Skip to contentSkip to content
QSA DIRECTORY

Find Your Trusted Assessment Partner

Browse verified QSA firms by region, certifications, and specialisation. Compare team sizes, experience, and client reviews.

Showing 8 firms

Back to Marketplace

The QSA firms listed are examples for demonstration purposes. In production, this directory would be populated with verified QSA firm data from the PCI Security Standards Council. GRCTrack does not endorse any specific QSA firm.

Frequently Asked Questions

What is a QSA?

A Qualified Security Assessor (QSA) is a company certified by the PCI SSC to conduct PCI DSS assessments. QSAs perform on-site audits, validate compliance, and issue Reports on Compliance (ROC) for Level 1 merchants and service providers.

How much does a QSA assessment cost?

QSA assessment costs range from $15,000-$40,000 for straightforward SAQ D validations to $50,000-$200,000+ for complex Level 1 ROC assessments. Costs depend on scope, complexity, number of locations, and the QSA firm's rates.

How do I choose the right QSA?

Consider: regional expertise, industry specialisation, team size, certifications beyond PCI QSA (P2PE, 3DS, PIN), communication style, and pricing model. Request proposals from 2-3 firms and ask for references in your industry.