Compliance frameworks, security audits, and quality certifications this company maintains.
Global Payments holds PCI DSS Level 1 certification as a payment processor handling billions of transactions annually across Heartland, TSYS, and OpenEdge platforms, subjecting the company to quarterly network scans and annual QSA audits.
Global Payments' SOC 1 Type II attestation covers TSYS issuer processing controls, required by every bank client whose financial statement auditors must review controls at service organizations handling card transaction processing.
Global Payments holds SOC 2 Type II across its cloud-hosted merchant processing and issuer platforms, providing enterprise merchants and financial institutions with assurance of security and availability controls.
Global Payments is ISO 27001 certified across its global operations in 170+ countries, providing a consistent information security management framework for merchant and issuer client data across all regions.
Global Payments processes EU cardholder and merchant data in compliance with GDPR, with data processing agreements covering its European merchant acquiring and TSYS issuer processing operations in the region.
Regulatory
NACHA Certification
CertifiedGlobal Payments' Heartland segment is NACHA-certified for ACH payment origination, enabling payroll processing and B2B payment services for 400,000+ small and mid-sized business clients.
Regulatory
PSD2 Compliance
CompliantGlobal Payments complies with PSD2 across European merchant acquiring operations, supporting 3DS2 strong customer authentication and open banking payment flows through GP Commerce and EVO Payments platforms.
Global Payments holds ISO 22301 business continuity certification across data centers supporting TSYS issuer processing, ensuring payment processing resilience for bank clients whose cardholders depend on 24/7 availability.
Global Payments complies with the California Consumer Privacy Act (CCPA) and CPRA for consumer data processed through its US merchant acquiring and payment gateway operations, honoring California consumer privacy rights for cardholder and account data.
Global Payments applies the NIST Cybersecurity Framework across its global payments infrastructure security program, using the Identify Protect Detect Respond and Recover functions to manage cybersecurity risk across its acquiring issuing and software business units.