What is the difference between a Qualified Security Assessor and an Approved Scanning Vendor?
Qualified Security Assessors (QSA) are authorized to perform annual audits for merchants and service providers to document that they are PCI compliant. Approved Scanning Vendors (ASV) are authorized to perform the quarterly scans to show compliance with the PCI Data Security Standard. Several qualified security assessors incorporate approved scanning vendors into their solution.
Qualified security assessors are authorized to perform annual audits for merchants and service providers to document compliance with PCI. Approved scanning vendors are authorized to perform the quarterly scans to show compliance with the PCI Data Security Standard. Rapid7 has partnered with Coalfire Systems, a Qualified Security Assessor, to provide our clients a full service PCI solution.