• Skip to primary navigation
  • Skip to main content
  • Skip to footer
ControlCase No Tag LOGO md

ControlCase

IT Certifications, Continuous Compliance and Cybersecurity Services Provider

  • Company
    • About Us
    • Careers
    • Locations
    • Team
  • Industries
    • Business Process Outsourcing
    • Cloud Service Providers
    • Retail
    • Telecom | Entertainment
    • Managed Service Providers
  • Certifications
    • PCI DSS Certification
    • CSA STAR Certification
    • GDPR Assessment
    • HIPAA Assessment
    • HITRUST Certification
    • ISO 27001 Certification
    • FedRAMP 3PAO Services and NIST 800-53
    • CMMC Certification
    • MARS-E Assessment
    • PCI SSF
    • P2PE Certification
    • SOC2 Report
  • Solutions
    • Continuous Compliance Solution
    • One Audit
    • Card Data Discovery Software
    • Data Security Rating
  • Testing
    • Application Reviews
    • Application Security Training
    • Code Reviews
    • Card Data Discovery
    • External Vulnerability Scans
    • Firewall Security Reviews
    • Internal Vulnerability Scans
    • Log Monitoring
    • Penetration Testing
  • Resources
    • Events
    • News
    • Webinars
    • Courses
    • Blog
    • Tools
    • Become a Partner
  • Contact Us
  • English

ControlCase Achieves PCI Qualified PIN Assessor Status

You are here: Home / News / ControlCase Achieves PCI Qualified PIN Assessor Status

As a Qualified PIN Assessor (QPA) ControlCase can validate organizations’ compliance to the PCI PIN standard.

ControlCase, a leading provider of IT Security Certifications and Continuous Compliance Services announced its latest achievement – PCI Qualified PIN Assessor. Qualified PIN Assessor (QPA) companies are security organizations that have been authorized by the PCI Security Standards Council (PCI SSC) to validate an entity’s adherence to the PCI PIN Standard. This latest achievement demonstrates ControlCase’s expertise and commitment to partnering with clients and providing comprehensive services that address all aspects of IT governance, risk and compliance.

Version 3.0 of the PCI PIN Security Requirements and Testing Procedures Standard was published August 2018 by the PCI SSC. The Standard was a result of collaboration between PCI SSC and the Accredited Standards Committee (ASC X9) to develop PCI PIN security requirements, which incorporate TR-39 into the existing PCI PIN security requirements; thereby creating a unified standard for all payment stakeholders. The Standard promotes the secure management, processing and transmission of all PIN data at ATMs as well as attended and unattended point-of-sale (POS) terminals. Organizations that demonstrate compliance to the PCI PIN Standard provide confidence to their stakeholders that they are dedicated to the continued integrity of PIN data and to minimizing risk to key generation and operations.

“The Qualified PIN Assessor status positions ControlCase as one of the few organizations that offer a full suite of PCI compliance mandates including PCI PIN, PCI DSS, PA DSS and P2PE,” said Kishor Vaswani, CEO – ControlCase.

“ControlCase’s methodology for PIN Security and Key Management audit includes evaluating the client’s technical, logical and procedural controls against the PCI PIN guidelines and working in partnership to enable secure management, processing and transmission of PIN data during online and offline payment card transactions at ATMs and POS terminals,” said Vaswani.

The collaboration between PCI SSC and ASC X9 to create the PIN Security Standard has been instrumental to acquiring institutions and other organizations (eg: KIF and Certification Processors) that are required to comply with the rules set by both entities.

About ControlCase:
ControlCase is a global provider of certification and continuous compliance services. ControlCase is committed to partnering with clients to develop strategic information security and compliance programs that are simplified, cost effective and comprehensive in both on-premise and cloud environments. ControlCase provides the best experts, customer experience and technology for regulations including PCI DSS, HITRUST, ISO 27001, SOC1, SOC2, PCI PIN, PCI P2PE, PCI TSP, PA DSS, CSA STAR, HIPAA, GDPR and FedRAMP.


  • Facebook
  • LinkedIn
  • Twitter
  • YouTube

Footer

Connect

Corporate Headquarters
3975 FAIR RIDGE DR STE T25S-D
FAIRFAX, VA 22033

Send us a message

Call Us

Search

About Us

ControlCase is a United States based company, headquartered in Fairfax, Virginia with locations in North America, Europe, Latin America, Asia/Pacific, Australia and the Middle East to serve our clients globally.

Quick Links

  • Company
  • Careers
  • Locations
  • Covid-19 Notice

Certifications, Assessments and Reports

  • PCI DSS Certification
  • CSA STAR Certification
  • GDPR Assessment
  • HIPAA Assessment
  • HITRUST Certification
  • ISO 27001 Certification
  • FedRAMP and 3PAO Services
  • MARS-E Assessment
  • PCI SSF
  • P2PE Certification
  • SOC2 Report

© ControlCase LLC 2025 | Privacy Policy | Impartiality Statement | Legal Notices

  • English
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}