E-Complish Achieves PCI DSS, HIPAA, SOC 2, and Nacha Recertifications - Insurance News | InsuranceNewsNet

InsuranceNewsNet — Your Industry. One Source.™

Sign in
  • Subscribe
  • About
  • Advertise
  • Contact
Home Now reading Newswires
Topics
    • Advisor News
    • Annuity Index
    • Annuity News
    • Companies
    • Earnings
    • Fiduciary
    • From the Field: Expert Insights
    • Health/Employee Benefits
    • Insurance & Financial Fraud
    • INN Magazine
    • Insiders Only
    • Life Insurance News
    • Newswires
    • Property and Casualty
    • Regulation News
    • Sponsored Articles
    • Washington Wire
    • Videos
    • ———
    • About
    • Meet our Editorial Staff
    • Advertise
    • Contact
    • Newsletters
  • Exclusives
  • NewsWires
  • Magazine
  • Newsletters
Sign in or register to be an INNsider.
  • AdvisorNews
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Exclusives
  • INN Magazine
  • Insurtech
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Video
  • Washington Wire
  • Life Insurance
  • Annuities
  • Advisor
  • Health/Benefits
  • Property & Casualty
  • Insurtech
  • About
  • Advertise
  • Contact
  • Editorial Staff

Get Social

  • Facebook
  • X
  • LinkedIn
Newswires
Newswires RSS Get our newsletter
Order Prints
April 19, 2022 Newswires
Share
Share
Post
Email

E-Complish Achieves PCI DSS, HIPAA, SOC 2, and Nacha Recertifications

Newswire.com
Payment solutions company continues to meet and exceed very stringent security standards

NEW YORK - April 19, 2022 - (Newswire.com)

Continuing a flurry of accomplishments that have also included acquisitions, new partnerships, and additions to its menu of solutions, E-Complish has - for the 13th consecutive year - been certified as compliant with the Payment Card Industry Data Security Standard (PCI DSS). Additionally, the payment solutions and services provider has been recertified for its compliance with standards contained in the Security Rule component of the Health Insurance Portability and Accountability Act of 1996 (HIPAA), as well as with SOC 2 criteria developed by the American Institute of CPAs (AICPA) to manage customer data based on five "trust service principles." It also successfully completed its annual Automated Clearing House (ACH) audit, ensuring its compliance with all rules and regulations set by Nacha, which governs the ACH network.

E-Complish remains fully adherent to DSS 3.2.1, the strictest, all-encompassing version of PCI-DSS standards to date. Developed and enforced by the PCI-DSS Standards Council, the PCI-DSS comprises a series of measures designed to thwart fraud. Merchants, payment processors, and credit card service providers are required to exercise these measures to safeguard and ensure consumers' credit card information security. While all businesses that accept, handle, process, or store credit card information must comply with these measures, the extent of required compliance varies by merchant level as categorized in the PCI-DSS.

E-Complish is a designated Level 1 PCI-DSS 3.2.1 Service Provider—the highest of four merchant levels. To hold this designation and to be certified as PCI-compliant, the company must undergo an assessment by a third-party Qualifies Security Assessor (QSA) to evaluate whether and to what extent it meets the requirements outlined in the 12 sections of the PCI-DSS 3.2.1. The requirements encompass more than 300 elements, and the QSA must obtain several thousand pieces of evidence and conduct a physical inspection in conducting its assessment.

In addition, the successful completion of a security assessment by a third-party firm also led to the recertification of E-Complish's compliance with HIPAA. Applicable to all entities that handle patients' protected electronic health information (ePHI), HIPAA comprises physical, network, and process security standards. These entities must, in accordance with the HIPAA Security Rule, implement and exercise administrative, physical, and technical safeguards to ensure the security of ePHI.

The HIPAA security assessment entailed an exhaustive, meticulous review of policies and procedures, network and data flow diagrams; physical and environmental security; disaster recovery backup processes; vulnerability management; penetration testing, system hardening standards, and other pertinent areas. The independent third-party security audit also closely examined E-Complish's patch management; access control; data storage, logging, auditing; security monitoring and incident response practices and methods.

Similarly, E-Complish's SOC 2 recertification follows an assessment by outside auditors who investigated the extent to which the payment solutions provider complies with one or more of the five trust principles based on systems and processes in place at the company. These trust principles include security (protection of system resources against unauthorized access), availability (accessibility of systems, products, or services as stipulated by contract or service level agreement), and processing integrity (offering complete, valid, accurate, timely, and authorized data processing). Two additional trust principles center on the preservation of data confidentiality (via encryption, network, and application firewalls, and rigorous access controls) and privacy (the collection, use, retention, disclosure, and disposal of customers' personal information in conformity with individual organizations' privacy notice, along with criteria outlined in the AICPA's generally accepted privacy principles. 

Rounding it out, the rules-based ACH audit, conducted by Accredited ACH Professional, included an in-depth examination of each facet of E-Complish's ACH operations, from receipt processes and internal and external origination to related agreements and forms. "Nacha requires every participating financial institution and Third-Party Sender/Service Provider to conduct an annual audit of its ACH operations and related processes," noted E-Complish ACH Analyst Jennifer Fiels, who headed up the AVH audit project. "Our successful completion of the audit is proof positive that we are compliant with the most current ACH rules and regulations, which can change over time."

Greg Gaines, E-Complish's Director of Compliance and Client Support, said the payment processing company has defined plans for adherence of the PCI-DSS, the HIPAA Security Rule, SOC 2, and Nacha rules and regulations. "Diligence on all four fronts remains the watchword for us, in keeping with our commitment to ensuring the security of all our customers' data—from credit card information to ePHI and beyond," Gaines noted. "PCI DSS, HIPAA, SOC, and Nacha rules and regulatory compliance are critical to our mission to help the merchants we serve and afford the same high-level protection to all its customers, clients, and patients."

