Blog

PCI Security Standard Council Announces New SLA Timelines - Effective September 27, 2023

Date Published:
September 20, 2023

Josh Gottlieb

Managing Consultant – Americas

SHARE ON

The PCI Security Standard Council (PCI SSC) has stated they are modifying the Assessor Quality Management (AQM) submission timelines. The new SLA will be effective September 27, 2023.

According to the PCI SSC, the AQM will move from a 30 calendar-day SLA to a 30 business-day SLA. This change could increase review times.

It's important to note that the SLA is in place for each iteration of the report review. Organizations should plan for 2-3 report reviews as part of their timeline including the SLAs. The new SLAs apply to not only first submissions to the AQM team but all resubmissions that are required.

‍

Please Note - VikingCloud contracted SLAs are not changing.

‍All organizations submitting reports, including change-related submissions, for the following assessment types should adjust expectations as necessary.

  • Secure SLC
  • Secure Software
  • P2PE Solutions
  • P2PE Components
  • P2PE Applications

For more details about the changes or if you have questions about how they may affect your organization, contact the VikingCloud team https://vikingcloud.com/contact.

SHARE ON

Related Blogs

Stay up-to-date on the latest happenings in Cybersecurity and PCI Compliance.

Sep 28, 2026
Blog
Cybersecurity
Blog
Sep 28, 2026

Harvest Now, Decrypt Later: Why Post-Quantum Deadlines Are Tighter Than They Look

Learn More
Sep 24, 2026
Blog
HIPAA Compliance
Blog
Sep 24, 2026

HIPAA Compliance Checklist: Protect PHI and Reduce Risk

Learn More
Sep 21, 2026
Blog
Managed Detection and Response
Blog
Sep 21, 2026

MDR for Hospitality: How to Protect Hotels, Restaurants, and Guest Wi-Fi

Learn More