- Home
- Vulnerability Management
- Security Scanning
- Carson & SAINT ASV Service
Carson & SAINT ASV Service
PCI DSS ASV scanning service for quarterly CDE vulnerability attestation.

Carson & SAINT ASV Service
PCI DSS ASV scanning service for quarterly CDE vulnerability attestation.
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Carson & SAINT ASV Service Description
Carson & SAINT ASV Service is a PCI DSS-compliant external vulnerability scanning service operated by a PCI Security Standards Council (SSC) validated Approved Scanning Vendor (ASV). The service is designed to help merchants and card processors meet PCI DSS Requirement 11.2.2, which mandates quarterly external vulnerability scans of the Cardholder Data Environment (CDE) by an approved vendor. Access is provided through a web-based portal available 24x7. Each license includes one unique scan target host, with the ability to add up to 14 additional targets at $45 each. For organizations requiring more than 14 additional targets, custom pricing is available. Each quarterly cycle includes two ASV scan submissions: one for the initial attestation and one follow-up scan to verify compliance after failures have been resolved. Scanning itself is unlimited within the portal, allowing users to run scans as needed outside of the formal quarterly submissions. Upon successful completion, the service issues an Attestation of Scan Compliance (AoSC), fulfilling the quarterly attestation requirement under PCI DSS. Pricing starts at $395.00 per portal license (covering 1 target host).
Carson & SAINT ASV Service FAQ
Common questions about Carson & SAINT ASV Service including features, pricing, alternatives, and user reviews.
Carson & SAINT ASV Service is PCI DSS ASV scanning service for quarterly CDE vulnerability attestation. developed by Carson & SAINT. It is a Vulnerability Management solution designed to help security teams with PCI DSS, Vulnerability Scanning, Compliance.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Agentless cloud security platform for risk detection & prevention
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox