# Daman Al Bayanat — Website Information Architecture, Sitemap & Content **Source:** Company Profile (Daman-H.pdf, 23 pages) · **Prepared:** 17 Sep 2026 · **Status:** Draft v1 for client review --- ## Table of Contents 1. [Brand & Content Foundation](#1-brand--content-foundation) 2. [Information Architecture](#2-information-architecture) 3. [Sitemap](#3-sitemap) 4. [Global Elements](#4-global-elements) 5. [Page Content](#5-page-content) - 5.1 Home - 5.2 About - 5.3 Services (Hub + 14 Domain Pages) - 5.4 Delivery Platform - 5.5 Industries (Hub + 8 Sector Pages) - 5.6 Technology Partners - 5.7 Customers - 5.8 Global Presence - 5.9 Contact - 5.10 Secondary Pages (Careers, Insights, Legal) 6. [SEO Metadata](#6-seo-metadata) 7. [Content Gaps — To Confirm with Client](#7-content-gaps--to-confirm-with-client) --- ## 1. Brand & Content Foundation ### 1.1 Who Daman Al Bayanat Is | Attribute | Value | |---|---| | **Company** | Daman Al Bayanat | | **Category** | Cybersecurity Integrator & MSSP | | **HQ** | Riyadh, Kingdom of Saudi Arabia | | **Coverage** | KSA & MENA (offices in Riyadh, Dubai, Cairo, Casablanca; Philippines/India coming soon) | | **Tagline** | Pioneering Cyber Resilience for the Digital Age | | **Sub-line** | Securing tomorrow's innovation, today. | | **Two engines** | (1) Professional & Managed Services · (2) Products & Reselling | | **Proof points** | 14 integrated domains · 24×7 SOC / MDR · 30+ vendors · 25+ enterprise & government customers | | **Contact** | partnerships@damanbayanat.com | ### 1.2 Mission, Vision, Values - **Mission:** To redefine cybersecurity through innovation, intelligence and trusted partnerships — empowering organizations to thrive securely in the digital era. - **Vision 2029:** To become the Middle East's most trusted cybersecurity partner — the regional benchmark for managed security, offensive expertise and compliance advisory. - **Core Values:** Innovation · Integrity · Teamwork · Customer Centric ### 1.3 Positioning Pillars (use consistently across the site) 1. **Elite offensive talent** — red team, adversary emulation, MITRE ATT&CK-aligned. 2. **24×7 defensive core** — SOC-as-a-Service, MDR/XDR, tiered L1–L3 analysts. 3. **Disciplined governance** — NCA, SAMA, PCI, ISO, PDPL regulatory fluency. 4. **Best-of-breed technology stack** — curated, vendor-certified, engineered and operated. 5. **Outcome-based delivery** — projects become long-term managed partnerships. ### 1.4 Tone of Voice - **Confident, precise, engineering-led.** Short sentences. Concrete nouns (SIEM, MDR, PAM) over vague benefits. - **Regulator-aware.** Name the frameworks (NCA ECC/CSCC, SAMA CSF, PDPL) — buyers in KSA search for them. - **Board-level, not fear-based.** Speak to risk, resilience and proof — not scare tactics. - **Bilingual-ready.** Every headline should survive Arabic translation without idiom loss. ### 1.5 Primary Audiences | Persona | What they need from the site | Primary landing | |---|---|---| | **CISO / Head of Security** (Bank, Gov, Telecom) | Depth of capability, SOC maturity, vendor certifications | Services, Delivery Platform | | **CIO / CTO** | Integration breadth, vendor portfolio, managed-services model | Technology Partners, Services | | **GRC / Compliance Officer** | NCA, SAMA, PCI, ISO, PDPL alignment | GRC & Compliance, Industries | | **Board / C-suite** | Trust signals — customers, regions, vision | Home, Customers, About | | **Procurement / Vendor-management** | Company facts, offices, certifications, contact | About, Global Presence, Contact | | **Talent** | Culture, academy, open roles | Careers | --- ## 2. Information Architecture ### 2.1 IA Principles 1. **Two-level depth max.** Every page reachable in ≤ 2 clicks from the homepage. 2. **Services are the spine.** 14 domains are the core product; each gets its own indexable page. 3. **Industries are the entry door.** Regulated buyers self-identify by sector first, then by need. 4. **Vendors prove capability, not lead it.** Partners page supports Services; it does not compete with it. 5. **One conversion path.** Every page ends with a single, consistent CTA: *Request a Consultation* (secondary: *Talk to the SOC*). 6. **Mega-menu for Services & Industries.