Specialist implementation and auditing of GSMA SAS (SAS-UP and SAS-SM), SOC, UL 2050, ASTM F1233, PCI DSS and LPS 1175. Available onsite or remote, worldwide.
AACL Global is a specialist consultancy for demanding security certification schemes including GSMA SAS, trusted by security printers, SIM and eSIM manufacturers, payment ecosystems and high-security facilities worldwide. Available onsite or remote.
Delivered onsite or remotely worldwide by AACL Global (Audits and Assurance Consult Ltd), headquartered in Nairobi, Kenya, for organisations across Africa and international markets.
AACL Global is a specialist consultancy for demanding security certification schemes including GSMA SAS, trusted by security printers, SIM and eSIM manufacturers, payment ecosystems and high-security facilities worldwide. Available onsite or remote.
GSMA SAS is our lead specialism. SAS-UP covers SIM, eSIM and UICC production sites, while SAS-SM covers subscription management and remote provisioning platforms. Both demand prescriptive controls spanning physical premises, personnel screening, information security, production processes and supply chain governance, and both are audited by GSMA-appointed auditors against a published checklist.
Alongside GSMA SAS we implement and audit SOC 1 and SOC 2, UL 2050, ASTM F1233, PCI DSS and LPS 1175. AACL Global provides end-to-end implementation and audit readiness for each scheme, available onsite or remote, worldwide.
Our consultants have supported certification programmes for security printers, SIM and eSIM manufacturers, payment processors and high-security storage facilities across Africa, Europe, the UK, the US and Asia. We understand the operational realities of running certified facilities. From clean-room controls to CCTV retention and secure destruction.
We provide both implementation (design, remediation, evidence packs) and independent second-party auditing to prepare organisations for scheme audits with confidence, for first-time applications and renewal cycles alike.
The conditions that bring organisations to AACL.
- 01Onerous physical control requirements (LPS 1175, UL 2050) with long lead times
- 02Complex evidence expectations across production, personnel and IT
- 03Coordination between architects, security integrators, HR and IT
- 04Cost pressure to right-size controls without compromising certification
- 05Maintaining continuous compliance between annual audits
A structured, evidence-based delivery model.
Scheme scoping
Interpret scheme requirements against your production, product and customer footprint.
Design & remediation
Physical, procedural and technical control design with integrator coordination.
Evidence engineering
Structured evidence packs mapped one-to-one against auditor checklists.
Mock audit
Independent readiness audit simulating the certification body assessment.
Certification support
On-site support during scheme audit and non-conformity closure.
Sustainment
Annual surveillance readiness, KPI monitoring and control assurance.
What you receive.
- Scheme applicability statement
- Control design and remediation plan
- Auditor-mapped evidence pack
- Mock audit report
- Certification audit support
- Annual surveillance readiness pack
