critical assets Compliance. Security. Control.

Perspective is important. Historically, merchants, PCI service providers, and banks have had to rely on their QSA of record to provide architectural advice for the very same ecosystem that they have had these individuals audit. Critical Assets can provide a fresh view of the cardholder environment and how effective the current or planned controls and countermeasures are. Because we are -not- a QSA, and do not perform assessments, we will never experience conflict of interest with our clients. Learn More...

Technology, Biotech, Publishing, Mobile Carriers, Health Care. The intellectual property of nearly every type of company resides on their IT infrastructure. Because of this fact, the protection provided for that infrastructure and the methods by which companies handle and protect that IP is paramount.

The IT Acquisition Risk Management Report provides insight into key IT risk issues for buyers and sellers during the course of due dilligence.

External audit is difficult. Having your assets seemingly arbitrarily examined and scrambling to deal with every audit situation is often a painstaking process. Having someone who can preliminarily pair IT compliance and security evidence with control objectives and drive the audit program forward will save time and money at the same time it keeps you sane.Learn more...

Card Systems, Hannaford, TJX, Heartland. Hackers do not pay mind to the controls you -think- you have. They are only prevented from accessing your data by the ones that are functioning. Proper network and application layer penetration testing will reveal key vulnerabilities in your electronic ecosystem before they can be used against you. Learn More...