** Flat header for everything else. ### 2.2 Content Model (CMS entities) | Entity | Fields | Count | |---|---|---| | **Service Domain** | number, name, icon, group, one-liner, description, capabilities[], related vendors[], related industries[], CTA | 14 | | **Industry** | name, image, one-liner, drivers[], regulations[], relevant services[], customers[] | 8 | | **Vendor** | name, logo, categories[], tier (optional) | ~50 | | **Vendor Category** | name, group, vendors[] | 21 | | **Customer** | name, logo, sector, (optional) case study | ~25 | | **Office** | city, country, role, address, map pin, status | 5 | | **Insight / Post** | title, type (blog/advisory/whitepaper), date, body, tags | — | | **Job** | title, location, team, description | — | ### 2.3 Primary User Journeys **Journey A — Regulated buyer (e.g. Bank CISO)** Home → Industries: Banking & Financial → GRC & Compliance / Defensive SOC-MDR → Delivery Platform → Contact **Journey B — Technology evaluator (CIO)** Home → Technology Partners → (filter: SIEM) → Defensive SOC/MDR service → Contact **Journey C — Board / procurement** Home → About → Customers → Global Presence → Contact **Journey D — Incident (urgent)** Any page → Header "Report an Incident" → Digital Forensics & IR → Contact (IR hotline) --- ## 3. Sitemap ### 3.1 Sitemap Tree ``` / Home │ ├── /about About Daman Al Bayanat │ ├── #overview At a Glance │ ├── #mission Mission · Vision 2029 · Values │ ├── #how-we-win Why Daman │ └── #leadership Leadership (to be supplied) │ ├── /services Services Hub — 14 Integrated Domains │ │ │ │ ── Offensive & Defensive ── │ ├── /services/offensive-security 01 Offensive Security (Red Team) │ ├── /services/soc-mdr 02 Defensive · SOC / MDR (Blue Team) │ │ │ │ ── Governance, Identity & Cloud ── │ ├── /services/grc-compliance 03 GRC & Compliance │ ├── /services/identity-security 04 Identity Security │ ├── /services/cloud-security 05 Cloud Security │ ├── /services/application-security 06 Application Security │ │ │ │ ── Infrastructure, Data, OT & Resilience ── │ ├── /services/network-security 07 Network Security │ ├── /services/data-security 08 Data Security │ ├── /services/email-security 09 Email Security │ ├── /services/ot-ics-security 10 OT / ICS Security │ ├── /services/security-awareness 11 Security Awareness │ ├── /services/digital-forensics-ir 12 Digital Forensics & IR │ │ │ │ ── AI & Emerging Risk ── │ ├── /services/ai-security 13 AI Security │ └── /services/exposure-emerging-risk 14 Exposure, Resilience & Emerging Risk │ ├── /delivery-platform Delivery Platform (SOC stack, toolkit, academy) │ ├── #soc-platform Core SOC Platform │ ├── #detection-intelligence Detection & Intelligence │ ├── #managed-services Managed Services Stack │ ├── #incident-response Incident Response Kit │ ├── #pentest-toolkit Penetration-Testing Toolkit │ ├── #cloud-stack Cloud Security Stack │ └── #academy Enablement & Academy │ ├── /industries Industries Hub │ ├── /industries/banking-financial │ ├── /industries/government-defense │ ├── /industries/healthcare │ ├── /industries/telecom-technology │ ├── /industries/oil-gas-utilities │ ├── /industries/education │ ├── /industries/retail-ecommerce │ └── /industries/aviation-logistics │ ├── /technology-partners Technology & Vendor Partnerships │ ├── #core-defense Core Defense Stack │ ├── #identity-email-cloud Identity, Email & Cloud │ ├── #application-edge Application, Network-Edge & Exposure │ ├── #data-resilience Data, Resilience & Intelligence │ └── #engineering-ai Engineering, Industrial, Investigative & AI │ ├── /customers Trusted by Leaders │ ├── /global-presence Offices & Coverage │ ├── /insights Insights (blog, advisories, whitepapers) — Phase 2 │ └── /insights/[slug] │ ├── /careers Careers — Phase 2 │ └── /careers/[slug] │ ├── /contact Contact / Request a Consultation │ └── /contact/report-incident Incident Response Hotline │ ├── /privacy-policy ├── /terms └── /ar/* Arabic mirror of all routes (RTL) ``` ### 3.2 Navigation Structure **Primary Header Nav** | Label | Type | Target | |---|---|---| | Services | Mega-menu (4 groups × 14 domains + "Delivery Platform" feature card) | /services | | Industries | Dropdown (8 sectors) | /industries | | Technology | Link | /technology-partners | | Customers | Link | /customers | | About | Dropdown (About · Global Presence · Careers · Insights) | /about | | **Report an Incident** | Utility link (red/amber accent) | /contact/report-incident | | **Request a Consultation** | Primary button | /contact | | EN / AR | Language switch | — | **Footer Nav** - **Column 1 — Services:** 14 domains (grouped) - **Column 2 — Company:** About · Delivery Platform · Technology Partners · Customers · Global Presence · Careers · Insights - **Column 3 — Industries:** 8 sectors - **Column 4 — Contact:** Riyadh HQ address · partnerships@damanbayanat.com · IR hotline · LinkedIn / X - **Bottom bar:** © Daman Al Bayanat · Privacy · Terms · "24×7 SOC · KSA & MENA" ### 3.3 Page Count | Type | Pages | |---|---| | Core pages | 9 (Home, About, Services hub, Delivery Platform, Industries hub, Technology Partners, Customers, Global Presence, Contact) | | Service domain pages | 14 | | Industry pages | 8 | | Utility | 4 (Report Incident, Privacy, Terms, 404) | | Phase 2 | Insights, Careers (+ dynamic children) | | **Total (Phase 1, EN)** | **35** | | **With Arabic mirror** | **70** | --- ## 4. Global Elements ### 4.1 Header - Logo (Daman Colored.svg) — links Home - Nav per §3.2 - Sticky on scroll, transparent-to-solid on dark hero pages ### 4.2 Global CTA Band (appears before footer on every page) > **Let's build your cyber resilience together.