Topic
Guides & Lessons
A series of practical lessons and guides in cybersecurity and AI — from fundamentals to practice.
43 articles in this topic
Lesson 38: AI in Cybersecurity — Opportunities and Risks for Saudi Financial Institutions
Security Leadership Path — Lesson 8 of 10. Explore how AI enhances threat detection, automates SOC operations, and introduces new risks that Saudi financial institutions must address under SAMA CSCC and NCA ECC.
Compliance & RegulationLesson 36: Third-Party Risk Management — Securing Your Vendor Ecosystem
Security Leadership Path — Lesson 6 of 10. Build a robust Third-Party Risk Management program that satisfies SAMA CSCC and NCA ECC requirements while protecting your organization from vendor-introduced threats.
Guides & LessonsLesson 34: Building a Cybersecurity Team — Hiring and Development
Security Leadership Path — Lesson 4 of 10. A practical guide to recruiting, structuring, and developing a cybersecurity team that meets SAMA CSCC staffing requirements and protects your organization.
Guides & LessonsLesson 32: Building an Effective Cybersecurity Strategy for Saudi Financial Institutions
Security Leadership Path — Lesson 2 of 10. A step-by-step guide to building a cybersecurity strategy that satisfies regulators, protects the business, and earns board-level support.
Guides & LessonsLesson 30: Security Operations Center (SOC) — Building and Operating
Hands-On Cybersecurity Path — Lesson 10 of 10. A practical guide to designing, staffing, and running a SOC that meets Saudi regulatory expectations.
Cloud & IdentityLesson 28: Cloud Security — Securing AWS, Azure, and GCP Environments
Hands-On Cybersecurity Path — Lesson 8 of 10. Master cloud security fundamentals across the three major providers and align your cloud posture with SAMA and NCA requirements.
Malware & Threat ActorsLesson 26: Malware Analysis — Tools and Methodologies
Hands-On Cybersecurity Path — Lesson 6 of 10. Master the tools and methodologies used to dissect malicious software, from safe lab setup to behavioral analysis.
VulnerabilitiesLesson 24: Vulnerability Analysis — From Discovery to Assessment
Hands-On Cybersecurity Path — Lesson 4 of 10. Master the vulnerability analysis lifecycle: from scanning and discovery to risk-based prioritization aligned with SAMA and NCA requirements.
Guides & LessonsLesson 22: Reconnaissance — OSINT Techniques for Beginners
Path 3: Hands-On Cybersecurity — Lesson 2 of 10. Master OSINT reconnaissance techniques to map an organization's digital footprint before a penetration test.
Compliance & RegulationLesson 20: Building an Information Security Governance (GRC) Program from Scratch
Saudi Regulatory Compliance — Lesson 10 of 10. Build a complete GRC program from scratch, aligned with SAMA, NCA, and PDPL requirements for Saudi financial institutions.
Compliance & RegulationLesson 18: Cybersecurity Maturity Assessment — How to Measure Your Current Posture
Path 2: Saudi Regulatory Compliance — Lesson 8 of 10. Learn practical methods to measure your cybersecurity maturity against SAMA CSCC and NCA ECC benchmarks.
Compliance & RegulationLesson 16: ISO 27001:2022 — Key Changes and a Practical Implementation Plan
Saudi Regulatory Compliance Path — Lesson 6 of 10. Master the ISO 27001:2022 transition: new control structure, Annex A changes, and a phased implementation roadmap for Saudi financial institutions.
From reading to doing
Need a view on your own position?
Fyntralink’s cybersecurity consulting turns what you read here into a practical plan for your organisation and its priorities.
Cybersecurity Consulting
Strategic security consulting from experts who understand the Saudi financial sector and its regulatory requirements
Cybersecurity Strategy & Roadmap
We build a clear multi-year cybersecurity strategy and roadmap that ties security investment to your business goals and regulatory...
Security Risk Assessment
Comprehensive cybersecurity risk assessment and professional risk register aligned with your strategic decisions