Score your SAMA IT Governance
programme maturity.
Answer 15 questions across five IT governance domains aligned to the SAMA IT Governance Framework. Get an instant maturity score, scored domain breakdown, and prioritised list of gaps — every question mapped to the governance evidence SAMA examiners check.
How mature is your SAMA IT Governance programme?
15 questions across 5 control domains. One at a time. Keyboard-driven. You'll get an instant maturity score and a prioritised remediation roadmap in under five minutes.
What happens when you finish
Your full results are instant — score, domain breakdown and priority gaps, no email required. Optionally enter your email on the results screen to receive the report in your inbox.
Overall SAMA IT Governance readiness percentage and your maturity level — Initial, Developing, Defined, or Managed.
See exactly which IT governance domain — Strategy, Risk, Projects, Operations, or Audit — is your biggest examination risk.
Top 3 gaps ranked by severity, with specific first steps you can act on before your next SAMA examination cycle.
Ready to make IT governance auditable, not just documented?
GRC Vantage has the SAMA IT Governance Framework, SAMA CSF, SAMA BCM, and COBIT/ITIL practices pre-mapped. Run maturity assessments once, prove governance everywhere.
Maturity scoring engine
Score every SAMA IT Governance domain on a structured maturity model with prioritised gap remediation.
IT policy lifecycle
Manage IT policies, standards, and procedures with version history, reviewer trails, and Board approval workflows.
Board-grade dashboards
IT KPIs, risk register, audit findings, and emerging-tech risk visible to the Board at any time.
Frequently asked questions
- Is the SAMA IT Governance assessment really free?
- Yes. No credit card, no sign-up to start, no commitment. Your full results — score, domain breakdown and priority gaps — appear immediately after the 15 questions. Optionally enter your email to receive the report in your inbox.
- Who is this assessment for?
- CIOs, Heads of IT Governance, IT Audit Managers, CROs, and Compliance Officers at any SAMA-licensed entity — banks, insurance and reinsurance companies, financing companies, and payment service providers.
- How accurate is the score?
- The assessment is a structured self-evaluation across five IT governance domains aligned to the SAMA IT Governance Framework. It gives you a directionally accurate picture of your maturity and identifies where to focus first. A formal review will always be more precise.
- How does it differ from a SAMA CSF assessment?
- SAMA CSF focuses on cybersecurity controls. The IT Governance assessment scores governance practices: IT strategy, Board oversight, IT risk integration, project and change governance, ITSM operations, and audit assurance. The two are complementary.
Run another readiness assessment
Score your maturity against the other Saudi frameworks — same conversational format, same instant results.
NCA ECC Readiness
Score your cybersecurity maturity across the four NCA ECC-2:2024 domains.
Start AssessmentSAMA CSF Readiness
Score your cybersecurity maturity against the Saudi Central Bank Cyber Security Framework.
Start AssessmentSAMA Third-Party Risk
Score your outsourcing maturity against the SAMA Outsourcing Regulations.
Start AssessmentBCM Readiness
Score your business continuity maturity against ISO 22301 and the SAMA BCM Framework.
Start AssessmentPDPL Readiness
Score your privacy programme against the Saudi Personal Data Protection Law.
Start AssessmentInternal Audit Readiness
Score your internal audit function against the IIA Standards and Saudi regulated-review obligations.
StartStart your SAMA IT Governance assessment now — under 5 minutes.
Free. Instant results. No commitment. Built for IT Governance and IT Audit teams across Saudi banking and finance.
Take the assessment