OPERATE
Audit & compliance
Trace actions, export evidence and align controls to regulated frameworks.
Last updated July 17, 2026 · 6 min read#Audit events
Audit events capture actor, tenant, action, target, outcome, time, request context and relevant change metadata. Sensitive values and credentials are redacted before persistence.
#Evidence lifecycle
- 1Collect
Ingest signed attestations, configuration state and operational evidence.
- 2Preserve
Apply retention, integrity controls and legal holds.
- 3Map
Associate evidence with controls and regulatory requirements.
- 4Export
Create a bounded, auditable evidence package for reviewers.
#Framework alignment
- NCA Essential Cybersecurity Controls
- SAMA Cyber Security Framework where applicable
- Saudi PDPL data governance obligations
- ISO 27001 and SOC 2 control mappings for customer assurance
Not legal advice
Framework mappings support customer assurance but do not replace an organisation’s own legal or regulatory assessment.
Was this page helpful?