Cybersecurity advisory built for Saudi regulation

Governance, risk, compliance and security leadership services aligned to SAMA, NCA and SDAIA requirements — scoped to your institution and delivered with evidence.

Regulatory Updates

Stay ahead of SAMA, NCA, and PDPL regulatory changes with timely intelligence, impact analysis, and practical implementation guidance.

Learn More

Threat Intelligence

Actionable cyber threat intelligence focused on the threats targeting Saudi organizations — not generic global feeds, but intelligence that informs real decisions.

Learn More

Security Awareness

Customized training programs to build a security-first culture across your organization.

Learn More

Policy Development

End-to-end cybersecurity policy and procedure development aligned to Saudi regulatory frameworks.

Learn More

Virtual CISO & Security Leadership

An experienced CISO who leads your security function, reports to your board and represents you to regulators.

Learn More

Governance, Risk & Compliance

Governance structures, risk management and compliance programs aligned to Saudi and international frameworks.

Learn More

SAMA Cyber Security Framework

Maturity assessment, gap remediation and evidence preparation against the SAMA Cyber Security Framework.

Learn More

NCA Essential Cybersecurity Controls

Compliance assessment, remediation and self-assessment support for the NCA Essential Cybersecurity Controls.

Learn More

Personal Data Protection (PDPL)

PDPL compliance programs: data mapping, records of processing, data-subject rights and breach response.

Learn More

Security Operations Advisory

Design, assessment and improvement of security operations, monitoring and incident response capabilities.

Learn More

Cloud & Application Security

Cloud security governance and assessment against NCA Cloud Cybersecurity Controls, and secure application practices.

Learn More

Cybersecurity Awareness & Training

Awareness programs, executive briefings and role-based training that meet regulatory requirements and change behavior.

Learn More

Need a custom solution?

Talk to our team to discuss your specific requirements.

Framework explorer

What each framework asks of you — and what we deliver

Pick a framework to see who it applies to, what it covers and what an engagement produces.

SAMA CSF

SAMA’s Cyber Security Framework for the institutions it regulates, assessed on a maturity scale.

SAMA

Applies to

BanksInsurance companiesFinance companiesOther SAMA-regulated institutions

Main areas

Leadership and governanceRisk management and complianceOperations and technologyThird-party cyber security

What we deliver

  • Maturity assessment against every control
  • Gap analysis and remediation roadmap
  • Policies, standards and procedures
  • Evidence pack for SAMA reviews
Typical first engagement: 8–12 weeks
Readiness self-check

How ready are you? Find out in two minutes

Answer a few questions for your framework. You get a score, your biggest gaps and — if you want it — a detailed assessment from our team.

Ready to talk about your compliance?

Tell us where you stand. We will show you the shortest path to what your regulator expects.

Regulatory updates in your inbox

SAMA, NCA and SDAIA changes and what they mean for your institution — once a month.

We confirm by e-mail; unsubscribe any time.

Schedule a Free Assessment