** > Securing tomorrow's innovation, today. Talk to our team about a 24×7 managed partnership or a scoped engagement. > [Request a Consultation] [Talk to the SOC] ### 4.3 Footer - Tagline: *Pioneering Cyber Resilience for the Digital Age* - Nav columns per §3.2 - Micro-copy: "Cybersecurity Integrator & MSSP · Kingdom of Saudi Arabia" - Language switch (EN/AR) ### 4.4 Reusable Components - **Stat strip:** 14 Domains · 24×7 SOC/MDR · 30+ Vendors · 5 Regions - **Domain card:** icon + number + name + one-liner + link - **Industry card:** image + name + regulatory tags - **Vendor logo grid:** category label + logo tiles (grayscale → color on hover) - **Customer logo wall** - **Quote block:** e.g. "Every finding the red team produces becomes a detection the blue team runs." - **Section eyebrow:** monospace uppercase label (e.g. `— DOMAIN 01 · 02`) — carries the profile's visual language --- ## 5. Page Content > Format key: **H1** = page title · **Eyebrow** = small label above heading · **CTA** = button label · [ ] = link/button --- ### 5.1 Home — `/` · v2 (lean) **Meta title:** Daman Al Bayanat | Cybersecurity Integrator & MSSP · Saudi Arabia > **Principle for v2:** the home page *introduces*; it does not *explain*. Every section is a headline, one sentence, and a link. Lists are names only. All detail lives on the inner page it links to — see the "Where it moved" table at the end of this section. #### 1 · Hero - **Eyebrow:** CYBERSECURITY INTEGRATOR & MSSP · RIYADH - **H1:** Pioneering **Cyber Resilience** for the Digital Age - **Sub:** Offensive talent, a 24×7 SOC and regulatory fluency — one partner, built for the Kingdom's most regulated organizations. - **CTAs:** [Request a consultation] [Explore services] - **Visual:** coverage dial (Fig. 01) — 14 ticks, one SOC at the centre #### 2 · Proof strip | 14 | 24×7 | 30+ | 5 | |---|---|---|---| | Security domains | SOC / MDR | Vendor partnerships | Regional offices | #### 3 · Who we are - **Eyebrow:** WHO WE ARE - **H2:** Two engines. One bench. - **Body:** We run security for regulated organizations — and we build the stack we run. Professional & Managed Services and Products & Reselling, delivered by the same certified engineers, so nothing is handed over and nothing is lost in between. - **Three pillars (one line each):** - **Elite offensive talent** — Red-team findings become live detections — in the same engagement. - **A 24×7 defensive core** — Tiered L1–L3 analysts, detection-as-code, guaranteed response SLAs. - **Regulatory fluency** — NCA, SAMA, PCI DSS, ISO and PDPL — provable, not promised. - **Link:** About Daman → #### 4 · What we do - **Eyebrow:** WHAT WE DO - **Big numeral:** 14 - **H2:** Fourteen domains. One operating standard. - **Sub:** Offensive, defensive, governance and the AI frontier — one portfolio, one bench, one SOC at the centre. - **List (names only, grouped, with icons):** - *Offensive & defensive* — 01 Offensive Security · 02 Defensive · SOC / MDR - *Governance, identity & cloud* — 03 GRC & Compliance · 04 Identity Security · 05 Cloud Security · 06 Application Security - *Infrastructure, data, OT & resilience* — 07 Network Security · 08 Data Security · 09 Email Security · 10 OT / ICS Security · 11 Security Awareness · 12 Digital Forensics & IR - *AI & emerging risk* — 13 AI Security · 14 Exposure & Emerging Risk - **Link:** All services → #### 5 · Attack · Defend (dark) - **Eyebrow:** ATTACK · DEFEND - **H2:** Every finding the red team produces *becomes a detection the blue team runs.