Compliance ModuleGRC Vantage
15 frameworks liveCompliance.
Compliance.
Every framework, mapped and current.
Saudi and international frameworks pre-loaded with the full control hierarchy, evidence templates and submission-ready reporting — so your team assesses against what regulators actually inspect, not a spreadsheet.
Module overview
Compliance
Controls pre-mapped
780+ across SAMA, NCA, ISO, SOC, PCI & PDPL
Frameworks
15 live, more each quarter
Coverage
Saudi-first + international
Evidence
Templates on every control
Reporting
Submission-ready packs
Perspective
Inspectors see the canonical control IDs they recognise.
Every framework is built from its official reference hierarchy — ECC-1-1-1, SAMA-CSF-3.4 — not a US template bent to fit. The structure your regulator wrote is the structure your team assesses against.
Framework library
15 frameworks, live now*
Pre-mapped with every control, ready to assess today.
National — NCA
NCA ECC
Essential Cybersecurity Controls (ECC-2:2024)
NCA CSCC
Critical Systems Cybersecurity Controls
NCA CCC · OTCC · DCC · TCC
Sector-specific control sets
Financial — SAMA
SAMA CSF
Cyber Security Framework
SAMA BCM
Business Continuity Management
SAMA IT Governance
IT governance framework
International
ISO 27001
Information security management
SOC 2
Trust Services Criteria
PCI DSS · NIST CSF
Payment security & cyber framework
Privacy
PDPL
Saudi Personal Data Protection Law
GDPR
EU data protection
+ New frameworks added as Saudi regulators publish them
*Framework list current for 2026; coverage expands continuously.
See your compliance posture against every Saudi regulator — in one workspace.
Run a free assessmentNo signup required. Get an instant readiness score and a prioritised remediation roadmap, delivered from Riyadh and Dammam.