Skip to main content
Version: 1.0.0-beta

Compliance Frameworks

AIIA provides built-in support for Saudi and international regulatory frameworks, enabling compliance mapping, gap analysis, and continuous compliance monitoring.

Compliance Frameworks

Built-In Frameworks

FrameworkDescriptionDomain
NCA ECCNational Cybersecurity Authority — Essential Cybersecurity ControlsCybersecurity
PDPLPersonal Data Protection Law (Saudi Arabia)Data Privacy
CSCCCloud Security Compliance CertificationCloud Security
SAMA CSFSaudi Arabian Monetary Authority — Cyber Security FrameworkFinancial Services
ISO 27001Information Security Management SystemInformation Security
COSOCommittee of Sponsoring Organizations — Internal Control FrameworkInternal Controls
COBITControl Objectives for Information and Related TechnologiesIT Governance
SOXSarbanes-Oxley ActFinancial Reporting

Key Capabilities

CapabilityDescription
Framework LibraryPre-loaded regulatory frameworks with all controls
Control MappingMap internal controls to framework requirements
Gap AnalysisIdentify unmet framework requirements
Compliance ScoringPercentage-based compliance score per framework
Evidence LinkingAttach evidence to framework controls
Custom FrameworksBuild your own compliance frameworks
Assessment TrackingTrack compliance assessments over time
ReportingGenerate compliance status reports

Compliance Workflow

Getting Started

  1. NCA ECC → — Saudi cybersecurity compliance
  2. PDPL → — Personal data protection
  3. CSCC → — Cloud security certification
  4. Custom Frameworks → — Build your own
  5. Gap Analysis → — Identify compliance gaps