Professional Services
PCI Compliancy Assessment
“Prevent security fraud for organizations that process card payments”
Future Com will prepare the client for the PCI audit by:
- Clarifying the PCI DSS requirements
- Identifying areas for remediation
- Creating a strategic roadmap to help ensure compliance
Companies are faced with challenges to comply with PCI DSS (Payment Card Industry - Data Security Standard) to reduce the opportunity for potential fraudulent situations to occur. The following list is a sample of challenges that impact companies:
- Monitoring & logging of all access and processing of cardholder data
- Encrypting cardholder data, both in ‘At Rest’ and ‘Transit’
- Controlling and eliminating cardholder data from log files, back up files, archives, onsite and offsite storage, etc…
- Ensuring PCI compliance for third- party partners that process data on behalf of the merchant
- Using data containing personal information copied from production systems to unsecured test and development environments for testing
Future Com will help organizations with the PCI compliance needs, and protect electronic cardholder information. Future Com will evaluate PCI DSS compliance using the PCI DSS Control Objectives which includes twelve (12) areas of requirements.
Being in the industry for over fifteen years, Future Com recognizes the challenges faced by today‟s IT and compliance managers, and system administrators as well as the need for proper evaluation of PCI data security. Too often companies spend a great deal of money on equipment that is installed and configured utilizing basic features, and evolved network architectures. With certified network engineers, Future Com can address these issues through professional services that help tools comply with PCI, reduce the risk, improve security controls, and ensure correct deployment, tuning and knowledge transfer. IT administrators live in a “Perception is Fact” world and when companies spend money on solutions that is what they expect…. solutions, not equipment. Future Com is ready to help you comply with PCI DSS, maximize resource utilization, simplify your operation and improve network security.
Scope of Engagement
Future Com will provide this service up to 4 week(s) of onsite service for the assessment and a follow up meeting for presentation of analysis and recommendations.
Tasks
To sufficiently evaluate the PCI compliance level across the client‟s enterprise, Future Com conducts an assessment identifying gaps to evaluate the client‟s ability to meet the PCI DSS Control Objectives.
Future Com’s Security Technical Analyst(s) will work with your executives, IT and IS staff, and business units to assess the current security health of the implemented security controls and to make best practices recommendations for security improvements including PCI specific requirements. This engagement will consist of the following:
-
Discover PCI DSS security controls in the current environment
- Identify the scope of the PCI assessment
- Review and understand the current security controls implemented
- Complete the PCI Self Assessment Compliance Questionnaire
-
Review current PCI DSS security controls environment
- Analyze ineffective security controls and recommend an action plan for remediation
-
Recommend improvements
- Create a strategic roadmap that will be a blueprint regarding the necessary steps needed to comply with PCI DSS and maintain that compliance
Deliverables
PCI Self Assessment Compliance Questionnaire
PCI Roadmap to Compliancy
Professional Services Ordering Information
FCS-PROFSVCS-PCI-20
Additional Related Future Com Professional Services offerings:
HIPAA Compliancy Assessment
SOx Readiness Compliancy Assessment
Network Optimization Assessment
Wireless Site Survey & Security Planning
McAfee ePolicy Orchestrator Audit
Content Filtering
Information Leak Protection