E-Complish CEO and Chief Security Officer Stephen Price agreed, adding that "working with a certified PCI, HIPAA, SOC 2, and Nacha compliant payment processing company is the best defense businesses of all kinds can mount against compromise to the privacy and integrity of their customers' data—not to mention potentially devasting damage to their reputations." 

"The risk of data breaches and compromise is increasing every day and will continue to increase as perpetrators develop new schemes and ways to perpetuate them," Price said. "This makes it more important than ever for merchants to go the extra mile when it comes to data protection. Choosing a PCI-, HIPAA-, SOC 2- and Nacha-compliant payment processing partner is one effective way to do so. By certifying our compliance, we can be that partner now and going forward."

E-Complish Press ContactMarc Hopkins[email protected]
888-847-7744, ext. 205

Press Release Service
by
Newswire.com


Older

Fannie Mae Executes Credit Insurance Risk Transfer Transaction on $23.1 Billion of Single-Family Loans

Newer

AM Best Director to Join Private Equity & Life Insurance Panel at LIMRA-Hosted Conference

Advisor News

  • Trump targets ‘retirement gap’ with new executive order
  • Younger investors are engaged and advisors must adapt
  • Plugging the hidden budget leaks of retirement
  • Hagens Berman: Retired First Responders Sue Washington State over Rights to $3.3B Pension Funds Threatened by Lawmakers
  • Financially support your adult children without risking your future
More Advisor News

Annuity News

  • A new opportunity for advisors: Younger indexed annuity buyers
  • Most employers support embedding guaranteed lifetime income options into DC Plans
  • InspereX Partners with AuguStar Retirement for Strategic Expansion into Annuity Market
  • FACC and DOL enter stipulation to dismiss 2020 guidance lawsuit
  • Zinnia’s Zahara policy admin system adds FIA chassis to product library
More Annuity News

Health/Employee Benefits News

  • Health insurance quagmire: Clark County residents face difficult choices after Regence splits with Legacy Health
  • CareSource reverses course on recouping overpayments from some behavioral health providers
  • UHC claims ECU Health refused to continue negotiations
  • Rob Sand unveils water quality, public health plan
  • NC Senate aims to curb Medicaid costs and allow more insight into hospital charges
More Health/Employee Benefits News

Life Insurance News

  • Ann Heiss
  • Convertible market dynamics and the portfolio implications for insurers
  • Finalists announced for Lincoln's 2026 Best Places to Work
  • Investors Heritage Promotes Anna Reynolds to Senior Vice President and General Counsel
  • AM Best Affirms Credit Ratings of Old Republic International Corporation’s Subsidiaries
More Life Insurance News

- Presented By -

NEWS INSIDE

  • Companies
  • Earnings
  • Economic News
  • INN Magazine
  • Insurtech News
  • Newswires Feed
  • Regulation News
  • Washington Wire
  • Videos

FEATURED OFFERS

Why Blend in When You Can Make a Splash?
Pacific Life’s registered index-linked annuity offers what many love about RILAs—plus more!

Life moves fast. Your BGA should, too.
Stay ahead with Modern Life's AI-powered tech and expert support.

Bring a Real FIA Case. Leave Ready to Close.
A practical working session for agents who want a clearer, repeatable sales process.

Discipline Over Headline Rates
Discover a disciplined strategy built for consistency, transparency, and long-term value.

Inside the Evolution of Index-Linked Investing
Hear from top issuers and allocators driving growth in index-linked solutions.

Press Releases

  • Highland Capital Brokerage Acquires Premier Financial, Inc.
  • ePIC Services Company Joins wealth.com on Featured Panel at PEAK Brokerage Services’ SPARK! Event, Signaling a Shift in How Advisors Deliver Estate and Legacy Planning
  • Hexure Offers Real-Time Case Status Visibility and Enhanced Post-Issue Servicing in FireLight Through Expanded DTCC Partnership
  • RFP #T01325
  • RFP #T01325
More Press Releases > Add Your Press Release >

How to Write For InsuranceNewsNet

Find out how you can submit content for publishing on our website.
View Guidelines

Topics

  • Advisor News
  • Annuity Index
  • Annuity News
  • Companies
  • Earnings
  • Fiduciary
  • From the Field: Expert Insights
  • Health/Employee Benefits
  • Insurance & Financial Fraud
  • INN Magazine
  • Insiders Only
  • Life Insurance News
  • Newswires
  • Property and Casualty
  • Regulation News
  • Sponsored Articles
  • Washington Wire
  • Videos
  • ———
  • About
  • Meet our Editorial Staff
  • Advertise
  • Contact
  • Newsletters

Top Sections

  • AdvisorNews
  • Annuity News
  • Health/Employee Benefits News
  • InsuranceNewsNet Magazine
  • Life Insurance News
  • Property and Casualty News
  • Washington Wire

Our Company

  • About
  • Advertise
  • Contact
  • Meet our Editorial Staff
  • Magazine Subscription
  • Write for INN

Sign up for our FREE e-Newsletter!

Get breaking news, exclusive stories, and money- making insights straight into your inbox.

select Newsletter Options
Facebook Linkedin Twitter
© 2026 InsuranceNewsNet.com, Inc. All rights reserved.
  • Terms & Conditions
  • Privacy Policy
  • InsuranceNewsNet Magazine

Sign in with your Insider Pro Account

Not registered? Become an Insider Pro.
Insurance News | InsuranceNewsNet