Zero to PCI DSS Level 1 in 90 Days: Justt's Fast Track to Processing Enterprise Data

Most companies treat a PCI DSS Level 1 ROC as a year-long grind. Justt, a fast-growing fintech reinventing chargeback management, didn't have a year, it needed to serve enterprise clients with stringent security requirements now. Here's how GRSee turned one of the industry's toughest certifications into a 3-month sprint, without cutting a single corner.

a man with long hair wearing a blue shirt
By Tom Rozen

Updated July 21, 2026

the word justt on a blue background

Fintech

INDUSTRY

PCI DSS L1 ROC

ENGAGEMENT

3 Months

TIMELINE

Launch-Ready

OUTCOME

"Very responive, good velocity."

THE CHALLENGE

Justt is a rapidly growing fintech that became the market leading chargeback mitigation solution globally by pioneering an innovative Machine Learning approach while the industry was focused on producing template-based solutions.

Justt is serving the world’s largest enterprises and is setting the bar for enterprise security requirements in the chargeback space. New and exciting product developments led Justt to seek PCI DSS compliance.

A roadmap of new client segments with PCI compliance as an evaluation criteria 

An internal bar for compliance that was already high, this wasn't crisis response, it was proactive investment 

A new product road map that triggered PCI scope before a single customer transaction was processed

Justt wanted  to raise its security posture to further increase its security & data privacy posture and open the door to new product lines.

WHY JUSTT CHOSE GRSEE

When evaluating PCI DSS QSA partners, Justt ranked its priorities clearly:

Expertise: deep, hands-on knowledge of PCI DSS, not a checklist approach

Speed: the ability to move at the pace of the business, not the audit calendar

Personal attention: direct access to the people doing the work

Price: important, but never the deciding factor

GRSee had already earned that trust. Justt considered other firms, but chose GRSee based on experience from previous projects and strong internal recommendations, a repeat relationship built on delivery, not a first-time pitch.

THE ENGAGEMENT

The process was smooth and well-structured from day one” Justt shared. “Kickoff was thorough, the team took time to understand our environment and goals before anything started, so expectations were clear on both sides.”

That clarity carried through the entire engagement. Communication stayed consistent, regular updates, quick responses, and no surprises along the way.

What stood out most in GRSee's service model? Clear guidance and responsiveness, the two things that turn a compliance audit from a black box into a partnership.

The kickoff was thorough, the team took time to understand our environment and goals before anything started, so expectations were clear on both sides.

KEY RESULTS

Certification in record time: Justt achieved its PCI DSS Level 1 ROC in 3 months, record time for one of the most demanding certifications in payments.

Stronger compliance program: The engagement improved Justt's overall security and compliance posture, not just the single certification target.

Sales-cycle leverage: A stronger compliance program now supports greater trust with enterprise buyers, as well as PSPs and financial institutions, and fewer stalls during security review.

Launch-ready roadmap: The certification cleared the path for Justt's AI-based product roadmap to develop new products.

GRSee turned the compliance audit from a headache into a managed process, experienced, responsive, and straight to the point.

Justt, on working with GRSee Consulting

Compliance, Without the Compromises.