Text size Increase Font-SizeDecrease Font-SizeReset Font-Size

Approved Scanning Vendors (ASVs) are organizations that validate adherence to certain DSS requirements by performing vulnerability scans of Internet facing environments of merchants and service providers.

Please note, the PCI Security Standards Council maintains a structured process for security solution providers to become Approved Scanning Vendors (ASVs), as well as to be re-approved each year.

Approval and re-approval indicate only that the applicable ASV has successfully met all PCI Security Standards Council requirements to perform PCI data security scanning, and the PCI Security Standards Council does not endorse these security solution providers or their business processes or practices.

Although the PCI Security Standards Council strives to ensure that the list of Approved Scanning Vendors linked to this page is current, the list is updated frequently and the PCI Security Standards Council cannot guarantee that the list is current at all times. Accordingly, each time a client engages an ASV, the client is advised to check this list on a regular basis to ensure that its ASV has successfully maintained its status as an Approved Scanning Vendor.

Search by Company Name, Product Name, Place of Business and Locations served.
Results: 107
Page: 1 2 3 4 5 6

Company Place
of Business
Product Name Email Contact Locations Served Certificate
ASV Employees
@ Mediaservice.net S.R.L. Italy PCI ASV Service 2015
Global 5039-01-05
Access 2 Networks Inc. Canada A2N-ASV Requalification 1
Canada 5061-01-02
Agio, LLC United States Agio ASV Requalification 2015
North America 4144-01-10
Alert Logic, Inc. United States Alert Logic ASV - Rapid7
USA 4222-01-09
Ambersail Ltd. United Kingdom Ambersail Assured
UK,Europe,CEMEA 3752-01-10
ANXeBusiness Corp. United States Managed ASV Compliance
Global 5042-01-05
Aperia Solutions United States Aperia Rapid Scan
Global 5051-01-04
Aperia Solutions United States Aperia Pro Scan
Global 5051-01-05
AppSec Consulting United States AppSec Certified
North America 3834-01-09
AT&T Consulting Solutions United States AT&T SureScan
Global 5024-01-05
atsec (Beijing) Information Technology Co., Ltd China atsec PCI Scanning and Compliance
Global 5050-01-04
Aura RedEye Security Ltd. New Zealand Aura RedEye 2015
New Zealand, Australia, Asia 5036-01-04
Backbone Security, Inc. United States 1 Stop PCI Scan
USA 4009-01-10
Beijing Unionpay Card Technology Co. LTD China BCTC PCI-ASV
Asia Pacific 5064-01-02
Beyond Security United States Automated Vulnerability Detection System (AVDS)
Global 5031-01-05
BeyondTrust Software, Inc. United States Retina Enterprise
Global 5014-01-06
Biznet Bilisim Sistemleri A.S Turkey PCI DSS Compliance Security Assessment Services 2015
Europe 4032-01-10
BMS Consulting LLC Ukraine BMS FI
Global 5008-01-07
**In Remediation**
United States CIPHER PCI ASV Security Scanning
Global, UK, Europe, Middle East, Latin America, North America, USA, LAC 4281-01-07
Cisco Systems, Inc. United States Cisco Systems, Inc. PCI Scan Service 2015-2016
worldwide 4277-01-08
Results: 107
Page: 1 2 3 4 5 6
* 'In Remediation' status indicates a determination by the Council, after an Approved Scanning Vendor organization has violated applicable ASV Qualification Requirements. This status may result from failure to comply with any number of applicable ASV Qualification Requirements. ASVs are notified when remediation is required, and ASVs listed as "In Remediation" may be actively seeking to remedy this status. For more about remediation please review the Remediation section of the Qualification Requirements for Approved Scanning Vendors.

For information about the status of a particular ASV, please contact that ASV.

Back to Top

The PCI Security Standards Council (the "Council") provides a variety of tools, questionnaires, guidance, FAQs, training resources and other materials and information to assist organizations seeking to achieve compliance with its standards (the "Standards"). Third party products and services are also available, but the Council does not endorse or recommend any such third party products or services, and advises all organizations seeking to achieve compliance to become familiar with the Standards and related requirements before purchasing third party products or services. Ultimately, all applicable requirements must be met in order to achieve compliance, regardless of whether or what third party products or services are used.