Directory

    PCI DSS Auditors in North America

    12 accredited PCI DSS audit firms serving North America on Nomona. PCI DSS is the mandatory security standard for any organization that stores, processes, or transmits payment card data, assessed by Qualified Security Assessor (QSA) firms via a Report on Compliance (RoC). Typical timeline: 3–6 months for a first-time assessment; 2–4 months for annual renewals. Typical cost: $15,000–$100,000 for a typical Report on Compliance; $200,000+ for large or complex environments.

    IA

    Insight Assurance

    Unverified Peer ReviewedUnclaimed account
    Tampa, United States
    HITRUSTSOC 2CMMCPCI DSSISO 27001
    0.0(0)

    Big-Four rigor at startup-friendly pricing.

    SaaSFintech
    PS

    Prescient Security

    Unverified Peer ReviewedUnclaimed account
    Nashville, United States
    SOC 2ISO 27001ISO 42001HIPAAGDPRPCI DSSCREST
    0.0(0)

    Security-first audits, built by pen testers.

    SaaSFintechGovernment
    K

    KirkpatrickPrice

    UnverifiedUnclaimed account
    Tampa, United States
    SOC 1SOC 2ISO 27001HIPAAPCI DSS
    0.0(0)
    Pricing not published

    Multi-framework CPA and cybersecurity assessment firm

    SaaSHealthcareFintech
    T

    Tevora

    UnverifiedUnclaimed account
    Irvine, United States
    SOC 3SOC 1SOC 2PCI DSS
    0.0(0)
    Pricing not published

    Cybersecurity & compliance firm with multi-framework expertise.

    SaaSFintechGovernment
    A

    AARC-360

    UnverifiedUnclaimed account
    Atlanta, United States
    SOC 1SOC 2SOC 3ISO 27001HIPAAPCI DSS
    0.0(0)
    Pricing not published

    PCAOB-registered CPA firm serving small and mid-sized companies.

    SaaSFintech
    T

    Thoropass

    UnverifiedUnclaimed account
    New York, United States
    SOC 2ISO 27001HIPAAPCI DSS
    0.0(0)
    Pricing not published

    GRC platform and CPA audit under a single contract

    SaaSFintechHealthcare
    A

    A-LIGN

    UnverifiedUnclaimed account
    Tampa, United States
    SOC 1HITRUSTFedRAMPSOC 2PCI DSSHIPAAISO 27001
    0.0(0)
    Pricing not published

    Single-provider audits across SOC 2, ISO 27001, FedRAMP, HITRUST, and PCI DSS

    SaaSFintechHealthcareGovernment
    S&

    Schellman & Company

    UnverifiedUnclaimed account
    Tampa, United States
    SOC 3SOC 1HITRUSTFedRAMPSOC 2CMMCPCI DSSISO 27001
    0.0(0)
    Pricing not published

    One of the largest independent SOC examination providers in the US

    SaaSFintechHealthcareGovernment
    IP

    IS Partners

    UnverifiedUnclaimed account
    Horsham, United States
    SOC 1HITRUSTSOC 2CMMCPCI DSSISO 27001NIST
    0.0(0)
    Pricing not published

    Boutique CPA firm led by former Big 4 partners.

    SaaSFintechHealthcare
    3A

    360 Advanced

    UnverifiedUnclaimed account
    United States
    PCI DSS
    0.0(0)
    Pricing not published

    Relationship-focused cybersecurity and compliance firm offering PCI DSS assessments alongside broader compliance services.

    Other
    S

    SecurityMetrics

    UnverifiedUnclaimed account
    United States
    PCI DSS
    0.0(0)
    Pricing not published

    One of only two firms globally dual-certified for both PCI scanning and full PCI DSS assessments.

    Other
    Axipro

    Axipro

    Readiness Partner
    London, United Kingdom
    SOC 2ISO 27001ISO 27701ISO 42001HIPAAGDPRPCI DSSNISTDORACMMCCREST
    0.0(0)
    Pricing not published

    Certification audits and compliance services — SOC 2, ISO 27001 and more — with CREST-accredited penetration testing.

    SaaSFintechOther

    Frequently asked

    How many PCI DSS auditors serve North America?

    Nomona lists 12 independent, accredited PCI DSS audit firms serving North America today, including firms with global coverage.

    How much does a PCI DSS audit typically cost?

    $15,000–$100,000 for a typical Report on Compliance; $200,000+ for large or complex environments