Advisory — Cybersecurity consulting for Gulf enterprises

Cyber risk assessment, threat intelligence, governance and compliance, security strategy, and AI security advisory for organisations across the Gulf.

Cyber Risk Assessment

Understanding what you are actually exposed to. Mapping real attack surface, identifying gaps, and prioritising by business impact with FAIR quantification. Not a checkbox exercise.

Threat Intelligence Advisory

Turning data into decisions. Tracking threat actors, attributing activity against MITRE ATT&CK and the Diamond Model, and building intelligence programs that inform action, not just generate reports.

Governance, Risk & Compliance

Framework alignment that works in practice, not just in documentation. Audit readiness and gap analysis across ISO 27001, PCI DSS, SOC 2, NIST CSF, SAMA CSF, NCA ECC and NESA, with evidence and remediation tracking.

Security Strategy & Architecture Review

From incident readiness to zero trust adoption, building security programs that fit the organisation, not the other way around.

AI Security & Trust Advisory

Helping organisations understand AI risk at the human layer, where a confident, fluent recommendation gets trusted without verification and the human gate itself can be compromised.

Security Awareness, via Excera

Personal, voice-first threat briefings in Arabic and English, tailored to each employee's role and exposure, aligned to GCC compliance frameworks. Delivered through Excera.

How I work

Discovery, then assessment against real threats and relevant frameworks, then clear prioritised strategy tied to business outcomes, then ongoing advisory for the decisions that come after the engagement. Clients include Gulf enterprises, government entities, financial institutions, and startups scaling security, across the UAE, Saudi Arabia, Qatar, Kuwait, Bahrain, Oman, and Egypt.

Book a security briefing.