Know your SAMA
CSF readiness
before the examiner does.
Answer 15 questions across all 5 SAMA Cyber Security Framework domains. Get an instant maturity score, a scored domain breakdown, and a prioritised list of what to fix first — built by a veteran Head of IT Audit with two decades of SAMA examination experience.
15 questions, one at a time, with keyboard auto-advance — Typeform-style.
Governance, Risk, Operations, Third-Party, and Resilience — all benchmarked.
Each question maps to a specific SAMA CSF control reference examiners check.
Walk away with your top 3 gaps ranked and actionable first steps.
Your SAMA CSF Readiness Assessment
Conversational format, one question at a time. Use keyboard A–D to pick or click an option — answers auto-advance. Be honest: the value is in identifying gaps, not scoring well.
How ready are you for your
SAMA CSF examination?
Answer 15 questions across 5 SAMA CSF domains — Governance, Risk, Operations, Third-Party, and Resilience. Get your instant maturity score and a prioritised remediation roadmap in under 5 minutes.
Aligned to the SAMA Cyber Security Framework — used by Saudi banks, insurers, and finance companies
What happens after you complete the assessment?
Your results are instant. You can also receive a personalised SAMA CSF gap report reviewed by a veteran Head of IT Audit with 20+ years across SAMA examination cycles.
Instant maturity score
Overall SAMA CSF readiness percentage and where you sit on the maturity scale — Initial, Developing, Defined, or Managed.
Domain-by-domain breakdown
Understand exactly which SAMA CSF domain — Governance, Risk, Operations, Third-Party, or Resilience — is your biggest examination risk.
Prioritised remediation plan
Top 3 gaps ranked by severity, with specific first steps you can act on before your next SAMA examination cycle.
Related on GRC Vantage
SAMA CSF is one of six frameworks in the SAMA family. Continue exploring the platform, framework family, and adjacent assessments.
Ready to close the gaps for good?
GRC Vantage has the entire SAMA framework family pre-mapped — CSF, BCM, IT Governance, Cyber Threat Intelligence, Counter-Fraud, and Outsourcing Regulations. Evidence collected once proves compliance everywhere.
Pre-mapped SAMA family
All six SAMA frameworks plus NCA ECC, PDPL, and ISO 27001 share controls. Collect evidence once, prove everywhere.
Examination-ready packs
Auto-generated SAMA examination evidence packs assemble themselves from your live evidence trail — no last-minute scramble.
Board-grade dashboards
Cybersecurity posture, open findings, and KPIs visible to leadership at any time. SAMA Risk Committee reporting becomes a single click.
Frequently asked questions
Is the SAMA CSF assessment really free?
Yes. No credit card, no sign-up to start, no commitment. You receive your full maturity score and gap analysis immediately after the 15 questions.
Who is this assessment for?
CISOs, IT Audit Managers, GRC Managers, and Compliance Officers at any SAMA-licensed entity — banks, insurance and reinsurance companies, financing companies, exchange companies, and payment service providers operating in the Kingdom.
How accurate is the score?
The assessment is a structured self-evaluation aligned to SAMA CSF controls. It gives you a directionally accurate picture of your maturity. A formal SAMA CSF audit will always be more precise — but this assessment identifies the right areas to focus on first.
What do I do with the results?
Share with your CISO, Risk Committee, and IT Audit. Use the prioritised gap list to scope your next SAMA examination preparation cycle. Optionally book a 30-minute call for a tailored remediation plan.