
KSA’s NCA / SAMA cybersecurity regimes and GCC-wide PDPL data protection laws are now two of the strongest forces shaping governance in the region....
Insights, perspectives, and thought leadership on governance, risk, compliance, resilience, and assurance.

KSA’s NCA / SAMA cybersecurity regimes and GCC-wide PDPL data protection laws are now two of the strongest forces shaping governance in the region....

Personal Data Protection Laws (PDPL) are rapidly becoming a common thread across the GCC. Saudi Arabia, the UAE, Oman, and...

Saudi Arabia has become one of the most structured and demanding cyber regulatory environments in the region. The National Cybersecurity Authority...

The roles of Chief Risk Officer (CRO), Chief Compliance Officer (CCO), and Chief Information Security Officer (CISO) are converging in...

Many organizations recognise the idea of “combined assurance”: risk, compliance, and internal audit should coordinate their efforts so the board...

Internal audit and ICFR (Internal Control over Financial Reporting) are often constrained by one fundamental issue: they are forced to...

Boardrooms increasingly recognise that crises are not “if” events but “when” events. Cyber attacks, system outages, geopolitical shocks, and extreme...

For years, business continuity management (BCM) focused largely on recovering sites, systems, and processes after disruption. Today’s regulatory and threat...

Cyber, privacy, and third‑party risks are among the most material and interconnected threats facing organizations today. A single cyber incident...
© 2026 Falconry360 . All rights reserved.