopVisible, Payless Decor, Internet Retailer, Ecommerce solution provider
Categories: SEO, RSS, User Generated Content, PCI news, ecommerce news, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
PCI/Security Expert David Taylor Passes Away
By jvm
11/10/2009 10:32:00 AM  

As the ShopVisible Ecommerce Security team has been undergoing its PCI level one assessment we have become quite familiar with the late David Taylor via his prodigiously informative PCI Knowledge Base. The Payment Card Industry and the online security community in general lost a true scholar recently with the unexpected passing of fifty seven year old David Taylor, formerly of Protegrity and Gartner.

Those familiar with online Ecommerce security and PCI compliance have likely read posts from Taylor and heard him warmly and simplistically address the often misunderstood and esoteric realm of online security in his webinars. For online security laymen, Taylor provided a perspective that was grounded in data security standards and payment protection. Companies without large IT infrastructures and the human resources to undertake such projects as PCI compliance looked to Taylor for instruction on proceeding with security compliance and for definition of technical elements like File Integrity Monitoring, Application Firewalls and Penetration Tests.

David Taylor was indeed an expert in a field incomprehensible to many. In of his most recent posts from the PCI Knowledge Base, Taylor delved deep into Ecommerce security and organizational management as he addressed how PCI compliance can coalesce with risk management policy to better protect Ecommerce firms. His erudite approach to safeguarding online business was transparent and honest and will be well received for years in the fields of security compliance and online fraud prevention.


Currently rated 0 by 0 people

Tags: PCI, ShopVisible, David Taylor, PCI knowledge base
Categories: SEO, RSS, User Generated Content, PCI news, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
Ecommerce Security: PCI, Risk and Cost
By jvm
10/26/2009 8:45:00 AM  

PCI standards evolve but they do so often at a more languid pace than does the technology itself. Toss in economic considerations and you've got a real Ecommerce conundrum...

Recent literature published in the PCI Knowledge-base examines security and compliance migrations, cost reductions, and virtualization in recessionary times. Ecommerce solution provider ShopVisible offers up insights into its own PCI assessment process while trying to stay on top of recent Ecommerce security news in order to provide its clients and readers a glimpse into the rapidly blossoming arena of Ecommerce payment protection.

For many online merchants, or at least those wrestling with PCI and security measures to protect the CDE or cardholder data environment, the strident 12 requirements of PCI coupled with serious security budgets and IT infrastructure has created headaches and handicapped wallets...especially now. For many, as evidenced in the PCI Knowledge-base's expert’s blog, the arduous compliance process has become tarnished by a "checklist mentality and ineffective implementation and enforcement." It can be argued as a best practice in Ecommerce, or at least in an effort to pass compliance levels, that reducing risk and documenting to assessors that effective controls are in place exudes risk management policy, and thereby can help cut costs during the implementation.

PCI security experts have been discussing sophisticated elements of online commerce and their relation to development of both policy and technology. For instance, with regards to network segmentation and scope, the PCI Knowledge-base notes that “network segmentation is still not a requirement, for some reason, but it’s the single action that will save you the most money in the assessment.” In the PCI 1.2 version, segmentation is discussed and noted as being adequate along with the appropriate network diagrams if in place. One solution available to many merchants with the right budget is a variation of a network monitoring tool. These can “tell you, continuously, of attempts to access specific network resources.” They can in doing so show the assessor the positive impact of your network segmentation policy and thereby quantify risk and help cut back on PCI compliance costs.

Store sampling is another facet of the compliance process and in PCI 1.2, “the goal of the sampling process is to understand the risks posed by stores, since many security breaches originate there…” one here must show the assessor that store policy is commensurate with Ecommerce provider policy and high levels of consistency are maintained constantly again helping to reduce risk and cut costs. Again, automated tools can benefit providers here in an attempt to cut time and costs resources associated with manual configuration management. The PCI Knowledge-base notes that “the ability to place server configuration under change control is valuable for both PCI requirement 2, as well as requirement 10.” Automated tools will often justify a smaller sample size thus again reducing assessment fees.

The latest post from the PCI Knowledge-base also delves into discussion of compensating controls in the Ecommerce eco-system and states that “while compensating controls are too often used as a PCI cost cutting technique by merchants, they are really the heart and soul of risk management relative to PCI…a weak process for documenting and quantifying risk usually shows up in poorly defined compensating controls, which can cause compliance failure and additional assessment and technology costs.”

