Services
Provided by the nci.CONSULTING division:
-
Application Security Assessments
- A thorough review of the application from both a technical and non-technical perspective, an Application Security Assessment reports on vulnerabilities and development processes for secure applications.
-
Application Security Coaching
- NCI becomes an extension of your team to provide architectural input, code review, and as required training for your web development team.
-
Application Security Training
- Our one day application security training course goes a long way to making your development team aware of application security methodology and concepts.
-
ASV (Approved Scanning Vendor)
- NCI is an Approved Scanning Vendor, providing web-portal access to a powerful scanning engine. NCI will set up the scans of your external IP addresses and establish false-positive resolution. SAQ completion and attestation is also available through our nci.SCAN ASV portal.
-
Building Security TRA
- How secure and safe is your workspace?
-
Data Recovery
- NCI can help you recover data from failed hard drives and other media.
-
Digital Forensics Investigations
- NCI forensics experts can retrieve digital evidence from cell phones and computers quickly and safely, saving you valuable time and money in your investigation.
-
e-discovery
- Retrieving, filtering, preserving, and authenticating electronically stored information.
-
IT Security Assessments
-
Payment Application (PA-DSS) Validation
- NCI's PA-QSA (Payment Application, Qualified Security Assessors will perform Gap Analysis or Validate your commercial payment application based on the PA-DSS (Payment Application, Data Security Standard).
-
PCI Compliance Program
- Need help achieving compliance? Starting with a QSA review and Scope assessment our team of IT Security and Project Management professionals can help your organization at every step of the way.
-
PCI DSS Training
- PCI DSS compliance requires a comprehensive training program for your employees
-
PCI Validation Assessment
- NCI provides Canadian QSAs to perform the on-site PCI DSS Validation Assessment and complete the Report of Compliance (RoC).
-
Penetration Testing
-
Physical Security Planning
- Define action plans to prevent, mitigate, respond to, and recover from a security incident.
-
Physical Security Training
- On-site Security Staff Training and employee security awareness training.
-
PIA - Privacy Impact Assessment
- A PIA will identify how your program or organization complies with all appropriate privacy statutes.
-
Policies and Procedures
-
SAQ Validation
- NCI's team of QSA's will review your Self-Assessment Questionnaire with you and provide the validation required for submission to your acquirer.
-
Threat Risk Assessment

