PCI DSS Compliance
PCI DSS 4.0 Compliance Services
We provide PCI DSS Compliance Services on full time or project basis customized to suit your requirements and needs.
Below is a list of PCI DSS Compliance services we can provide to support your project team.
Manage planning and execution of your PCI DSS program working with your QSA and internal teams to achieve attestation of compliance (AOC) for your business.
This includes the following services performed by ISA, PCIP certified personnel.
-
Inventory Asset Collection for Scope Development
-
PCI Scope locations and CDE inventory
-
Card Data Environment Inventories for sampling
-
RFI creation, assignment, evidence collection and progress reporting
-
Evidence review for completeness in meeting PCI requirements
-
Site and Process Interview scheduling and management
-
Day to day RFI management working with business and technical subject matter experts in completing PCI requirements.
-
Compensating Control Worksheet(CCW) creation and acceptance
-
Targeted Risk Analysis (TRA) creation and updating
-
Scheduling and facilitation of Company and QSA meetings
-
Identifying and resolving identified issues around PCI DSS compliance
-
Completing assessments on-time and conducting post mortem activities for continuous improvement
-
Other activities as needed to improve program and cyber security posture
-
Identification of opportunities to streamline or automate current PCI processes
