Live Compliance Intelligence Β· GCC & EU

Are you compliant
right now?

The only compliance platform built natively for SAMA, NCA, SDAIA, GDPR and NIS2. Connect your cloud. Get your live score in 30 minutes.

9
Frameworks
137
Controls
12
Connectors
30m
To first score
All frameworks covered
SAMA CSF
NCA ECC
SDAIA PDPL
GDPR
NIS2
ISO 27001
SOC 2
DORA
UAE-IA
Live Product
Your compliance score,
updated in real-time
app.arduredu.com β€” Compliance Dashboard Β· Live
73%
SAMA Score
88%
NCA Score
3
Critical Issues
€8.1M
Risk Mitigated
MFA enforced for all users
SAMA-06 Β· GDPR-13 Β· NCA-05
CRITICALAWSβœ“ PASS
Cybersecurity governance framework
SAMA-01 Β· NCA-01 Β· ISO-01
CRITICALManualβœ— FAIL
Data breach notification within 72 hours
GDPR-07 Β· SDAIA-09 Β· NIS2-12
CRITICALAzureβœ— FAIL
Encryption of data at rest and in transit
SAMA-08 Β· NCA-08 Β· GDPR-10
CRITICALAWSβœ“ PASS
Vulnerability management programme
SAMA-12 Β· NCA-13 Β· NIS2-08
HIGHAWSβœ“ PASS
The Problem
GCC compliance is broken

Mid-market financial institutions are the most exposed β€” too large to ignore SAMA and NCA, too small for a 10-person GRC team.

πŸ“‹

Static PDFs

Compliance tools generate reports. By the time you read it, it's outdated. Auditors want real-time evidence β€” not last quarter's PDF.

πŸ”€

Siloed Systems

Security, compliance and risk live in separate tools. Nobody has a single view of their true compliance posture across all frameworks.

⏰

No Live Visibility

Nobody can answer "Are we SAMA-compliant right now?" β€” until an audit starts and it's too late to fix the gaps.

πŸ’Έ

Severe Penalties

SAMA fines. NCA sanctions. GDPR up to €20M. SDAIA penalties. Companies discover gaps during audits β€” not before.

Platform Features
Everything a compliance team
actually needs
πŸ“Š

Live Compliance Score

Real-time score per framework, updated continuously as your environment changes. See which controls pass and which need attention β€” no more guessing.

Real-time
πŸ”Œ

12 Cloud Connectors

AWS, Azure, GCP, Oracle, On-Premise, Microsoft 365, GitHub, Okta, Intune, Defender, ServiceNow and Jira. Connect with read-only credentials in under 10 minutes.

Read-only access
⚠️

Risk Register

Every failing control automatically creates a risk entry with financial exposure in euros. Assign owners, set deadlines, track mitigation status.

Auto-generated
πŸ—ΊοΈ

Gap Analysis

One-click gap analysis showing every failing control, regulatory reference, remediation steps and € fine exposure. Board and auditor ready.

Board-ready
🏒

Vendor Risk Management

Track all third-party vendors with risk tier classification, SAMA security clause compliance, DPA status, contract expiry alerts and periodic assessments.

SAMA-13 compliant
πŸ“„

Policy Generator

Generate professional compliance policy documents for any control across all 9 frameworks. Customise, approve and upload as evidence in minutes.

SAMA Β· GDPR Β· NCA
πŸ—‚οΈ

Evidence Centre

Full evidence registry with gap analysis, expiry tracking and bulk evidence requests. Know exactly what evidence you have and what's missing per framework.

Audit-ready
🌐

Trust Centre

Public compliance page showing your live scores to prospects and customers. Close enterprise deals faster β€” share a link instead of a PDF questionnaire.

Sales enablement
πŸ”’
Read-only access
We never write to your systems
πŸ€–
AI-powered analysis
Claude AI reviews evidence documents
πŸ“‹
Full audit trail
Every change timestamped and logged
🌍
GCC & EU native
SAMA, NCA, SDAIA, GDPR, NIS2
⚑
Live in 30 minutes
No professional services needed
Regulatory Frameworks
One platform. Every regulation
that matters in GCC and EU.

