CFOtech UK - Technology news for CFOs & financial decision-makers
United Kingdom
BlackLine wins PCI DSS validation for card reconciliation

BlackLine wins PCI DSS validation for card reconciliation

Wed, 2nd Sep 2026 (Today)
Sofiah Nichole Salivio
SOFIAH NICHOLE SALIVIO News Editor

BlackLine has secured PCI DSS compliance validation for its PCI Detokenization Service, allowing it to support automated reconciliation of payment card transactions in workflows involving sensitive card data.

The move extends BlackLine's transaction-matching tools into areas where payment security rules have limited the data available for automated matching, particularly in high-volume operations.

Businesses that process millions of card payments can face significant manual workloads when even a small share of transactions fail to match automatically. In these environments, security controls designed to protect cardholder information can remove or restrict the data needed to reconcile payments efficiently.

BlackLine's PCI Detokenization Integration Service allows authorized users to access the payment card information required for matching while keeping the underlying cardholder data inside the customer's own environment. This is intended to help organizations automate more of the reconciliation process without moving sensitive cardholder data outside their systems.

The compliance validation is likely to be relevant for banks and other financial services groups, but BlackLine also pointed to retail, travel, hospitality, and leisure businesses as potential users. These sectors often manage high volumes of payment card transactions and can face operational strain when reconciliation depends on manual review.

Customer demand

BlackLine presented the validation as a response to customer requests to apply automation to more complex finance and operations tasks without weakening controls around sensitive information.

"Our customers are asking BlackLine to go deeper into some of their most complex operational workflows, and greater automation cannot come at the expense of security or control," said Owen Ryan, chief executive officer and chairman of BlackLine.

"This validation enables organizations to apply BlackLine's proven matching and reconciliation capabilities to more of the high-volume, sensitive workflows they manage every day. It expands where we can deliver value while maintaining the security and trust our customers demand," Ryan said.

PCI DSS remains an important benchmark for organizations handling payment card information and, in many settings, a requirement for suppliers involved in those workflows. Independent validation can therefore affect whether software providers are considered for projects involving card data.

That matters in finance departments and shared services operations, where reconciliation tasks sit alongside strict internal controls and external compliance obligations. In those settings, the ability to automate matching while keeping cardholder data within a customer's environment may help companies meet both efficiency and audit requirements.

Broader reach

The validation broadens the range of financial workflows where BlackLine can deploy its existing matching and reconciliation products. Rather than creating a new reconciliation product, the company is positioning the compliance milestone as a way to apply current tools to use cases that were previously harder to address because of data security constraints.

BlackLine serves nearly 4,300 customers across multiple industries. Its platform is used in finance functions spanning record-to-report and invoice-to-cash processes, and the latest validation signals a push into payment-related reconciliation work, where transaction volumes and the sensitivity of data can complicate automation.

Jill Knesek, chief information security officer at BlackLine, said the compliance standard remains a baseline requirement in many payment-card environments.

"For organizations managing payment-card information, PCI DSS is an important security standard and, in many environments, a prerequisite for technology providers supporting these workflows," said Jill Knesek, chief information security officer of BlackLine.

"This validation gives customers independent assurance that BlackLine has cleared that bar, allowing them to extend automation into sensitive financial processes with confidence," Knesek said.