Falconry Supports Saudi NCA Implementation

Falconry has supported a major PIF-backed tourism and destination development company in Saudi Arabia with the implementation of National Cybersecurity Authority requirements as part of its broader cybersecurity maturity journey. Large development organizations operate across expanding digital environments, multiple stakeholders and a growing ecosystem of service providers. In that context, regulatory cybersecurity requirements need to be translated into practical governance, accountable control ownership and evidence that can be sustained as the organization evolves. The engagement supported the implementation of applicable NCA cybersecurity requirements through structured governance, control alignment, remediation coordination and evidence-focused execution. Falconry worked with relevant stakeholders to help turn regulatory expectations into an actionable implementation programme and strengthen visibility over progress, responsibilities and priority gaps. The programme supports a more consistent cybersecurity operating model and provides a stronger foundation for ongoing assurance, management oversight and future maturity improvement as the organization continues to scale.
Falconry Supports Saudi Resilience Programme

Falconry supported a major PIF-backed tourism and destination development company in Saudi Arabia with the implementation of business continuity and operational resilience capability. For a large development organization, continuity planning must account for evolving operations, strategic programmes, third-party dependencies and the need to maintain clear decision-making during disruption. The engagement focused on establishing a stronger governance foundation for continuity and aligning resilience planning with the organization’s operating environment. Falconry supported the development of an ISO 22301-aligned BCM approach, including continuity governance and resilience planning activities designed to improve preparedness and clarify how critical functions would be managed during disruption. The work helped create a more structured basis for business ownership, continuity responsibilities and future maturity development. The engagement supported the organization in treating resilience as an operating capability rather than a stand-alone compliance exercise – strengthening the connection between governance, planning and practical preparedness.