SEC
HomeCybersecurity & Compliance
PCI DSS · SOC 2 · GDPR · DORA · NIS2

Cybersecurity& Compliance

Independent assessments against payment-industry, financial, privacy and EU cybersecurity requirements: from scope and gap analysis to readiness for formal certification or attestation.

Services

Compliance assessmentswe deliver

DSS
PCI DSSPCI DSS Compliance Assessment

Compliance audit against PCI DSS for organisations that store, process or transmit payment card data. Assessment of infrastructure, processes and security controls, with preparation for formal validation of compliance.

PIN
PCI PINPCI PIN Security Assessment

Security assessment of PIN processing, cryptographic keys and payment infrastructure against the PCI PIN Security requirements.

3DS
PCI 3DSPCI 3DS Security Assessment

Security audit of 3-D Secure components and infrastructure, including access control, cryptography, network security, monitoring and vulnerability management.

SOC 2
SOC 2 Type I / Type IISOC 2 Readiness & Assessment Support

Readiness assessment for SOC 2 against the Security, Availability, Confidentiality, Processing Integrity and Privacy criteria, including control analysis and preparation for independent attestation.

GDPR
GDPRGDPR Compliance Assessment

Comprehensive GDPR compliance assessment: personal data processing, ROPA, DPIA, data subject rights, third-party management, international transfers and information protection.

SWIFT
SWIFT CSPSWIFT CSP Independent Assessment

Independent assessment against the SWIFT Customer Security Controls Framework (CSCF), including protection of SWIFT infrastructure, access management, monitoring and incident response.

HIPAA
HIPAAHIPAA Compliance Assessment

HIPAA compliance assessment for organisations handling medical and personal information, covering administrative, technical and physical safeguards for PHI/ePHI.

DORA
DORADORA Compliance Assessment

Assessment against the Digital Operational Resilience Act: ICT risk management, incident management, business continuity, resilience testing and ICT third-party risk.

NIS2
NIS2NIS2 Compliance Assessment

Assessment against NIS2 for cybersecurity governance, risk management, incident response, business continuity, supply-chain security, access control and protection of information systems.

Approach

Four stepsto compliance

01
Scoping

Systems, sites, data flows and the applicable framework defined; fixed offer issued.

02
Gap assessment

Controls, processes and evidence checked against the requirements; findings prioritised.

03
Remediation support

Action plan and guidance while you close the gaps; evidence prepared.

04
Formal assessment

Independent assessment, report or readiness for certification and attestation.

Request acompliance assessment

Tell us which framework you need and how your systems are organised: we define the scope and the assessment type.

  • Scope and gap analysis
  • Remediation plan with priorities
  • Fixed offer within one business day
By sending the form you agree to the processing of the data for preparing a quotation.