Control Gap is Canada’s largest PCI compliance company
Control Gap is Canada’s largest PCI compliance company
PCI Compliance
There is no need to struggle with PCI DSS compliance requirements.
We help you along your journey to achieve and maintain compliance. Control Gap is Canada’s largest PCI (Payment Card Industry) compliance company with experts in PCI compliance validation and advisory services.
Advisory Consulting
Every organization has too few people and too many things to do. When new business or PCI initiatives develop, you need expertise capable of looking at all aspects of a project from a PCI perspective. Control Gap has the expertise and personnel to provide ongoing support when and as required.
Operational Compliance
Every team needs a good coach. Control Gap can be the coach to guide your business units to ensure continuous improvement and integration of PCI Controls into business as usual activities. We make your annual compliance effort less stressful and easier to maintain PCI DSS compliance!
Report on Compliance (ROC)
The PCI ROC is a point-in-time assessment, performed by our knowledgeable Qualified Security Assessors (PCI QSAs). We Leverage our experience and understanding to validate your environment against the PCI DSS. We ensure your review is thorough, defensible, and accurate to reflect the scope of your payment environment.
Self-Assessment Questionnaire (SAQ)
There are eight different SAQ questionnaires available and determining which one applies to you may be challenging. Control Gap can assist you with identifying the appropriate SAQ and ensure you know what each applicable requirement means to your business. It looks easy, but it’s not.
Point-to-Point Encryption (P2PE)
Control Gap prepares and validates payment solutions eligible to complete a formal Point-to-Point Report of Validation (P-ROV). We like to consider P2PE solutions the battleships of the payment industry. They give organizations the comfort they are protected through significant PCI scope reduction, gained by leveraging a P2PE solution.
13 min read
The Art of Reading a PCI Attestation of Compliance (AoC)
Mar 22, 2023 by David Gamey
2 min read
Non-Compliance Lesson No. 4: Keep your head in the cloud when adopting new technologies
Jun 8, 2022 by David Gamey