Service 03

Security Standards Implementation & Audits

Specialist implementation and auditing of GSMA SAS (SAS-UP and SAS-SM), SOC, UL 2050, ASTM F1233, PCI DSS and LPS 1175. Available onsite or remote, worldwide.

Security Standards Implementation & Audits

AACL Global is a specialist consultancy for demanding security certification schemes including GSMA SAS, trusted by security printers, SIM and eSIM manufacturers, payment ecosystems and high-security facilities worldwide. Available onsite or remote.

Delivered onsite or remotely worldwide by AACL Global (Audits and Assurance Consult Ltd), headquartered in Nairobi, Kenya, for organisations across Africa and international markets.

Overview

AACL Global is a specialist consultancy for demanding security certification schemes including GSMA SAS, trusted by security printers, SIM and eSIM manufacturers, payment ecosystems and high-security facilities worldwide. Available onsite or remote.

GSMA SAS is our lead specialism. SAS-UP covers SIM, eSIM and UICC production sites, while SAS-SM covers subscription management and remote provisioning platforms. Both demand prescriptive controls spanning physical premises, personnel screening, information security, production processes and supply chain governance, and both are audited by GSMA-appointed auditors against a published checklist.

Alongside GSMA SAS we implement and audit SOC 1 and SOC 2, UL 2050, ASTM F1233, PCI DSS and LPS 1175. AACL Global provides end-to-end implementation and audit readiness for each scheme, available onsite or remote, worldwide.

Our consultants have supported certification programmes for security printers, SIM and eSIM manufacturers, payment processors and high-security storage facilities across Africa, Europe, the UK, the US and Asia. We understand the operational realities of running certified facilities. From clean-room controls to CCTV retention and secure destruction.

We provide both implementation (design, remediation, evidence packs) and independent second-party auditing to prepare organisations for scheme audits with confidence, for first-time applications and renewal cycles alike.

Business challenges

The conditions that bring organisations to AACL.

  • 01Onerous physical control requirements (LPS 1175, UL 2050) with long lead times
  • 02Complex evidence expectations across production, personnel and IT
  • 03Coordination between architects, security integrators, HR and IT
  • 04Cost pressure to right-size controls without compromising certification
  • 05Maintaining continuous compliance between annual audits
Consulting methodology

A structured, evidence-based delivery model.

01

Scheme scoping

Interpret scheme requirements against your production, product and customer footprint.

02

Design & remediation

Physical, procedural and technical control design with integrator coordination.

03

Evidence engineering

Structured evidence packs mapped one-to-one against auditor checklists.

04

Mock audit

Independent readiness audit simulating the certification body assessment.

05

Certification support

On-site support during scheme audit and non-conformity closure.

06

Sustainment

Annual surveillance readiness, KPI monitoring and control assurance.

Deliverables

What you receive.

  • Scheme applicability statement
  • Control design and remediation plan
  • Auditor-mapped evidence pack
  • Mock audit report
  • Certification audit support
  • Annual surveillance readiness pack
Relevant standards

International frameworks we apply.

GSMA SAS-UP / SAS-SMSOC 1 / SOC 2UL 2050ASTM F1233PCI DSSLPS 1175
Industries served
Security Printing·Telecommunications·Banking & Financial Services·Private Security·Manufacturing·
FAQ

Answers to questions we're commonly asked.

Ready to begin

Speak with an AACL senior consultant about this engagement.

WhatsAppSignalThreemaCall now