The PCI SSC developed the quality assurance program as a direct result of feedback from the Council's participating organizations and assessment community and is intended to promote consistent interpretation of the PCI standards and ensure quality is maintained among all vendors. Participation in the program will be required for the Council's registered QSAs and ASVs, in order for them to retain the ability to conduct PCI assessments.
"Feedback from the Council's participating organizations and others made it clear that the assessment process for the PCI standards would benefit greatly from more rigorous guidelines," said Bob Russo, general manager, PCI Security Standards Council. "As a result, we created a clear-cut program that will help ensure all those involved in this process are consistent, credible, competent and ethical."
The new quality assurance program is based on eight guiding principles. Through the program, the Council and assessor community commit to: