Blackboard Updates Transact Commerce App for Compliance with PCI Standards

Blackboard has released version 3.5 of Blackboard Transact, a set of applications that provides commerce and security management for campuses. The primary focus of the new edition is its compliance with the Payment Application Data Security Standard (PA-DSS), which enables the institutions that use it to comply with the Payment Card Industry Data Security Standard (PCI-DSS). The goal of PA-DSS is to help software vendors and others develop secure payment applications that don't store prohibited data and ensure their payment applications support compliance with the PCI DSS. Campuses are encouraged to use PA-DSS-compliant applications in their payment environments or risk eventually being denied the ability to access credit services by their credit card companies.

According to the company, release 3.5 received validation from Trustwave, a security assessor company, and acceptance from the PCI Security Standards Council.

"Payment application security compliance is a very important initiative for our university," said Stacie Gomm, associate vice president for IT at Utah State University. "Our Controller's office is driving this initiative to ensure that all of our financial systems and processes are PCI compliant. The enhanced security features of the Blackboard Transact platform are an important step towards compliance for our campus-wide ID card solution."

The Blackboard Transact platform has two primary modules. The Commerce Management module facilitates campus ID card issuance; on-campus, off-campus, and online commerce; cashless payment processing for dining, bookstore, vending, laundry, copy, print and parking services; financial reporting; and self-service account management. The Security Management module provides features to monitor door access control, manage video surveillance, and perform mass notification capabilities.

The new version also introduces capabilities to support enterprise-wide compliance policies and risk management; adds improved database audit logging; provides user account and password features including forced complex passwords, limited repeat access attempts, and account deactivation after 90 days of no use; and includes rewritten user documentation.

About the Author

Dian Schaffhauser is a former senior contributing editor for 1105 Media's education publications THE Journal, Campus Technology and Spaces4Learning.

Featured

  • digital brain integrating legal regulation and security interface

    Agentic AI Moves from Pilot Phase to Production, Bringing Governance to the Forefront

    New research from Caylent, an AI-focused Amazon Web Services Premier Tier Services Partner, found that enterprises are already moving agentic AI beyond pilots and into production environments. At the same time, organizations are putting strict conditions around autonomy, making governance and control the next major challenge for enterprise AI adoption.

  • Silhouettes of business professionals stand against a blurred futuristic city skyline at night, with a glowing digital network data connection

    It's Time for Higher Ed to Get Serious About AI Strategy

    Without a coordinated strategy that involves multiple academic and administrative units across the entire campus, colleges risk wasting resources, duplicating efforts, and ultimately failing to deliver on the promise of deploying technology to improve learning and operations.

  • cloud computing circuit board background

    Report: Cloud Crime on the Rise as Attackers Exploit Trust

    CrowdStrike's 2026 Threat Hunting Report traces a multiyear shift from conventional intrusions toward attacks that exploit trusted identities, cloud services, AI systems and software dependencies.

  • abstract converging light streams and particles

    Nvidia Releases Nemotron 3.5 Lightning Open AI Model

    Nvidia has introduced Nemotron 3.5 Lightning, a new open AI model designed less as an all-purpose answer engine than as a fast workhorse inside long-running AI agent systems.