Security & Privacy

Governed at every layer.

Host your analytics in Saudi Arabia. Use encryption, your existing sign-in system, and access rules to control who can see your data. Track queries with an audit trail.

Sovereign · Saudi-hosted by default

Independently attested and aligned to the standards your regulators expect.

SOC 2 Type IIISO 27001GDPRSaudi PDPL
Defense in depth

Four layers around your data.

Each layer has a clear job: protect connections, verify identities, control data access, and record activity. Together they help your team manage who can see and use business data.

Perimeter · TLS 1.3
Identity · SSO + MFA
Policy · row + column
Your dataEncrypted at rest · AES-256
  • Encryption everywhere

    AES-256 at rest, TLS 1.3 in transit. Keys you can rotate and hold yourself.

  • Identity & SSO

    SAML / OIDC single sign-on, SCIM provisioning and enforced MFA.

  • Row & column permissions

    Control which rows and columns each role can view, and mask personal data where needed.

  • Audit & lineage

    Record queries, exports, and access changes so your team can trace what happened and where the data came from.

Control, in practice

Who sees what — and the proof they did.

Access policyrole × resource
RoleRevenueCustomer PIISystem logs
Administrator
Analyst
Branch viewer
Auditor
Full access Masked / read-only No access
Live audit trail
  • n.alharbi ran query on Revenue (Eastern region)

    today · 09:42 AST
  • policy-engine masked 3 PII columns for Analyst role

    today · 09:41 AST
  • s.qassem exported board → revoked at source

    today · 09:18 AST

Streamed to your SIEM, retained to your policy.

The same policy governs plain-language answers and every federated query — enforced at the source, never bolted on after.

Get started

Analytics your compliance team will sign off.

Sovereign hosting, encryption everywhere, cell-level permissions and a complete audit trail — see it on your own controls.