Basically, PCI compliance is an arduous process for any company regardless of organizational complexity, IT infrastructure and budget size. Above are just a few methods to try and cut back costs. When selecting an Ecommerce provider, it helps to do your due diligence and “in PCI 1.2, there is specific mention of the need to prove due diligence as to risk ‘prior to engaging’ service provider, and need to prove ongoing ‘monitoring’ of compliance status.” Keep monitoring policies up to date and maintain a vigilant stance with regards to data centers. Just because you’re PCI compliant does not mean that a hardened data center will mandate policy to keep you compliant. Prove to your data center, your assessor and to your clients that you care about risk. Show them PCI is an ongoing process and one dedicated to secure online transactions. The more safely your merchants sell, the more they will appreciate all your hard work!

ShopVisible is an Ecommerce solution provider intent on security, integration and SEO.

 


Currently rated 0 by 0 people

Tags: ShopVisible, PCI, Ecommerce solution, Ecommerce security, PCI Knowledge-base
Categories: SEO, RSS, User Generated Content, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
SaaS-based CyberSecurity: Ecommerce and PCI Options
By jvm
10/16/2009 12:27:00 PM  
Midsized Ecommerce firms and online retailers of varying tiers have a lot to manage these days, especially with regards to things like online security, consumer privacy and PCI compliance. Security deployments vary greatly for Ecommerce agents and their online selling customers. ShopVisible will below present three options for Ecommerce providers in their attempts at becoming PCI compliant on a high level and more imperative for many e-tailers, establishing strident security protocols and procedures either developed in house or from a 3rd party.

Concerns for choosing a security solution can vary dramatically depending on the organizational elements of the company such as size, revenue and client base, staffing, security expertise, solution deployment alacrity and ease/comfort with outsourcing items versus internally configuring them. With cloud based security solutions reaching their decade anniversary; many Ecommerce and security experts are going with Software as a Service tools while others opt for on-site solutions and hybrid models.

SaaS Ecommerce providers can equip eMerchants with a nearly hands-free approach to online security. Often meant for companies seeking out a "low initial purchase price, a reduced investment in IT, simpler deployments, and quicker upgrades...[SaaS based deployments are] ideal for companies with limited IT staffing and a less technical business focus, including retail services and health care," notes McAfee in its solution brief. Organizations searching for a software as a service solution may have fewer IT resources or time to manage large scale security projects. Support and management are often critical undertakings here and can be indeed a vast challenge for small teams with diverse foci. The initial start-up cost are often lower than other avenues for security as annual subscriptions are typically licensed and no on-site hardware is managed. This permits for off-site vulnerability scanning and penetration testing to remain compliant with processes like PCI DSS...

On-site security solution controls can be more malleable and offer more hands-on direction for an company. These often are associated with higher upfront costs and will require a bit more time to maintain and manage. They do however provide greater levels of security customization depending on the organizational needs. If a complex business and security infrastructure exists, one oin which data servers and mail servers are stored on the premises, a robust IT team is employed etc..., then on-site controls may be useful. This model can be more adaptable to changing and growing business needs for eample, in July 2010, when PCI will demand of its compliant supporters, a higher degree of payment card data protection.

Hybrid security models in Ecommerce can be best utilized to achieve "maximum flexibility, cost management, and compliance..." notes McAfee. A confluence of on-site measures and off-site data storage can be manipulated here to better support growing companies with expanding data needs. For example, in the case of ShopVisible, whose data centers are present in production, development and backup realms, coexists simultaneously in 2 countries and in 3 regions. Targeted PCI practices like intrusion protection (IPS) and intrusion detection (IDS) are coupled with the off-site penetration test via a hardware box installed in the data center. Blending data storage protection and internally wrought security protocols makes for a seamless and manageable Ecommerce solution.

ShopVisible is an Atlana, GA based Ecommerce solution provider located @ 1095 Zonolite Road, 30306.





Currently rated 0 by 0 people

Tags: ShopVisible, SaaS Ecommerce, PCI, cyber security, atlanta ecommerce
Categories: SEO, RSS, User Generated Content, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
Ecommerce News: Innovative Online Retail
By JVM
9/28/2009 7:34:00 AM  
ShopVisible tries hard to keep up with the latest buzz in Ecommerce news and address relevant content for its merchant base and other interested Ecommerce enthusiasts. Recently the CEO of Macy's addressed a retail conference in Las Vegas to highlight the importance of multichannel integration, a specialty of ShopVisible's Ecommerce solution.

