ajax loader
logo

about

PKF Avant Edge is a member of PKF International, a top 10 business advisory network worldwide with presence in more than 125 countries. Together with our vendors, we have half a decade of experience in Malaysia working with more than a dozen companies in their PCI-DSS programs. Whether you are a bank, service provider, payment gateway, telco or merchant, we have your PCI-DSS needs covered. We are independent of QSA vendors, therefore we can offer independent advisory to assist our customers. Contact us at the form below for a free PCI scoping exercise and awareness session. Note: We are not affiliated, associated, authorized, endorsed by, or in any way officially connected with PCI Security Standards Council (PCI-SSC), or any of its subsidiaries or its affiliates. The official PCI-SSC website can be found at https://www.pcisecuritystandards.org/. We are also not partners or agents of any QSA firms and we remain strictly independent in all our advisory engagement.

REFORMS

Card terminals will need to be increased from 220,000 to 800,000 by 2020.

All debit cards have to be contactless enabled. All debit cards have to be recarded by 2017. Debit card transactions to increase 10-fold by 2020.

All card transactions will move from signature base to PIN based by 2017.

Debit card interchange fee will immediately drop to 0.15% for domestic transaction and 0.21% for international transactions versus the average 1%.

COMPLIANCE

PCI-DSS compliance affects organisations that:

a) Store, process or transmit credit/debit cards under these brands: VISA, MASTERCARD, AMEX, JCB and DINERS (Discover)

b) Store, process or transmit even one single transaction of any amount per annum on any of these cards

c) Run an e-commerce site that outsources ALL Payment responsibility to a third party

IMPACT

PCI-DSS impact to the business often surprises our clients. Yes, even if you make one transaction a year and outsource credit card processing - the fact that your business itself allows for credit card transactions puts you under compliance.

Many non-payment service providers now such as hosting/data centers/BPO/telcos are pressured by their clients to be PCI-DSS compliant in their business processes to ensure the client's PCI-DSS compliance is not affected.

ENFORCEMENT

PCI Compliance will be passed down from payment brands (VISA, Mastercard etc) to the acquirers, to the service providers and finally to the merchants. Unlike other compliance program such as ISO27001, enforcement lines are very clear. It is imperative to get an understanding of your PCI scope, and what you need to do to comply, as not all organisations need to comply the same way. There are multiple 'levels' of compliance and more than 9 different SAQs to choose from!

The goal is not only to avoid "under-compliance", but also to ensure you do not "over-comply" as well, and expend unnecessary effort and cost.

Your compliance needs are covered.

Services

Service Image

ADVISORY

Our PCI-DSS advisory team comprises QSA, PCI Professionals and certified security consultants to match your requirements. Whether it is for a complex banking architecture or a Self Assessment Questionnaire (SAQ) enquiry, we are here for you.

read more
Service Image

IMPLEMENTATION

Our "Compliance as a Service" (CaaS) is a cloud based service package geared to accelerate PCI-DSS results for our clients. The goal is to ensure and almost guarantee compliance year in year out, while decreasing the total cost of your PCI-DSS program. We are a one-stop shop for implementing everything for your organisation to comply fully with the 12 requirements each year.

read more
Service Image

PROJECT MANAGEMENT

In almost all cases, troubled PCI projects occur due the lack of project management. Our project managers are specialised PCI-DSS experts as well as certified Project Management Professionals (PMP). We have a keen understanding of what needs to be done to move compliance from your 'TO-DO' to your 'DONE'.

read more
Service Image

TRAINING

We are a HRDF certified training company and have specialised training programs geared for PCI and other security related subjects. We are flexible to develop specific in-house training for organisations and we also provide public training sessions every month. As all our sessions are HRDF-claimable, this will lessen the impact on your bottom line fee, while providing invaluable insights on not just PCI-DSS awareness, overall security governance.

read more

Comprehensive PCI-DSS Solutions

We are a one-stop solution organisation for all your PCI-DSS needs

get in touch

contact

Direct Email for Enquiry:pcidss@pkfmalaysia.com

PKF Avant Edge Sdn Bhd

Level 33, Menara 1MK, Kompleks 1 Mont’ Kiara
Kuala Lumpur , Malaysia
Postal Code : 50480
Phone : +60192788629 (Main Line) (Email: pcidss@pkfmalaysia.com) Fax : +60362018880