* - **Red team:** Penetration testing and adversary emulation, mapped to MITRE ATT&CK — so you know exactly how you'd be breached. - **Blue team:** A 24×7 SOC that turns those findings into detections, hunts and response — with an SLA behind every one. - **Link:** How red and blue work together → #### 6 · Delivery platform - **Eyebrow:** DELIVERY PLATFORM - **H2:** Built on a stack you already trust. - **Body:** Cortex XSIAM or Microsoft Sentinel. CrowdStrike and Cortex XDR. Recorded Future intelligence, Sigma detections, and a multi-tenant portal with live SLA dashboards. That is what runs behind every managed engagement — every hour of the day. - **Mono line:** SOC platform / Detection & intelligence / Managed services / IR kit - **Visual (Fig. 02 — From project to partnership):** Assess → Engineer → Operate → Evolve, one short phrase each - **Link:** Inside the platform → #### 7 · Who we serve - **Eyebrow:** WHO WE SERVE - **H2:** Where security is a board-level mandate. - **Sub:** Regulation-heavy sectors, each with its own regulator, its own frameworks and its own definition of downtime. - **Tiles (name + regulator tag only):** Banking & Financial (SAMA CSF · PCI DSS) · Government & Defense (NCA ECC · CSCC) · Healthcare (PDPL · IoMT) · Telecom & Technology (CST · NCA) · Oil, Gas & Utilities (NCA OTCC · IEC 62443) · Education (Identity at scale) · Retail & E-Commerce (PCI DSS · Fraud) · Aviation & Logistics (GACA · Supply chain) - **Link:** All industries → #### 8 · Technology - **Eyebrow:** TECHNOLOGY - **H2:** Best-of-breed, run by the people who chose it. - **Sub:** Thirty-plus vendor partnerships, engineered and operated by certified specialists — the same bench that runs the SOC. - **Logos (16 + "+16 more"):** Palo Alto Networks · CrowdStrike · Microsoft · Cisco · Fortinet · Darktrace · Okta · SailPoint · Zscaler · Cloudflare · Tenable · Rubrik · Claroty · Recorded Future · Proofpoint · HiddenLayer - **Link:** All partners → #### 9 · Our customers - **Eyebrow:** OUR CUSTOMERS - **H2:** Trusted by leaders. - **Sub:** Ministries, banks, insurers and telecoms across the Kingdom — long-term partnerships, not one-off projects. - **Logo wall:** 16 logos (see §5.7) #### 10 · Global presence - **Eyebrow:** GLOBAL PRESENCE - **H2:** Headquartered in Riyadh. Present across MENA. - **Row:** Riyadh (Head office) · Dubai (GCC) · Cairo (Center of Excellence) · Casablanca (Africa) · Philippines / India (Coming soon) #### 11 · CTA (dark) - **Eyebrow:** ENGAGE - **H2:** Let's build your cyber resilience together. - **Sub:** Tell us about your environment. A senior consultant — not a sales desk — responds within one business day. - **CTAs:** [Request a consultation] [Talk to the SOC] · partnerships@damanbayanat.com #### Where it moved — content removed from Home v1 and its new owner | Removed from Home | Now lives on | Section | |---|---|---| | Mission statement, Vision 2029, four core values | **About** | §5.2 Mission · Vision · Values | | Who we are / What we do / How we win paragraphs | **About** | §5.2 At a Glance + Why Daman | | One-line description under each of the 14 domains | **Services hub** | §5.3.0 domain grid | | Red/blue capability bullet lists (pentest types, MDR scope, hunting, retainers) | **Offensive Security** and **SOC / MDR** pages | §5.3.1, §5.3.2 | | Delivery-platform tool lists (XSIAM, XSOAR, Tines, Velociraptor, AXIOM…) | **Delivery Platform** | §5.4 blocks 01–07 | | Engagement lifecycle detail (Assess / Engineer / Operate / Evolve) | **Delivery Platform** | §5.4 "How an engagement runs" | | Industry descriptions and driver sentences | **Industries hub + 8 sector pages** | §5.5 | | Vendor categories with full rosters (21 categories, 49 vendors) | **Technology Partners** | §5.6 | | Office roles and coordinates | **Global Presence** | §5.8 | | Hero chips (24×7 SOC / MDR · Offensive & Defensive · GRC) | dropped — now carried by the three pillars in section 3 | — | --- ### 5.2 About — `/about` **Meta title:** About Daman Al Bayanat | Premium Cybersecurity Integrator & MSSP #### Hero (dark) - **Eyebrow:** WHO WE ARE - **H1:** A premium cybersecurity integrator and MSSP built on engineering depth, regulatory fluency and outcome-based delivery. #### At a Glance - **Eyebrow:** OVERVIEW - **H2:** Daman Al Bayanat at a glance - **Body:** Where elite offensive talent, a 24×7 defensive core and disciplined governance meet a best-of-breed technology stack. - **Stats:** 14 Domains · 24×7 SOC / MDR · 30+ Vendors - **Three pillars:** Who we are / What we do / How we win (copy per §5.1) #### Mission · Vision · Values - **Eyebrow:** MISSION · VISION · VALUES - **H2:** What drives us - **Our Mission:** To redefine cybersecurity through innovation, intelligence and trusted partnerships — empowering organizations to **thrive securely** in the digital era. - **Vision 2029:** To become the Middle East's most trusted cybersecurity partner — the regional benchmark for managed security, offensive expertise and compliance advisory. - **Core Values:** - **Innovation** — We build with the newest proven tooling, from detection-as-code to AI-driven SOC. - **Integrity** — Litigation-grade rigor in everything we