 |
|
 |
 |

Compliance Services
PSC provides specialist assurance services related to both industry and governmental compliance criteria complimenting our payment and security services. With expertise in the technical and business management of companies accepting or processing payments, PSC is uniquely qualified to address this growing demand.
PSC services include compliance-related audits and reporting to relying parties.
Payment Card Industry Data Security Standard (PCI DSS) for Service Providers, Processors, and Merchants
PSC is certified globally by the PCI Security Standards Council as a Qualified Security Assessor Company ("QSAC") and as an Approved Scanning Vendor ("ASV") to provide assessment and network scanning services on behalf of the major credit card companies, including:
- PCI Security Standards Council - Payment Card Industry (PCI) Data Security Standard for Visa, MasterCard, American Express, Discover and JCB
- Penetration and Vulnerability Scanning Services
- Visa CISP and AIS, MasterCard SDP and American Express DSOP
- Verified by Visa (VbV) and 3D Secure for Visa
- Visa PIN Security Assessments
Payment Application Best Practices (PABP) for Software Vendors and Payment Software Companies
PSC is a Qualified Payment Applications Security Company ("QPASC") and a Qualified Payment Applications Security Assessor ("QPASA") for Visa globally.
International Standards
PSC staff has direct experience in the readiness and assessment of important international standards, including:
- ISO 17799:2005 and ISO 27001
- ISO 9000
- ISO 9564
Government Criteria
- HIPAA - Health Insurance Portability and Accountability Act data security requirements
- SOX - Sarbanes-Oxley and corporate governance related to information security
- GLBA - Gramm-Leach Bliley Act
- European Union Data Directive
Assurance Specialist for Accounting Firms
As qualified specialists in information security and electronic payment systems, PSC is uniquely capable of assisting public audit firms with readiness and fieldwork during assurance engagements, including:
- SAS No. 70 Type I and Type II
- AICPA trust services, including SysTrust, WebTrust and WebTrust CA
- Unusual engagements involving payment systems
- Attestation examinations
- Agreed-upon procedures
- Security penetration procedures
- Forensic examination of payment systems
- Forensic audit engagements
- Technical due diligence
- Management and organizations evaluations
- Note: A licensed accounting firm must be involved in these engagements. PSC works as a technical specialist to help Clients prepare for these audits and to aide the accounting firm given our technical expertise in payment systems and security.
|
 |
 |

|
 |