Blog

PCI Security Standard Council Announces New SLA Timelines - Effective September 27, 2023

Date Published:
September 20, 2023

Josh Gottlieb

Managing Consultant – Americas

SHARE ON

The PCI Security Standard Council (PCI SSC) has stated they are modifying the Assessor Quality Management (AQM) submission timelines. The new SLA will be effective September 27, 2023.

According to the PCI SSC, the AQM will move from a 30 calendar-day SLA to a 30 business-day SLA. This change could increase review times.

It's important to note that the SLA is in place for each iteration of the report review. Organizations should plan for 2-3 report reviews as part of their timeline including the SLAs. The new SLAs apply to not only first submissions to the AQM team but all resubmissions that are required.

Please Note - VikingCloud contracted SLAs are not changing.

All organizations submitting reports, including change-related submissions, for the following assessment types should adjust expectations as necessary.

  • Secure SLC
  • Secure Software
  • P2PE Solutions
  • P2PE Components
  • P2PE Applications

For more details about the changes or if you have questions about how they may affect your organization, contact the VikingCloud team https://vikingcloud.com/contact.

SHARE ON

Related Blogs

Stay up-to-date on the latest happenings in Cybersecurity and PCI Compliance.

Aug 13, 2026
Blog
HIPAA Compliance
Blog
Aug 13, 2026

What is a HIPAA Security Rule Gap Analysis and Why It Matters Now

Learn More
Aug 11, 2026
Blog
HIPAA Compliance
Blog
Aug 11, 2026

HIPAA Vulnerability Scanning Requirements and What to Expect

Learn More
Jul 21, 2026
Blog
PCI Compliance
Cybersecurity
Blog
Jul 21, 2026

Supersized Confidence, Underprepared Frontlines: Closing the Restaurant Cybersecurity Gap

Learn More