3x
100%
of 12 core PCI DSS requirements fulfilled
50%
reduced effort in policy management
100%
infrastructure coverage via daily automated scans

Nandakumar Rangasamy
Engineering Lead & India Site Leader, GoMobi
Discover why 1400+ companies trust Scrut
THE COMPANY
Deliberate approach to building trust in fintech
GoMobi is a fintech platform operating under the regulatory oversight of Malaysia. As a company, they embed security deeply into their operations. However proving this via a compliance certification was essential.
THE CHALLENGE
Achieving PCI DSS without prior compliance experience
Since GoMobi were not compliant with any industry framework to begin with, there was a steep learning curve involved. This meant re-evaluating security posture from the ground up.
THE SOLUTION
Built-in expertise, automation, and audit readiness
With Scrut’s unified platform to manage policies, automate evidence collection, and prep confidently for audits; GoMobi quickly transitioned to a structured, audit-ready compliance program.

Consolidated compliance monitoring and management
Scrut’s central dashboard allowed HR, IT, and governance teams to collaborate seamlessly. Policies were created easily using the in-line editor and auditor-vetted templates. Further, automated recurrence schedules for updating policies were set up. Employee policy acceptance was streamlined with timely automated reminders. All this was done with collaboration enabled by the platform’s task management capability. Lastly, detailed audit logs tracked every minute action in real time for comprehensive visibility during audits.
Automated cloud scans and evidence collection


End-to-end audit preparation and support
Scrut’s expert infosec team with over 50 years of experience, provided extensive support in creating and managing compliance documentation. Corrective actions were minutely tracked and implemented via the platform and any other compliance gaps or vulnerabilities were instantly identified and mitigated. Structured guidance throughout the audit preparation process helped them enter the certification phase with confidence, knowing that all necessary controls and the 12 core requirements of PCI DSS were robustly in place.