SoftPOS Security

For companies seeking PCI MPoC compliance for their SoftPOS solutions, REEKON offers comprehensive services to navigate the complexities of security standards. These services include initial assessment, implementation, and validation support, ensuring a simpler, faster, and more affordable path to certification. Our expert consultants provide tailored training, documentation assistance, and ongoing support, guiding businesses through every step of the PCI MPoC certification process.

Equip your team with in-depth knowledge of payment security requirements and best practices through tailored training programs. Get an understanding of the PCI-MPoC standard to start the design of a new solution and the certification process.

We provide 2 days of walkthrough training and consulting designed to explain the PCI MPoC standard in detail.

Our experienced consultants will guide you through the payment certification processes, offering valuable insights and recommendations throughout design, development, and pre-certification phases. We focus on 2 main aspects during our consulting offerings for PCI MPoC that are:

  • Architecture Validation, which includes review of the design and feedback on solution readiness for certification.
  • Gap Analysis, which focuses on reviewing the documentation required for security evaluation and providing a Requirements Mapping to share the percentage of compliance.

We have created a set of documents that we refer to as the REEKON documentation baseline. Our services can be summarized as;

  • Baseline templates designed to the expectations of the security evaluation laboratory.
  • Includes “Reekon Note” which provides guidelines on what needs to be filled in.
  • Review of documentation of the client to ensure readiness.
  • Alternatively, working with your project team to provide documentation writing support.

We offer penetration testing in a black-box manner as per requirements under PCI MPoC. Upon completion of penetration testing, we provide a report, and if there are any vulnerabilities have been identified, we can help to mitigate these. Also, as required by PCI, we can provide annual penetration testing to support continuous post-certification needs.

Contact us now to learn more