What is a PCI Audit?
A PCI Audit assesses the security of a company’s credit card processing system. It ensures that all point-of-sale systems are running effectively and in compliance with industry standards. An organization’s IT infrastructure is examined to discover whether operations meet the standard for cardholder information security.
According to PCI Compliance, Level 4 Merchants (small and medium sized businesses) have specific steps to follow to satisfy PCI DSS requirements. Varsity’s team of expert professionals will ensure proper completion of all necessary steps as laid out or which may arise through the process.
- Complete the self-assessment Questionnaire according to the instructions it contains.
- Complete and obtain evidence of a passing vulnerability scan with a PCI SSC Approved Scanning Vendor (ASV). Note scanning does not apply to all merchants, if required.
- Complete the relevant Attestation of Compliance in its entirety (located in the SAQ tool).
- Submit the SAQ, evidence of a passing scan (if applicable), and the Attestation of compliance, along with any other requested documentation, to your acquirer.
PCI Audits must be completed by qualified security assessors when they are being conducted as part of PCI DSS requirement. Varsity Technologies is full adept and certified to conduct a PCI Audit for an organization as cybersecurity technicians and assessors.