Get Started Get Started

What Is PCI Compliance?

PCI compliance is not a single event, but an ongoing process. The Payment Card Industry Data Security Standard (PCI DSS) was established by the major card brands. All businesses that process, store, or transmit payment card data are required to implement the requirements outlined in the PCI DSS to prevent cardholder data theft. Technology and card processing situations change. SecurityMetrics saves you time as your single point of compliance support.

Determine Your Requirements

How you process payment cards determines your PCI requirements. To save time, use our online PCI scoping wizard, SecurityMetrics Expert, to discover your PCI requirements. Or, call one of our agents for help 24/7.

Complete Your Self-Assessment Questionnaire (SAQ)

All merchants are required to complete a Self-Assessment Questionnaire (SAQ) for PCI compliance. Your specific questionnaire is determined by how you handle payment card data. SecurityMetrics ensures you are completing the applicable SAQ and our award-winning support team helps you complete it accurately.

Pass Your ASV Scan

Merchants that process, store or transmit cardholder data online are required to have external network vulnerability scans performed by an Approved Scanning Vendor (ASV) on their network or domain. SecurityMetrics' ASV scan tool helps you:

  • Understand scan results
  • Organize and manage scan results
  • Send scan reports
  • Filter scan results based on custom criteria
  • Manage your false positives
  • Find network vulnerabilities
  • Receive remediation tips to secure your network

Report Your PCI Compliance

Merchants are required to validate and report their compliance to their merchant processor. To ensure you remain compliant and avoid potential non-compliance fees, we report your compliance to your merchant processor, send you account updates, and contact you for PCI service renewal.

Top Reasons to use SecurityMetrics for PCI compliance

  • Responsive Support Agents

    Don't worry about automated phone systems or long wait times. SecurityMetrics has the largest in-house PCI support center in the world with an average inbound hold time of 17 seconds. Not only is our call center quick to respond over phone or chat, but our award winning agents are trained to explain PCI in a clear, concise way that moves you through the process as quickly as possible.
  • Tools that empower compliance

    We have many tools available to simplify PCI compliance for small businesses and provide your business with enhanced data security. These tools include: internal and external vulnerability scanning, mobile device security, card data discovery, penetration testing, and PCI employee training.
  • Thorough compliance tracking and account management

    See the status of your SAQ, vulnerability scan, and overall compliance in your online compliance console. Within the console you can also schedule scans and edit account information.
  • Simplified bank reporting

    We make reporting your PCI compliance simple. Once you validate PCI compliance, we inform your bank so they know you’ve done your part to protect customer data.
  • Full-service PCI compliance partner

    As one of the few companies that holds credentials for all aspects of PCI compliance, SecurityMetrics can assist your small business with any PCI need. If you have questions about PCI compliance, we'll get you answers. We continually improve our compliance solutions based on our forensic team's findings to provide you the most accurate compliance and security solutions.

awards Check Out Our Awards down-arrow


Best PCI Compliance

Info Security Global Excellence Awards, 2014

Here's what our customers are saying

We have been customers of SecurityMetrics for about eight years. We are so impressed with the patient and professional way that their staff treats customers. They do not hurry, seem tired, act annoyed or too busy to work with their customers. Every person I spoke to was great!

Naomi Christman, The ProImmune Co, LLC

In the past couple of days I have needed to talk to people in Renewals, Technical Support and Scan Technicians. Everyone, without exception, has been very pleasant to deal with and very helpful! My encounter with each person has been so outstanding that I just wanted to let you know what a super job you are doing. Whatever you are doing to train your people is working. Keep up the good work! Thanks to everyone for making my time spent with you so helpful and pleasant!

Jerri Prosch, Lehr Middlebrooks & Vreeland, P.C.

I am quite impressed with your UI and your demystification of PCI choices and criteria. I've been steeping in PCI since 1.0, and this is the most user-friendly and clear presentation I've seen for merchants with little or no PCI understanding. Kudos!

Julian Paolucci, Skechers USA, Inc.

I've worked with SecurityMetrics on a number of websites and I've found your company to be of the highest professional standard. I've also had some excellent, caring, and patient help with many a difficult security scan.

Starnet Solutions

SecurityMetrics is the most retail friendly solution. At the small business level, frequently the person that has to interface with the tool is an owner or someone who has financial responsibility, but they may not necessary be technically savvy with using online tools. We believe SecurityMetrics meets that need better than anyone else we've seen.

Steve Methvin, Bozzutos

Maintaining PCI compliance is extremely important with large scale e-commerce applications. SecurityMetrics makes the process of getting compliant extremely easy. SecurityMetrics has been routinely testing us for the past two years. They make it very easy to be compliant and help with the potentially dangerous process of handling credit card and other sensitive information. I'd highly recommend them to anyone looking to build and maintain a secure environment.

Thomas W., President, eVitamins

Get PCI Compliant

We've helped over 800,000 organizations with PCI compliance.

We are excited to work with you.


Thank you!

Your request has been submitted.