Macy's CEO Terry Lundgren notes that "the power of Ecommerce extends far beyond the keyboard and onto the sales floor..." The company's new web presence encourages shoppers and browsers to offer up their own relevant content in the form of reviews and recommendations. Lundgren states that he was "worried about what customers would say on product reviews. We realized that if you start getting bad reviews on a product, get rid of that product. Stop doing business with that particular product."

Hubbies Smith of the Las Vegas Review-Journal shows that "Macys.com generated $30,000 in sales the first year...in 1996. Online sales now bring in about $1 billion in annual revenue...Through August, online sales increased 13 percent from a year ago..." Lundgren concludes noting "every dollar spent online influences $5.77 spent in the store over the next 10 days."

In related Ecommerce news, Forrester expert, Sucharita Mulpuru discusses how Ecommerce is indeed the bright side of retail. In her keynote address from shop.org's Annual Summit, Mulpuru delves into the significant strides being made in the Ecommerce realm that are helping to keep the retail sector afloat during these troubling economic times.

In the eyes of one Ecommerce expert, online retailers are:
  • resetting their goals: they are thinking ahead and altering standard business practices not to just emerge from the recession but in fact excel out of it...
  • alternatively assessing their competitors: looking at best practices and not just ROI driving methodologies; utilizing in some cases radical transparency as a means at the disclosure of innovation
  • developing their IT departments: folks are creating client enhancements and thinking ahead of the curve; they are testing in staging environments in an effort to provide solid QA in their production arenas
  • sticking together: they have realized that remaining close with brand loyal patrons and building upon existing relationships with their manufacturers is critical; add value to the selling arena and promote competitive pricing models 
  • blogging, tweeting, faceBooking and more: Mulpuru cannot address enough the significance of social media marketing as a form of enhanced and deliverable customer generated content; the 2 way street enables brands to promote and spread word of mouth while conversely, customers and loyal brand enthusiasts can share their positive feelings about the company
  • getting mobile: Mulpuru lauds the iPhone as a revolutionary device. She encourages Ecommerce merchants to develop mobile sites and focus on few click-thrus for checkout to enable seamless mobile purchasing and updating; Mulpuru notes that "email is web retailers best friend, but it's not the future..."
ShopVisible is an Atlanta based Ecommerce solution provider.



Currently rated 0 by 0 people

Tags: ShopVisible, Ecommerce News, Ecommerce solution, Atlanta SEO, Forrester, shop.org
Categories: SEO, RSS, User Generated Content, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
PCI 2010 and Beyond: Ecommerce Security News
By JVM
9/9/2009 11:42:00 AM  
For many Ecommerce merchants processing orders and maintaining a website is an immense time-consuming step to growing a business. Grappling with PCI compliance and delving deeper into its origins, existence and proliferation are another daunting task to say the least.

Recently the NRF or National Retail Federation issued a merchant survey investigating PCI compliance and small online retailers. Out the polled group, 19% of non-compliant merchants said they had little to no understanding of this payment security process that is becoming increasingly imperative today in Ecommerce. Another 26% stated they lacked “the financial or technical resources to meet the standard, which covers a dozen broad areas from physical and network security to protecting” the CDE or cardholder data environment and maintaining commensurately structured security policies. Interestingly however, 86% of those polled claimed to feel somewhat familiar with PCI and its Ecommerce requirements.

A burgeoning problem for many merchants is that PCI standards evolve as do online threats and the emergence of security standards for making online transactions. New requirements are forced upon retailers in an effort to better protect cardholder spending money online. Analogously, PCI is implementing regulatory changes that will also affect payment processors and software providers. In summer 2010, new changes will occur that will dramatically affect both small online merchants and enterprise-size larger retailers alike.

-Pending PCI reqs.: any payment software handling cardholder data must comply with the PCI subset, Payment Application Data Security Standard…
-Pending PCI reqs.2: imposed by MasterCard, all merchants accepting credit cards online and in particular, those larger companies (level II merchants) must use 3rd party auditors to assess their PCI compliance

What does this mean? For starters, smaller merchants will be taking on increased spending in order to remain compliant. Further, larger merchants will have to be assessed by outside parties and done so in a more stringent manner than previous iterations of PCI compliance mandated.

So how can merchants, small or large, reduce the heightened cost of Ecommerce and PCI compliance? Internet Retailer and PCI KnowledgeBase advise not to store cardholder information if at all possible. Currently, under the PCI mandates, only “retailer systems, networks, servers, databases and software-that hold cardholder data fall under PCI.” Maintaining a strict and structured distance from the CDE will encourage PCI audit exclusion for Ecommerce merchants, small or large.


