What should a QSA know?

At Blackfoot we believe a QSA should be a consultant first, and a QSA second. Our role is to help you navigate the sometimes contradictory requirements of the PCI standard and work out how to align compliance with your business.

Our QSAs have at least five year’s experience in general information security consulting as well as experience in PCI. Blackfoot is a business enabler, not a compliance auditor and our approach is usually to determine how to minimise the amount of cardholder data our client’s retain.

Leave a Reply