report. - **Teamwork** — Red and blue teams operate as one loop, not two silos. - **Customer Centric** — Outcomes, SLAs and long-term partnerships over one-off projects. #### Two Engines - **H2:** Two engines, one partner - **Professional & Managed Services** — Offensive security, 24×7 SOC/MDR, GRC & compliance, incident response, training and academy. - **Products & Reselling** — NGFW, EDR/XDR, SIEM, IAM/PAM, cloud, email and OT security from a curated vendor ecosystem — engineered, integrated and operated by certified specialists. #### Why Daman (How we win) - **H2:** Why organizations choose Daman Al Bayanat 1. **Vendor-certified engineering depth** — 30+ partnerships, hands-on certification across the stack. 2. **Regulatory fluency** — NCA ECC/CSCC, SAMA CSF, PCI DSS, ISO 27001/22301, PDPL, NIST CSF. 3. **Outcome-based delivery** — SLA dashboards, executive reporting, measurable risk reduction. 4. **24×7 SOC** — turns projects into long-term managed partnerships. 5. **Regional footprint** — KSA head office, GCC, Egypt Center of Excellence, Africa region. #### Leadership - **H2:** Leadership *(placeholder — names, titles, photos to be supplied by client)* #### Global CTA Band --- ### 5.3 Services #### 5.3.0 Services Hub — `/services` **Meta title:** Cybersecurity Services | 14 Integrated Domains | Daman Al Bayanat - **Eyebrow:** SECTION 02 · SERVICES & DELIVERY STACK - **H1:** Services & Delivery Stack - **Sub:** One integrated portfolio spanning fourteen security domains — delivered by a certified engineering bench and a 24×7 SOC. **Intro block** - **Eyebrow:** THE PORTFOLIO - **H2:** 14 integrated domains - **Body:** One portfolio spanning the full attack surface — offensive, defensive, governance and the emerging AI frontier. - **Groups:** Offensive & Defensive · Governance, Identity & Cloud · Data, OT, AI & Exposure **Domain grid (14 cards, grouped)** | # | Domain | One-liner | Link | |---|---|---|---| | 01 | Offensive Security | Red team, adversary emulation and penetration testing aligned to MITRE ATT&CK. | /services/offensive-security | | 02 | Defensive · SOC / MDR | 24×7 SOC-as-a-Service with tiered analysts, MDR/XDR and IR retainers. | /services/soc-mdr | | 03 | GRC & Compliance | Provable compliance against NCA, SAMA, PCI and ISO. | /services/grc-compliance | | 04 | Identity Security | Least privilege, enforced from joiner to leaver. | /services/identity-security | | 05 | Cloud Security | Secure landing zones across all three clouds. | /services/cloud-security | | 06 | Application Security | Security engineered into the delivery pipeline. | /services/application-security | | 07 | Network Security | NGFW, Zero Trust, SASE and DDoS — from edge to core. | /services/network-security | | 08 | Data Security | Discovery, DLP, encryption and privacy engineering. | /services/data-security | | 09 | Email Security | Anti-phishing, BEC and executive-impersonation defense. | /services/email-security | | 10 | OT / ICS Security | IEC 62443 & NCA OTCC — from the network edge to the plant floor. | /services/ot-ics-security | | 11 | Security Awareness | Role-based academies, phishing simulation and board briefings. | /services/security-awareness | | 12 | Digital Forensics & IR | Forensic acquisition, malware analysis and litigation-grade reporting. | /services/digital-forensics-ir | | 13 | AI Security | Govern it, test it, then let it defend you. | /services/ai-security | | 14 | Exposure & Emerging Risk | Continuous visibility of everything an adversary can reach — and a rehearsed answer for when they do. | /services/exposure-emerging-risk | **Delivery Platform cross-link** - **H2:** Delivered by a certified bench and a 24×7 SOC - **Body:** Tiered L1–L3 analysts, a multi-tenant MSSP portal and detection-as-code behind every managed engagement. - **CTA:** [Inside the Delivery Platform] --- #### 5.3.1 Offensive Security — `/services/offensive-security` **Meta title:** Offensive Security & Penetration Testing | Red Team | Daman Al Bayanat - **Eyebrow:** DOMAIN 01 · RED TEAM - **H1:** Offensive Security - **Sub:** Think like the adversary. Test like one. Every finding the red team produces becomes a detection the blue team runs. **What we do** - External & internal penetration testing (network, wireless, physical) - Web, mobile & API testing (OWASP / PTES / OSSTMM) - Red team & adversary emulation aligned to MITRE ATT&CK - Assumed-breach, social engineering & phishing - Active Directory & cloud attack-path assessments - Purple teaming & detection-validation - Compromise assessment **How we deliver (toolkit)** - Kali / Parrot · Burp Suite Pro · Nessus / Nuclei - Cobalt Strike / Sliver C2 for red teaming - BloodHound · Impacket for AD attack paths **Outcomes** - Prioritized, exploit-validated findings — not scanner noise - Attack paths mapped to MITRE ATT&CK techniques - Detections handed to the SOC and validated via purple teaming - Executive and technical reporting for regulators and boards **Related:** Defensive SOC/MDR · Application Security · Exposure & Emerging Risk **CTA:** [Scope a Penetration Test] --- #### 5.3.2 Defensive · SOC / MDR — `/services/soc-mdr` **Meta title:** 24×7 SOC-as-a-Service & MDR | Managed Detection & Response | Daman Al Bayanat - **Eyebrow:** DOMAIN 02 · BLUE TEAM - **H1:** Defensive · SOC / MDR - **Sub:** A 24×7 SOC with tiered L1–L3 analysts, detection-as-code and guaranteed IR SLAs — the core that turns projects into long-term managed partnerships. **What we do** - 24×7 SOC-as-a-Service with tiered analysts (L1–L3) - MDR / XDR across endpoint, network, identity & cloud - Threat-hunting programs & hypothesis-driven hunts - Incident-response retainers with guaranteed SLAs - Use-case engineering, SIEM content & detection-as-code - Threat-intel enrichment & dark-web monitoring **Platform** - SIEM / analytics: Cortex XSIAM or Microsoft Sentinel - Automation: Cortex XSOAR / Tines playbooks - EDR/XDR telemetry: CrowdStrike & Cortex XDR - Case management & multi-tenant MSSP portal - Threat intel: Recorded Future + Mandiant feeds - Purple-team validated use-case library **Service tiers** *(placeholder — confirm packaging: Monitor / Detect & Respond / Full MDR + IR retainer)* **Outcomes** - Measured MTTD / MTTR against SLA - SLA dashboards & executive reporting - Multi-tenant portal with full case visibility **Related:** Offensive Security · Digital Forensics & IR · Delivery Platform **CTA:** [Talk to the SOC] --- #### 5.3.3 GRC & Compliance — `/services/grc-compliance` **Meta title:** GRC & Compliance Services | NCA ECC, SAMA CSF, PCI DSS, ISO 27001 | Daman Al Bayanat - **Eyebrow:** DOMAIN 03 · GOVERNANCE - **H1:** GRC & Compliance - **Sub:** Provable compliance against NCA, SAMA, PCI and ISO — and the governance to keep it that way. **What we do** - ISO 27001 / 22301 & audit readiness - NCA ECC / CSCC & SAMA CSF programs - PCI DSS QSA-support · SOC 2 readiness - NIST CSF maturity & risk assessments - PDPL data-privacy · vCISO services **Frameworks we work in** NCA ECC · NCA CSCC · NCA OTCC · SAMA CSF · PCI DSS · ISO/IEC 27001 · ISO 22301 · SOC 2 · NIST CSF · PDPL · NIST AI RMF · ISO/IEC 42001 **Outcomes** - Gap assessment → remediation roadmap → audit-ready evidence - Board-level risk reporting - Fractional CISO leadership on demand **Related:** Identity Security · Data Security · AI Security **CTA:** [Start a Compliance Assessment] --- #### 5.3.4 Identity Security — `/services/identity-security` **Meta title:** Identity Security | IAM, IGA, PAM & Zero Trust Identity | Daman Al Bayanat - **Eyebrow:** DOMAIN 04 · IDENTITY - **H1:** Identity Security - **Sub:** Least privilege, enforced from joiner to leaver. **What we do** - IAM strategy & roadmap - IGA — joiner-mover-leaver, certification - PAM design & vaulting rollout - SSO / MFA & passwordless - AD / Entra hardening · ITDR **Technology partners** - IAM & Identity Governance: Ping Identity · Microsoft · Okta · SailPoint - Privileged Access: BeyondTrust · Delinea · Palo Alto Networks **Outcomes** - Automated lifecycle — no orphaned accounts - Privileged sessions vaulted, recorded and audited - Identity threat detection integrated with the SOC **Related:** GRC & Compliance · Cloud Security · SOC/MDR **CTA:** [Assess Your Identity Posture] --- #### 5.3.5 Cloud Security — `/services/cloud-security` **Meta title:** Cloud Security | AWS, Azure, GCP, CNAPP & Kubernetes | Daman Al Bayanat - **Eyebrow:** DOMAIN 05 · CLOUD - **H1:** Cloud Security - **Sub:** Secure landing zones across all three clouds. **What we do** - AWS / Azure / GCP architecture & landing zones - CSPM / CWPP (CNAPP) deployment - Cloud pentesting & config review - Kubernetes / container security - Cloud IR readiness · M365 hardening **Stack** - CNAPP: Wiz or Cortex Cloud (CSPM + CWPP) - IaC & container scanning in CI/CD - CSP-native guardrails (Azure / AWS / GCP) - Cloud IR & Kubernetes runtime protection - Partners: Oracle · Google Cloud · CrowdStrike · Microsoft · Palo Alto Networks **Outcomes** - Misconfigurations found and fixed before they're exploited - Guardrails enforced in the pipeline, not after deployment - Cloud telemetry feeding the 24×7 SOC **Related:** Application Security · Identity Security · SOC/MDR **CTA:** [Review Your Cloud Posture] --- #### 5.3.6 Application Security — `/services/application-security` **Meta title:** Application Security & DevSecOps | SAST, DAST, API Security | Daman Al Bayanat - **Eyebrow:** DOMAIN 06 · APPSEC - **H1:** Application Security - **Sub:** Security engineered into the delivery pipeline. **What we do** - DevSecOps pipeline enablement - SAST / DAST / SCA tooling & triage - API security programs - Secure-code review & training - Threat modeling · SBOM supply-chain **Technology partners:** Checkmarx · Veracode · Snyk · F5 · Thales · Cloudflare **Outcomes** - Shift-left: findings surfaced in the developer's workflow - API inventory and runtime protection - Software supply-chain assurance with SBOM **Related:** Offensive Security · Cloud Security · Security Awareness (developer training) **CTA:** [Secure Your Pipeline] --- #### 5.3.7 Network Security — `/services/network-security` **Meta title:** Network Security | NGFW, Zero Trust, SASE, NAC & DDoS | Daman Al Bayanat - **Eyebrow:** DOMAIN 07 · INFRASTRUCTURE - **H1:** Network Security - **Sub:** From the network edge to the plant floor — one operating standard. **What we do** - NGFW design, migration & policy optimization - WAF & DDoS protection - NAC & 802.1X - Micro-segmentation & Zero Trust - SASE / SD-WAN security **Technology partners** - Enterprise Firewall: Cisco · Palo Alto Networks · Forcepoint · HPE Juniper · Fortinet - ZTNA / SASE: Palo Alto Networks · Fortinet · Zscaler - NAC: Cisco · HPE Juniper · Fortinet - WAF & App Protection: F5 · Thales · Cloudflare **Outcomes** - Clean, optimized policy sets after migration - Zero Trust segmentation that limits blast radius - Edge telemetry integrated with the SOC **Related:** OT/ICS Security · Cloud Security · Exposure & Emerging Risk **CTA:** [Plan a Network Security Review] --- #### 5.3.8 Data Security — `/services/data-security` **Meta title:** Data Security | DLP, Encryption, KMS/HSM & Privacy Engineering | Daman Al Bayanat - **Eyebrow:** DOMAIN 08 · DATA - **H1:** Data Security - **Sub:** Know where your data is, who touches it, and prove it's protected. **What we do** - Data discovery & classification - DLP program design & operation - Encryption & key management (KMS/HSM) - Database activity monitoring - Data-privacy engineering **Technology partners** - DLP & Data Protection: Forcepoint · Rubrik · Symantec · Fortinet - Backup & Ransomware: Commvault · Rubrik · Veeam - Database Security: Thales · IBM · Oracle **Outcomes** - PDPL-aligned data inventory and controls - DLP tuned to business context — not noise - Ransomware-resilient, immutable backup **Related:** GRC & Compliance · Identity Security · Email Security **CTA:** [Assess Your Data Protection] --- #### 5.3.9 Email Security — `/services/email-security` **Meta title:** Email Security | Anti-Phishing, BEC & DMARC | Daman Al Bayanat - **Eyebrow:** DOMAIN 09 · EMAIL - **H1:** Email Security - **Sub:** Stop phishing, BEC and executive impersonation before they reach the inbox. **What we do** - Secure gateway & API-based protection - Anti-phishing / BEC defense - DMARC, DKIM & SPF enforcement - Executive impersonation protection **Technology partners:** Barracuda · Darktrace · Proofpoint **Outcomes** - DMARC at p=reject with monitored reporting - Measurable drop in phishing click-through (paired with awareness program) - Email telemetry feeding SOC detections **Related:** Security Awareness · SOC/MDR · Data Security **CTA:** [Harden Your Email] --- #### 5.3.10 OT / ICS Security — `/services/ot-ics-security` **Meta title:** OT / ICS Security | IEC 62443 & NCA OTCC | Daman Al Bayanat - **Eyebrow:** DOMAIN 10 · OT / ICS - **H1:** OT / ICS Security - **Sub:** Safety-critical uptime, secured. IEC 62443 and NCA OTCC from assessment to monitoring. **What we do** - IEC 62443 & NCA OTCC assessments - Asset discovery & network mapping - IT/OT segmentation - OT monitoring · ICS IR planning **Technology partners:** Claroty · Dragos · Nozomi Networks · Fortinet · Tenable **Outcomes** - Complete OT asset inventory — passive, non-disruptive - IT/OT boundary enforced and monitored - ICS-specific IR playbooks rehearsed with operations teams **Related:** Network Security · Exposure & Emerging Risk · Digital Forensics & IR **Industries:** Oil, Gas & Utilities · Aviation & Logistics · Government & Defense **CTA:** [Assess Your OT Environment] --- #### 5.3.11 Security Awareness — `/services/security-awareness` **Meta title:** Security Awareness Training & Phishing Simulation | Daman Al Bayanat - **Eyebrow:** DOMAIN 11 · PEOPLE - **H1:** Security Awareness - **Sub:** Turn your workforce from the weakest link into the first line of detection. **What we