***Chart created from Internet Retailer, “Don’t Look Now.” Don Davis, Sept. 2009, p. 21***



PCI Level
Annual Transaction Volume
IR's no. of Merchants
Compliance Cost

1
6 million cc
362
$450,000-4,400,000

2
1-6 million cc
702
$77,500-470,000

3
20,000-1 million cc/Ecommerce payment
2634
$19,250-72,000

4
under 20,000 Ecommerce; under 1 million total
6 million
under $5000

Rates of Compliance:
1-93%
2-88%
3-57%
4-NA

ShopVisible is an Ecommerce solution based in Atlanta, GA.

Currently rated 0 by 0 people

Tags: ShopVisible, PCI compliance, Ecommerce solution, Ecommerce security, CDE, Internet Retailer, Atlanta SEO
Categories: SEO, RSS, User Generated Content, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
Elements of Ecommerce Data Encryption
By JVM
8/13/2009 7:24:00 AM  
Securing Ecommerce database information is crucial for service providers and storefront hosts in an effort at preventing hacking and ensuring transparent data transfer. For Ecommerce provider ShopVisible, it is both optimal and advantageous to utilize TDE or Transparent Data Encryption. While processes such as these are blossoming continuously, it seems noteworthy to briefly hit upon past versions of the SQL server as well to better illustrate how Ecommerce protection functions have emerged and where the gaps still exist for things like PCI compliance.

SQL 2000: This version carries with it little to no encryption capability; code developers must create unique code for client applications to ensure data encryption.

SQL 2005: Here Microsoft procured a new encryption feature at the column level (or cell level) for sensitive data. In this case development applications encrypt the data at the database level, however, some degree of architectural tweaking is still needed internally to modify the process and to work with the 2005 version.

SQL 2008: This is where TDE comes into play and for companies like ShopVisible, if client database files were to become corrupted or stolen, Microsoft now has implemented new heightened levels of encryption protection in the Enterprise edition.

While the protective features of Transparent Data Encryption can become quite granular, there are several main features to highlight with regards to the ShopVisible Ecommerce platform.

    -merchant files and related data stored in the database are encrypted with real time IO encryption tools thereby ensuring that in order to restore the database, the user must possess the original encryption certificate and the master key

    -database level encryption occurs so the users utilize minimal resources for data retention and protection whereas in the past this was an arduously layered process
   
    -when working with the SQL 2008 version, there is no need for recoding or reconfiguring encryption applications

    -ease of implementation…

    -if in your Ecommerce ecosystem, processes such as database mirroring or log shipping occur naturally, the mutual correspondence between the two databases will be encrypted each and every time log transactions are sent

Upon the enabling (or disabling) of TDE, databases are marked as being encrypted and the server will commence a background thread often deemed an “encryption scan” which will then scan and encrypt all database files. Upon completion, all database files on disk become encrypted as will log files written to disk. At the page level database encryption of files is performed then encrypting the pages before they are ever written to disk and decrypted for memory storage. Utilizing TDE will not increase the database encryption size however.

Microsoft openly states that when enabling TDE, it is imperative for the user to back up both the certificate and private key related to it. If either of these are lost and not backed up in an appropriate manner database entry will not be possible.  Even in the case that TDE is no longer being used in the Ecommerce data transfer process, the encrypting certificate should be held by the developer or technical lead so that other related process can be turned on and off…



ShopVisible is an Atlanta, GA based Ecommerce solution provider intent on security, scalability and reliability.


Currently rated 0 by 0 people

Tags: ShopVisible, Ecommerce solution, Ecommerce security, PCI, TDE
Categories: SEO, RSS, User Generated Content, Ecommerce Blog
Bookmark and Share
Subscribe:  Email  | RSS  
 
 
 
Close

Contact Us

Tell us a little bit about what you are interested in so we can better serve you

Do you have an RFP you would like us to consider?

Please complete the contact form and indicate that you have an RFP in the message field. When we contact you, we’ll request a copy and respond with a customized solution to meet your needs.

You can get our RFP form here.

Would you like to speak to one of our platform consultants?

Please indicate that you would like to set up a call with one of our team members in the message field of the contact form. We’ll set up a time that’s convenient for you to show you the inner workings of the ShopVisible platform, and answer any technical questions you might have.