On Monday, June 15th,
MasterCard Worldwide announced that Level 2 merchants must
validate PCI compliance through an on-site review conducted by an approved PCI Qualified
Security Assessor such as Coalfire. The deadline for completing this review is December
31, 2010. Prior to this announcement, Level 2 and 3 merchants complied with MasterCard's
PCI mandate using the Self-Assessment Questionnaire process. This change requiring
on-site reviews will cause many merchants to carefully examine their PCI program
and make significant adjustments to avoid penalties and sanctions for non-compliance.
Backed by the real-world experience gained through completing thousands of assessments
as a PCI Qualified Security Assessor (QSA), Coalfire developed RapidROC™ to help
make managing PCI compliance inexpensive, effective, and easy. Our RapidROC™ service
combines online tools and our QSA support to help you plan, analyze, track, and
monitor your PCI compliance program -- helping you reduce costs, time, and frustration.
Benefits of the Coalfire RapidROC Approach
- Manage your PCI requirements, evidence, and reports within a dedicated smart portal
- Includes annual network penetration testing
- External quarterly scans on up to 10 IP addresses
- Onsite assessment and assistance from Coalfire’s certified QSA resources
- Centralize your PCI compliance with a single source, single portal
Centrally Track and Manage your PCI DSS Requirements
RapidROC™ is built within Coalfire’s Navis™ web-based compliance platform. Navis
incorporates an intelligent knowledge engine that identifies your key payment card
assets, essential DSS controls, and the recommended evidence of control needed to
carry you through an onsite assessment. This portal also allows you to directly
interact with certified QSAs, so help is only a click away!
- Document and manage the challenging aspects of PCI compliance, like remediation
planning and compensating controls
- Generate real-time gap analysis reports to track assets, controls, and evidence
- Centrally manage the materials and evidence needed to support your year-over-year
onsite assessment
- Access a resource library of PCI compliant policies, procedures, and other documents
Coalfire’s RapidROC™ service bundles all of the major services you need to complete
your PCI onsite assessment and other aspects of PCI compliance, including:
- Annual network penetration testing
- Quarterly external network scans
- Cyber Insurance to protect you in case of an incident
- Onsite review
For more information about Coalfire’s
RapidROC™ Program, please download our brochure.
Need help or assistance understanding the new requirements? Click here to ask a question or to have a Coalfire compliance specialist contact you.