eSewa Seeks PCI DSS Certified QSA Firms for Enhanced Payment Security in Nepal
12th June 2025, Kathmandu
eSewa Limited, a leading digital payment service provider in Nepal, has issued a Request for Quotation (RFQ) inviting qualified Security Assessor (QSA) firms to provide comprehensive PCI DSS (Payment Card Industry Data Security Standard) Certification Services.
eSewa PCI DSS Certified QSA Firms
This strategic move underscores eSewa’s commitment to maintaining the highest standards of data security for its vast user base across Nepal.
The engagement targets QSA firms officially certified by the PCI Security Standards Council (PCI SSC), ensuring adherence to global benchmarks for securing cardholder data. The scope of work for the selected firm is extensive, covering critical aspects of PCI DSS compliance:
Gap Assessment & Remediation Support: Identifying and addressing any existing vulnerabilities in eSewa’s payment infrastructure.
PCI DSS Certification Audit: A thorough audit to assess compliance with all PCI DSS requirements.
VAPT, ASV Scan, ROC, AOC, and CoC: Performing Vulnerability Assessment and Penetration Testing (VAPT), Approved Scanning Vendor (ASV) scans, and providing the Report on Compliance (ROC), Attestation of Compliance (AOC), and Certificate of Compliance (CoC).
Staff Training & Post-Certification Support: Ensuring eSewa’s internal teams are well-equipped to maintain compliance and providing ongoing support.
Eligibility and Application:
eSewa is seeking experienced QSA firms with a proven track record. To be considered, applicants must possess a valid QSA certification and demonstrate over three years of relevant experience in similar PCI DSS projects.
Interested firms are required to submit their applications along with:
Copy of Registration Certificate of Firm/Company
Copy of PAN/VAT Certificate
Copy of latest Tax Clearance Certificates
Company Profile
A non-refundable application fee of NPR 5,000.00 is also required, payable to ESEWA LIMITED, Account Number: 1701017500195, Nabil Bank Ltd.
Key Deadline and Submission Details:
The deadline for submission of sealed quotations is June 24, 2025 (10th Asadh, 2082). Submissions must be delivered as a physical copy to the eSewa office located at Pulchowk, Lalitpur, Kathmandu, Nepal. For any inquiries, firms can contact eSewa via email at [email protected].
This initiative by eSewa highlights the increasing importance of robust cybersecurity measures in Nepal’s rapidly expanding digital payment landscape, ensuring the continued trust and security of millions of Nepalese users.
For more: eSewa PCI DSS Certified QSA Firms