TTI Approach
Becoming PCI DSS Compliant is a Complicated Process
We have broken our work in that regard into four phases as follows:
Phase One – Address Vulnerabilities
We have determined what generically needs to be accomplished everywhere and immediately implement the change, for instance Setting up Firewall, Domain, User accounts, Logging, Share level security, Group Policies, Organizational Units, Data Migration, Profile Migration and so forth.
Phase Two – Obtain Passing Scans
Get a passing Parameter scan and work toward passing internal scan, through our PCI DSS Maintenance Plan. We establish a relationship with our Approved Scanning Vendors for Internal and External scans at the initial signing of you as a PCI DSS client. Once those accounts have been established, we assist you in setting up your account console and perform the scans. Once we recieve the scan results, we interface with your ISP to seal up vulnerabilaties on the ISP's firewall, and we address all issues on your firewall, until we have a passing scan. The internal vulnerabilaties, we continue to work through during PCI DSS mainteance to maintain minimul billable hours.
Phase Three – Complete SAQ
Walk the Merchant through the entire process, to include contacting all vendors, validating that all system software and components are PCI DSS compliant, establishing the PCI DSS required maintenance (outlined on our web site - PCI Maintenance , assisting in developing required SOP’s, submitting package to the bank.
Phase Four – Security Manual
Validate security manual, the security manual is delivered in a fully indexable ecopy, configured to allow apendicies to any section for easy page numbering and printing. We also Print and bind you hard copy which will be delivered on the final day close out, when we train the designated staff and any employee that you feel should take part.
Upon completion, you will have a validated security manual which includes certified external scans showing compliance with PCI DSS. After that we maintain compliance through our PCI DSS Maintenance program, and help develope the mentality and new Merchant mission which is To Protect All Customer Informaition from the time the Merchant gains possesion until the time the information is purged electronically and hard copy.

TTI BRINGS PEACE OF MIND TO PCI DSS