Tokenization
Tokenization is the process of turning sensitive data into non-sensitive data called "tokens" that can be used in a database or internal system without bringing it into scope.
•It can be used to secure sensitive data by replacing the original data with an unrelated value of the same length and format.
•The tokens are then sent to an organization’s internal systems for use, and the original data is stored in a secure token vault.
•The purpose of tokenization is to swap out sensitive data—typically payment card or bank account numbers—with a randomized number in the same format but with no intrinsic value of its own.
•Tokenization is the process of removing sensitive data from your business systems by replacing it with an undecipherable token and storing the original data in a secure cloud data vault.
Token will be unique for a combination of card, token requestor (i.e. the entity which accepts request from the customer for tokenisation of a card and passes it on to the card network to issue a corresponding token) and device (referred hereafter as “identified device”).
• With tokenization allowed by RBI, when we will submit our card details on the merchant website then a token will be generated by the card networks (VISA/MASTERCARD) and it will be sent to our mobile and this token then we will enter on the merchant website and the merchant website will not be allowed to store our exact card details.
•Card Issuers (Banks), Card Networks (Mastercard/Visa) can now offer tokenization services and they will be called Token Service Providers (TSPs).
Comments
Post a Comment