Know your SAMA CSF readiness
before the examiner does.
Answer 15 questions across the four SAMA Cyber Security Framework domains. Get an instant maturity score, a scored domain breakdown, and a prioritised list of what to fix first — every question mapped to the framework requirements SAMA examiners check.
How ready are you for your SAMA CSF examination?
15 questions across 4 control domains. One at a time. Keyboard-driven. You'll get an instant maturity score and a prioritised remediation roadmap in under five minutes.
What happens when you finish
Your full results are instant — score, domain breakdown and priority gaps, no email required. Optionally enter your email on the results screen to receive the report in your inbox.
Overall SAMA CSF readiness percentage and where you sit on the maturity scale — Initial, Developing, Defined, or Managed.
Understand exactly which SAMA CSF domain — Leadership & Governance, Risk & Compliance, Operations & Technology, or Third Party — is your biggest examination risk.
Top 3 gaps ranked by severity, with specific first steps you can act on before your next SAMA examination cycle.
Ready to close the gaps for good?
GRC Vantage has the SAMA framework family pre-mapped — CSF, BCM, IT Governance, Counter-Fraud, and the Outsourcing Regulations. Evidence collected once proves compliance everywhere.
Pre-mapped SAMA family
The SAMA frameworks plus NCA ECC, PDPL, and ISO 27001 share controls. Collect evidence once, prove everywhere.
Examination-ready packs
SAMA examination evidence packs assemble themselves from your live evidence trail — no last-minute scramble.
Board-grade dashboards
Cybersecurity posture, open findings, and KPIs visible to leadership at any time. Risk Committee reporting becomes a single click.
Frequently asked questions
- Is the SAMA CSF assessment really free?
- Yes. No credit card, no sign-up to start, no commitment. Your full results — score, domain breakdown and priority gaps — appear immediately after the 15 questions. Optionally enter your email to receive the report in your inbox.
- Who is this assessment for?
- CISOs, IT Audit Managers, GRC Managers, and Compliance Officers at any SAMA-licensed entity — banks, insurance and reinsurance companies, financing companies, exchange companies, and payment service providers operating in the Kingdom.
- How accurate is the score?
- The assessment is a structured self-evaluation aligned to SAMA CSF controls. It gives you a directionally accurate picture of your maturity. A formal SAMA CSF review will always be more precise — but this assessment identifies the right areas to focus on first.
- What do I do with the results?
- Share with your CISO, Risk Committee, and IT Audit. Use the prioritised gap list to scope your next SAMA examination preparation cycle. Optionally book a 30-minute call for a tailored remediation plan.
Run another readiness assessment
Score your maturity against the other Saudi frameworks — same conversational format, same instant results.
NCA ECC Readiness
Score your cybersecurity maturity across the four NCA ECC-2:2024 domains.
Start AssessmentNCA CSCC Readiness
Score your critical-systems protection against the NCA CSCC overlay.
Start AssessmentSAMA IT Governance
Score your IT governance maturity against the SAMA IT Governance Framework.
Start AssessmentSAMA Third-Party Risk
Score your outsourcing maturity against the SAMA Outsourcing Regulations.
Start AssessmentBCM Readiness
Score your business continuity maturity against ISO 22301 and the SAMA BCM Framework.
Start AssessmentPDPL Readiness
Score your privacy programme against the Saudi Personal Data Protection Law.
StartStart your SAMA CSF assessment now — it takes under 5 minutes.
Free. Instant results. No commitment. Built for GRC professionals across Saudi banking and finance.
Take the assessment