The Challenge

The client had an internal credit card and password scanning tool written in Java and sought to evolve it into a robust, enterprise-grade PCI compliance platform. The new system needed to:

  • Support vulnerability scanning and Self Assessment Questionnaires (SAQs)
  • Handle large networks with hundreds of endpoints, users, and organizational levels
  • Generate advanced graphical and tabular reports with drill-down capabilities
  • Manage tiered scan subscriptions, financial transactions, and secure remote data communication

The Opportunity

Arsenal Security Group wanted to:

  • Create a one-stop PCI compliance solution for enterprises
  • Support remote scanning and assessment with flexible subscription models
  • Integrate third-party scanning and GRC platforms into a unified backend
  • Win and scale partnerships with high-profile clients like Royal Bank of Scotland and Arby’s

Our Solution

Using SCRUM methodology, Prologic Technologies delivered a multi-tenant compliance platform that combined:

  • PCI scans and SAQs via web service integrations with Qualys, Agiliance, and Arsenal’s own Java-based data scanner
  • Secure user/organization management with multi-access level control
  • Graphical reports with Dundas Charting tools (bar, pie, area) and dynamic drill-down
  • Real-time communication with remote scanners via XML-based APIs
  • Dual-database architecture (normalized + denormalized) for performance and reporting
  • SSIS packages to sync reporting databases with the main system at set intervals
  • Seamless PayPal Pro payment integration using IPN for subscription and invoice handling

Key Features

  • Multi-Platform Scanner Integration: Combine scan results from Qualys, Agiliance, and custom tools
  • Survey & Scan Dashboard: Manage vulnerability scans, SAQs, and scheduling from one portal
  • Advanced Reporting Engine: Tabular + drill-down visual reports via Dundas Charts
  • Secure Subscription System: Role-based user access and scan subscription management
  • Remote Java Scanner Integration: Bi-directional XML APIs with full logging and result storage
  • High-Performance Databases: Dual structure optimized for transactions and analytics
  • Automated Data Sync: SSIS-based batch updates for live reporting
  • Secure Online Payments: PayPal Pro with IPN for automated payment tracking

Tech Stack

  • Backend: ASP.NET 3.5, MSSQL Server 2005, SSIS Packages, Windows Server 2008
  • Frontend: HTML, JavaScript, AJAX
  • Reporting Tools: Dundas Charts
  • Data Integration: XML Web Services, HTML-to-PDF conversion
  • Version Control: Microsoft Visual SourceSafe
  • Agile Framework: SCRUM Methodology

Results You Can Measure

5XEnterprise

adoption growth helped Arsenal Security Group win major accounts like RBS (UK & US) and Arby’s

100% Uptime

via modular, scalable PCI platform trusted by high-security industries

100%
Successful

transition into Protiviti while maintaining platform stability and performance

Product Impact

This project showcased the best of Agile development, third-party system integration, and scalable compliance
architecture—supporting financial giants in achieving seamless PCI compliance across global operations.

Have a Similar Idea/ Product in Mind?

We use cookies to enable website functionality, understand the performance of our site, provide social media features, and serve more relevant content to you. You may review our Privacy Policy.
×