Vanta and Drata don't cover SAMA, NCA or SDAIA. We do β€” plus GDPR, NIS2, ISO 27001, SOC 2, DORA and UAE-IA.

SAMA CSF

Saudi Central Bank Cybersecurity Framework

Required for all financial institutions in Saudi Arabia. 16 controls with AWS, Azure and cloud connectors.

Saudi Arabia16 controlsLive
NCA ECC

National Cybersecurity Authority Essential Controls

Saudi Arabia's national cybersecurity framework. Mandatory for government entities and critical sectors.

Saudi Arabia15 controlsLive
SDAIA PDPL

Saudi Data & AI Authority β€” Personal Data Protection

Saudi Arabia's data privacy law covering processing, consent, cross-border transfers and breach notification.

Saudi Arabia18 controlsLive
GDPR

General Data Protection Regulation

EU data privacy law β€” fines up to €20M or 4% of global turnover. Essential for any org handling EU personal data.

EU15 controlsLive
NIS2

Network & Information Security Directive 2

EU cybersecurity law for essential and important entities. Mandatory incident reporting and supply chain security.

EU12 controlsLive
UAE-IA

UAE Information Assurance Standard

UAE's national information assurance framework for government and critical infrastructure organisations.

UAE14 controlsLive
ISO 27001

ISO/IEC 27001:2022 Information Security

Global standard for information security management. Opens enterprise procurement doors internationally.

Global18 controlsLive
SOC 2

Service Organisation Control 2

Required by US enterprise procurement. Trust services criteria covering security, availability and confidentiality.

USA15 controlsLive
DORA

Digital Operational Resilience Act

EU financial sector regulation for banks, fintechs and insurers. ICT risk management and incident reporting.

EU Finance14 controlsLive
Integrations
Connect your entire tech stack

12 connectors with read-only access. One scan updates all 9 frameworks simultaneously.

☁️
AWS
Cloud
πŸ”·
Azure AD
Identity & Cloud
πŸ”΅
Google Cloud
Cloud
πŸ”΄
Oracle Cloud
Cloud
πŸͺŸ
Microsoft 365
Productivity
πŸ”
Okta
Identity
πŸ“±
Intune
Device Management
πŸ›‘οΈ
Defender
Security
πŸ™
GitHub
Code Security
🎫
ServiceNow
ITSM
πŸ”΅
Jira
Project Tracking
πŸ–₯️
On-Premise
Linux Agent
How It Works
Live in 30 minutes.
No professional services.
1

Create Account

Sign up and your organisation is provisioned instantly across all 9 frameworks.

2

Connect Systems

Add your cloud connectors with read-only credentials. Takes under 10 minutes.

3

Get Your Score

Arduredu scans your environment and delivers your live compliance score immediately.

4

Fix & Monitor

Remediation guidance per control. Upload evidence. Watch your score improve in real-time.

Pricing
Simple, transparent pricing

No setup fees. No hidden costs. Cancel anytime. All plans include a 30-day free trial.

Starter
€499
/month Β· billed monthly
  • 3 compliance frameworks
  • 5 system connectors
  • Risk Register
  • Email alerts
  • PDF audit reports
  • Up to 500 employees
Get Started
Enterprise
Custom
tailored to your needs
  • All frameworks + custom
  • SAML SSO
  • SLA guarantee
  • Dedicated CSM
  • On-premise deployment
  • API access
Contact Us
Get in Touch
Let's talk compliance

Ready to know your compliance score?

Book a demo, start a pilot, or ask a question. We respond within 24 hours. Our team understands SAMA, NCA and GCC regulatory requirements.

πŸ“§
admin@arduredu.com
🌐
arduredu.com
🌍
GCC & EU markets β€” global SaaS
βœ“ Message sent! We'll be in touch within 24 hours.

Are you compliant
right now?

Most companies can't answer that question. Arduredu makes sure you always can β€” across SAMA, NCA, GDPR and every framework that matters.

Start Free Trial β†’