EPI External Security Evaluator: usd Receives Accreditation from the European Payments Initiative

24. März 2025

usd AG has been accredited as a Security Evaluator by the European Payments Initiative (EPI). We are now authorized to carry out security evaluations for the certification of participating companies.

About EPI and Wero

EPI is an association of 16 issuers and acquirers with a common goal: the introduction of a standardized digital payment service for all European companies and citizens.

Since July 2024, customers of participating banks in Germany have been able to send and receive money in real time using the “Wero” wallet app. From 2025, payments will also be possible online via Wero and in retail stores from 2026. “Wero will strengthen European sovereignty in payment transactions,” Joachim Schmalzl, member of the Management Board of the German Savings Banks Association (DSGV) and Chairman of the Supervisory Board of EPI, told dpa

Participation requires regular security certifications

EPI requires regular security certifications from banks and financial service providers who wish to enable their customers to pay or accept payments via Wero. Depending on their role in the payment process, banks or financial service providers, issuers or acquirers receive such certification either through a self-certification or a security assessment carried out on site by an accredited auditor (EPI Security Evaluator).

usd as your EPI Security Evaluator

As an EPI-accredited External Security Evaluator, we carry out audits for you. We are of course also available to advise you at any time - both in preparation for the security assessment and during your self-assessment.

“As a long-standing auditor and consultant for information security in the payment industry and financial sector, accreditation as an EPI Security Evaluator is a logical step for us. We look forward to putting our experience and expertise to good use in supporting our customers with this new development in the payment industry.”


Torsten Schlotmann, Head of PCI & Payment Security

Also interesting:

7 Questions about the Cyber Resilience Act (CRA) 

7 Questions about the Cyber Resilience Act (CRA) 

1. What is the Cyber Resilience Act?   With the Cyber Resilience Act (CRA for short), the EU is introducing a regulation for the first time that aims to improve the cybersecurity and resilience of products with digital elements. Unlike an EU directive, the...

Security Advisory on Element Android

Security Advisory on Element Android

The pentest professionals at usd HeroLab examined the Element application for Android during their pentests. They identified a vulnerability in the PIN protection. Under certain circumstances, the user is not logged out if he enters the wrong PIN more than the...

Categories

Categories