Skip to content
Standards & Frameworks

Technology Aligned With the Standards That Matter

Organisations operate within diverse regulatory, compliance, and technology environments. CITS maps relevant engagements to applicable standards and frameworks, helping organisations address requirements across information security, data privacy, healthcare, government, and operational technology.

Compliance and standards documentation review
Our Approach

Compliance Starts With Understanding the Environment

There is no single framework that applies equally to every organization. The relevant requirements depend on industry, regulatory jurisdiction, technology architecture, and the sensitivity of the systems being protected.

  1. 01 Understand Environment
  2. 02 Identify Requirements
  3. 03 Design Architecture
  4. 04 Support Implementation
Framework Directory

Key Standards & Frameworks Relevant to Our Solutions

ADHICS V2

Abu Dhabi Healthcare Information & Cyber Security Standard

Provides mandatory cybersecurity controls for healthcare entities in Abu Dhabi. CITS considers applicable ADHICS V2 requirements across clinical infrastructure and health data security engagements.

Discuss Healthcare Requirements

UAE IA / NESA

Information Assurance Standards

National security and assurance requirements for UAE government entities and critical national services. CITS maps engagements to applicable UAE information assurance controls.

Discuss Government Security

UAE PDPL

Federal Decree-Law on Personal Data Protection

Governs the lawful processing, storage, and transfer of personal data. CITS incorporates data protection principles into infrastructure and security designs.

Discuss Data Protection

ISO/IEC 27001

Information Security Management

Globally recognized standard for establishing, operating, and improving information security. CITS considers these technical security controls during architecture and deployment.

ISO 22301

Business Continuity Management

Framework for operational resilience and disaster recovery. CITS supports continuity objectives through resilient infrastructure and immutable backup design.

IEC 62443

Industrial Communication Networks – IACS Security

Standard governing cybersecurity across Industrial Automation and Control Systems. CITS applies IEC 62443 concepts including zone-and-conduit segmentation and industrial monitoring.

Discuss OT Security

NCA ECC

Essential Cybersecurity Controls

National baseline controls for protecting systems and networks against cyber risks. CITS considers applicable NCA requirements across regional enterprise engagements.

NCA OTCC

Operational Technology Cybersecurity Controls

Specialized controls focused on protecting industrial, utility, and operational control assets. CITS maps OT visibility, segmentation, and monitoring to applicable OTCC requirements.

Discuss OTCC Alignment
A Note on Compliance

Alignment Does Not Mean Certification

CITS references applicable standards and frameworks as guidance benchmarks when engineering infrastructure and security solutions. References to these standards indicate their technical relevance to our engagements and do not state or imply that CITS itself holds third-party certification or regulatory accreditation under every listed standard. Final organisational compliance remains the responsibility of the client organisation, governed by its complete internal policies, processes, operational controls, and regulatory audits.

Understand Your Requirements

Not Sure Which Requirements Apply to Your Environment?

Share details about your operating environment, industry sector, and technology landscape. Our team can help you identify the appropriate security controls and infrastructure considerations.