Cybersecurity & PDPL Compliance for Saudi Companies
Audit-Ready in Days, Not Months
NCA, SAMA, SDAIA, your partner banks and your largest clients all ask for the same thing: written evidence of compliance, meaning gap assessments, policies and procedures. We write it for your company against NCA, SAMA and PDPL requirements, at a fixed price, delivered in 7 to 28 days.
Fixed USD pricing · Reply within 2 business hours · US-registered company
The Difference Compliance Makes
The 5-Phase Cyber Sentinel System™
We don't sell generic templates. Every document is built for your company against the exact NCA, SAMA or PDPL requirements that apply to you.
Choose the Right Package
Fixed transparent pricing. No custom quotes. No surprises. WhatsApp us to confirm your company size and right package before payment.
The fastest way to cover the core requirements of Saudi Arabia's Personal Data Protection Law (PDPL), and a natural first step before a full compliance bundle.
- ✓Public privacy notice for your website or app (PDPL-aligned)
- ✓Records of Processing Activities (RoPA)
- ✓Personal data breach procedure, including 72-hour SDAIA notification
- ✓Data subject rights procedure (access, correction, deletion)
- ★FREE: All documents in both Arabic and English
- ✓NCNICC-1:2025 Gap Analysis Report (comprehensive, all controls)
- ✓Information Security Policy (CEO-signed)
- ✓Acceptable Use Policy
- ✓Incident Response Plan
- ✓90-Day Remediation Roadmap (week-by-week)
- ✓Staff Security Awareness Training Deck (25 slides)
- ✓WaqiSec compliance status letter for tender files
- ★FREE: 12-month NCA regulatory update alerts
- ★FREE: 30-min implementation kickoff call after delivery
- ✓Everything in NCNICC Bundle (7 documents)
- ✓NCA ECC-2:2024 Gap Analysis — all 108 main controls across 4 domains
- ✓Data Classification Policy
- ✓Access Control Policy (MFA + user lifecycle)
- ✓Vendor Risk Management Policy
- ✓Business Continuity Policy
- ✓Remote Work Security Policy
- ★FREE: Vendor Risk Questionnaire for top 5 suppliers
- ✓Everything in NCNICC & ECC Bundles (15 documents)
- ✓SAMA CSF Gap Analysis — all 4 domains
- ✓SAMA Cybersecurity Controls Checklist
- ✓Third-Party Risk Assessment Questionnaire (40 questions)
- ✓Customer Data Protection Procedures
- ✓SAMA Incident Reporting Procedure
- ✓Data Retention and Deletion Policy
- ✓60-Day Post-Delivery Support Retainer
- ★FREE: Priority SAMA regulatory update alerts
Add-Ons Available for Any Bundle
The Triple Shield Guarantee™
Three clear guarantees with fixed time limits, so you can decide with confidence.
Guarantees cover the documents within the agreed scope. They don't cover implementing technical controls or regulators' decisions.
4 Simple Steps to Full Compliance
Understand What Regulators Require Before You Spend Anything
Common Compliance & PDPL Questions
Is my company required to follow NCA cybersecurity controls?
▼What is the PDPL, and does it apply to my company?
▼Do I get an official compliance certificate?
▼Do you implement technical controls, or only write documents?
▼You are a US company — can you serve Saudi companies?
▼Why not ask an audit firm to do the compliance directly?
▼What language are the documents in?
▼Do you work white-label for IT and consulting firms?
▼How can I pay and what are the terms?
▼Ready to Get Your Compliance File in Place?
Book a free WhatsApp consultation. We will tell you exactly which frameworks apply to your company, what is required, and how long it will take. No sales pressure — just complete clarity.
Typical response time: within 2 business hours