Cloud Platform
Contact us
Asset Management
Vulnerability & Configuration Management
Risk Remediation
Threat Detection & Response
  • Overview
  • Platform Apps

  • Qualys Endpoint Security

    Advanced endpoint threat protection, improved threat context, and alert prioritization

  • Context XDR

    Extend detection and response beyond the endpoint to the enterprise

Cloud Security

Qualys Releases QualysGuard PCI 2.0

Company Extends Platform to Further Streamline the PCI Compliance Process by Delivering Enterprise-Level Scanning and Reporting, and New e-Filing Capabilities

Slough, UK, - 17 December 2007 - Qualys, Inc., the leading provider of on demand security risk and compliance management solutions, today announced the availability of QualysGuard PCI 2.0, second generation of its On Demand PCI Platform. QualysGuard PCI 2.0 dramatically streamlines the PCI Compliance process and adds new capabilities for large corporations to facilitate PCI compliance on a global scale.

“Compliance with the PCI data security standard can be a complicated and confusing process,” said Dennis Kavanaugh, director, information security and risk management at Palm, Inc. “Qualys’ PCI platform has facilitated a concise, reliable and automated process in which we are able to customise the reports for both our internal and external stakeholders. Additionally, Qualys’ on demand solution significantly minimizes the time and resources required to scan for and eliminate server vulnerabilities, enabling us to provide a secure commerce environment for our customers.”

QualysGuard PCI 2.0 brings a new refined user interface making it easy to navigate through the process of scanning, remediating and e-filing customers’ compliance status to multiple acquiring banks. New capabilities and customer benefits include:

  • Global Scanning: Merchants can now break out their PCI scoped network into organizational segments to scan a select number of hosts at any given time or in parallel, thereby dramatically reducing scan time for large enterprise networks.
  • New, Real-Time Dashboard Reporting: QualysGuard PCI enables merchants to get quick access to the latest compliance summary of their entire PCI scoped network. Merchants can now also run reports with specific, advanced search criteria, including host name, ip address and vulnerability severity.
  • Streamlined Remediation Workflow: QualysGuard PCI simplifies remediation for large enterprises with the ability to launch scans and download reports on individual hosts, allowing merchants to manage, simplify and accelerate the remediation process and achieve compliance.
  • Interactive Self Assessment Questionnaire: QualysGuard PCI now allows multiple questionnaires to be generated for separate business units. In addition, the new questionnaire process includes additional tips and easy-to-use navigation to improve the accuracy of completed questionnaires. Customers can also add comments for each question to document exceptions and clarify points directly with their acquiring bank.
  • Multiple Acquiring Bank Submissions: Merchants can now submit their annual self assessment questionnaire or quarterly network compliance executive report to up to five different acquiring banks at any one time – meeting the needs of larger enterprises that maintain different acquiring relationships.

“Over the past year, the majority of PCI approved scanning vendors have adopted the first generation of our On Demand PCI platform. During that time we continued to work with our customers and partners to make the PCI compliance process as easy and effective as possible for both small and large organizations,” said Philippe Courtot, Chairman and CEO of Qualys. “QualysGuard PCI 2.0 reflects this effort and the valuable feedback we received over the past 12 months. We sincerely thank our partners and large customers who help us deliver such significant enhancements.”

Qualys’ On Demand PCI solution has become a de facto standard for merchants looking to comply with PCI. It is currently in use at organisations such as Travellodge, McDonald’s (France), the Humane Society, Tribune Company, Steak and Shake restaurants, Houghton Mifflin Company and Palm, Inc. QualysGuard PCI also gives partners the tools they need to quickly become an Approved Scanning Vendor (ASV) for PCI compliance. More than 50 percent of all PCI DSS ASVs and Qualified Security Assessors (QSAs) utilize QualysGuard to deliver PCI certification and PCI-related services to their clients, bringing the total number of partners that have adopted Qualys’ platform to 250.

Pricing and Availability
QualysGuard PCI 2.0 is available immediately. Annual subscriptions start at £336, which includes unlimited scans for three IP addresses and 24x7 customer support.

About Qualys

Qualys, Inc. is the leading provider of on-demand security risk and compliance management solutions. Qualys is the only security company that delivers these solutions through a single software-as-a-service platform. QualysGuard® allows organizations to strengthen the security of their networks and conduct automated security audits to ensure compliance with policies and regulations. As a scalable and open platform, QualysGuard enables partners to broaden their managed security offerings and expand their consulting services. Qualys’ on-demand solutions are deployed in a matter of hours anywhere in the world, providing customers an immediate view of their security and compliance posture. QualysGuard is the widest deployed security on-demand solution in the world, performing over 150 million IP audits per year.

For more information, please visit


Qualys, the Qualys logo and QualysGuard are proprietary trademarks of Qualys, Inc. All other products or names may be trademarks of their respective companies.

Media Contact:
Tami Casey