Services for Merchants

Arsenal’s PCI-DSS certified Forensics Team will respond quickly and effectively.

Since 2005, over 80% of data breaches have occurred at small businesses. Businesses need help fast, with minimal interruptions to ongoing operations. Arsenal’s Forensic team can find the breach, pinpoint your high risks and advise you on best practices to ensure you are not hacked in the future.

Arsenal Security Group Forensics has a fast, proven, thorough process to get you back in business and PCI compliant:

1. Contact Us: We will ask a few quick high-level questions and then get you a detailed proposal.
2. On-site Visit Right Away: Once a contract has been signed, Arsenal guarantees a forensic investigator on site within 5 business days. We often can arrive the next day.
Proprietary Software to Identify all breaches: To determine the scope of the compromise, Arsenal conducts a comprehensive on-site data collection, which will include gathering memory, volatile computer information and evidence on computer hard drives. We then use our patented SmartSearch™ Technology (SST) to scan all systems for card data. We will also use ASV Scans to test firewalls and other network security weaknesses.
3. Immediate Results: Arsenal Security Group prepares an initial or “Preliminary Report” using PCI DSS structure. The report identifies specific details about the account data compromise including:
  • Is there conclusive evidence of a breach/compromise?
  • What types of credit card data are at risk on the machines examined?
  • What tools may have been used by the attacker?
  • High Risk deficiencies that may have lead to the compromise
4. Final Report: Shortly after, Arsenal delivers an objective, deeper analysis of the compromise as well as remediation steps needed to help you recover from the compromise.
5. Connection with your IT resource: As your business may outsource their IT expertise, Arsenal is happy to explain any immediate risks with you to your IT provider and work with them to secure your systems.
6. Ongoing Protection: After the compromise investigation is complete, your acquiring bank may request that you become PCI compliant. This involves testing and scanning many of your systems on a regular basis. Arsenal will equip you with the tools to prevent incidents like this from happening again.

Why Arsenal?

Fast Response: Our processes are designed to identify and remedy breaches quickly and effectively.
Experience: Arsenal’s investigators have been helping large and small merchants since 2006. We are known by all major acquiring banks for our work on Account Data Compromises (ADC) and Common Points of Purchase (CPP)
Expertise: Arsenal’s Forensics Group is staffed with Qualified Security Assessors (QSAs) with significant PCI experience and is intimately familiar with all major brands of POS systems.
Cost-Effective: All work is conducted on a fixed price basis
State-of-the-Art Tools: SmartSearch™ Technology is patented by Arsenal and is the industry leader in finding card data across systems and locations. SmartSearch™ is invaluable to find card data at the compromised site or to discover weaknesses at your business’ other locations.

Contact Us.
800-274-5208 – Forensic Hotline
If you think you have been breached, you have an obligation to notify your acquiring bank immediately. For more details, call us.

Contact Us

phone

(703) 245-3057

+44 203 286 7219

Our Clients

Arsenal helped 2Checkout.com streamline our PCI Level 1 initiative, which enabled our compliance goals on an aggressive schedule. Their expertise provided valuable insight for successfully achieving compliance.

- 2Checkout.com

Our Partners

kroll

arcsight

2co_logo

worldpay

watermark

nec

armada

logrhythm_logo
flash