• Free Tools and Trials
Easy-to-Use, Cost-Effecective and Accuccuccurate
PCI Compliancece — On Demand

The Payment Card Industry Data Security Standard, known as PCI DSS, provides
organizations the guidance they need to ensure that credit cardholder information is kept secure from possible security breaches.

QualysGuard® PCI provides businesses, online merchants and Member Service Providers the easiest, most cost-effective and highly automated way to achieve PCI DSS compliance. QualysGuard PCI draws upon the same highly accurate scanning infrastructure and technology as Qualys’ flagship solution, QualysGuard – used by thousands of organizations around the world to protect their networks from the security vulnerabilities that make attacks against networks possible. Qualys is an Approved Scanning Vendor (ASV), and is fully certified to assess PCI DSS compliance.

QualysGuard PCI streamlines business operations related to PCI compliance and validation for merchants and acquirers, all from a combined collaborative application with automated report sharing and distribution. Merchants who use Qualys Guard PCI can easily identify areas in the SAQ where they may not be meeting compliance requirements and are then presented with technology solutions that will help them complete their compliance validation. Acquirers who use QualysGuard PCI now have an easy way to validate key risk areas contained within their merchants’ PCI DSS SAQ. This component of the application will allow acquirers to make more informed risk decisions and be able to manage the compliance risk in their merchants’ portfolio more effectively.

QualysGuard PCI is well-suited for any organization that must achieve PCI compliance, and is ideal for small and mid-sized businesses, consultants and other organizations that must:
  • Protect cardholder information and keep networks secure from attacks
  • Complete an annual PCI DSS Self-Assessment Questionnaire
  • Pass a network security scan every 90 days by an approved
    scanning vendor
  • Maintain secure web applications according to PCI Requirement 6.6
  • Document and submit proof of compliance to acquiring banks
Core Benefits and Features of QualysGuard PCI Compliance:
 
Key Benefits
  • Achieve PCI compliant status in 3 easy
    steps and secure your network
  • Turnkey deployment requires no software
    to deploy or maintain
  • Discovery of live devices to help merchants define systems that are in scope for PCI
  • Unlimited, highly accurate, on demand network security scans
  • Provides highly detailed remediation instructions to quickly eliminate identified security threats
Fully Integrated Self-Assessment Questionnaire
  • Online version of the PCI Security Council Self-Assessment Questionnaire (SAQ v1.2)
  • Questionnaires can be collaboratively viewed and shared by multiple users
  • Automated referral program where merchants connect directly with partners offering PCI DSS solutions
  • Merchants can upload evidence to support SAQ validation in multiple formats including documents and images
  • PCI Connect technology partners can provide XML uploads from their solutions for SAQ validation
Remediation
  • Streamlined vulnerability remediation through
    comprehensive, step-by-step instructions
  • Follow-up scans for seamless verification
    of remediation efforts
  • Submit false-positive requests directly
    via the user interface to Qualys Technical
    Support for quick resolution
QualysGuard PCI Pricing
QualysGuard PCI is available as part of the QualysGuard Security & Compliance Suite. QualysGuard PCI is sold as an annual subscription per IP or per Web application, includes unlimited scans and 24x7 support and updates.
 




Download a .pdf printable version

 
On Demand Network Security Scans
  • Scans can be scheduled to run automatically or preformed on demand
  • PCI DSS-defined vulnerabilities are
    continuously kept up to date
 
Web Application Scanning
  • Secure Web Applications to meet PCI 6.6 Requirements
  • Scan vulnerability types within any application (built or customized in-house, or purchased)

 
Compliance Reporting & Submission
  • QualysGuard PCI generates reports
    automatically from any Web browser
  • PCI Technical Report is used to identify and prioritize remediation
  • PCI Executive Report is submitted directly to your acquiring banks as proof of PCI compliance
  • Automatically submit your scan results and questionnaire to your acquiring banks
 
Maximum Security
  • Data protection provided by SAS 70 II audited security architecture
  • Tamperproof architecture ensures that scan results are never manipulated
 
Instant Deployment, Global Scalability
  • SaaS delivery model requires no software to deploy and manage
  • Authorized users can conduct vulnerability
    and Web application scans from anywhere
    using a Web browser
 
Management
  • Multiple user support for effective collaboration on PCI compliance
  • Easily add banks and assigned merchant ident- ification numbers for various credit card types
 
Customer and Technical Support
  • Online help is available throughout the
    application
  • E-mail and telephone customer support is
    available 24 hours a day, 365 days a year