do** - Role-based awareness academies - Continuous phishing simulation - Executive & board cyber briefings - Developer secure-coding training **Enablement & Academy** - Awareness & phishing-simulation platform - Cyber range for analyst & client training - Vendor certification bootcamps - Executive & board tabletop exercises **Outcomes** - Tracked phishing-resilience metrics by department - Board-level cyber literacy - Developer secure-coding uplift **Related:** Email Security · Exposure & Emerging Risk (crisis simulations) · AI Security (AI usage policy) **CTA:** [Launch an Awareness Program] --- #### 5.3.12 Digital Forensics & IR — `/services/digital-forensics-ir` **Meta title:** Digital Forensics & Incident Response (DFIR) | Daman Al Bayanat - **Eyebrow:** DOMAIN 12 · DFIR - **H1:** Digital Forensics & Incident Response - **Sub:** When it happens — contain it, understand it, and prove it to a court. - **Urgent CTA (top):** [Report an Incident — 24×7] **What we do** - Forensic acquisition (disk, memory, mobile, cloud) - Compromise assessments · eDiscovery - Malware analysis - Litigation-grade reporting & testimony **Incident Response Kit** - Forensics: Magnet AXIOM · Binalyze AIR - Velociraptor for scalable endpoint DFIR - Malware sandbox & reverse-engineering bench - Retainer playbooks & breach-comms templates **Technology partners:** Magnet Forensics · Cellebrite · Binalyze · OpenText Cybersecurity **Outcomes** - Guaranteed-SLA IR retainers - Chain-of-custody preserved for legal and regulatory proceedings - Root cause → hardening recommendations → SOC detections **Related:** SOC/MDR · Exposure & Emerging Risk (Cyber Crisis Management) · Offensive Security (Compromise Assessment) **CTA:** [Set Up an IR Retainer] --- #### 5.3.13 AI Security — `/services/ai-security` **Meta title:** AI Security | AI Governance, LLM Pen-Testing & AI-Powered SOC | Daman Al Bayanat - **Eyebrow:** DOMAIN 13 · AI - **H1:** AI Security - **Sub:** Governing, testing and operationalizing AI — securely. Govern it, test it, then let it defend you. **Four pillars** **01 AI Governance & Compliance** - NIST AI RMF & ISO/IEC 42001 programs - SDAIA AI-ethics & EU AI Act readiness - Enterprise AI-risk assessments & model inventories - Board-level AI-risk reporting **02 GenAI & LLM Pen-Testing** - OWASP Top 10 for LLM — prompt injection, jailbreaks, leakage - RAG-pipeline & agentic-AI abuse testing - AI red teaming & model supply-chain review **03 Shadow-AI Discovery & Guardrails** - Discovery of unsanctioned AI usage - DLP guardrails for prompts & outputs - Secure enablement of Claude / ChatGPT Enterprise - AI usage policy & workforce training **04 AI-Powered Security Ops** - AI-driven SOC delivery (Cortex XSIAM) - Detection-engineering copilots - AI-SPM tooling (Prisma AIRS, HiddenLayer) **Technology partners:** HiddenLayer · Lakera · Palo Alto Networks (Prisma AIRS, Cortex XSIAM) **Related:** GRC & Compliance · Offensive Security · SOC/MDR · Data Security **CTA:** [Start an AI Risk Assessment] --- #### 5.3.14 Exposure, Resilience & Emerging Risk — `/services/exposure-emerging-risk` **Meta title:** Exposure Management, CTEM, Third-Party Risk & Cyber Crisis | Daman Al Bayanat - **Eyebrow:** DOMAIN 14 · EXPOSURE - **H1:** Exposure, Resilience & Emerging Risk - **Sub:** Continuous visibility of everything an adversary can reach — and a rehearsed answer for when they do. **Six disciplines** **01 Attack Surface / CTEM** - External attack-surface discovery - Continuous threat-exposure management - Breach-and-attack simulation - Exposure-based board reporting **02 Third-Party & Supply-Chain** - TPRM-as-a-service · continuous vendor ratings - Supplier security assessments - SBOM & software supply-chain assurance **03 DDoS Protection & Resilience** - DDoS readiness assessments - Always-on scrubbing (Cloudflare / Akamai / Radware) - Runbook design & live failover drills **04 Brand Protection & Digital Risk** - Dark-web & credential-leak monitoring - Phishing-domain & social-media takedowns - VIP / executive digital protection - Fraud-campaign disruption **05 IoT & Medical Device Security** - IoT / IoMT asset discovery & risk profiling - Clinical-network segmentation - Device & firmware assessments - Regulator-aligned healthcare controls **06 Cyber Crisis Management** - Crisis-communication planning & playbooks - Executive & board crisis simulations - Cyber-insurance readiness & claims support **Technology partners:** Rapid7 · Tenable · Cloudflare · Recorded Future · Group-IB · Kaspersky **Related:** Offensive Security · SOC/MDR · Digital Forensics & IR · OT/ICS Security **CTA:** [Map Your Exposure] --- ### 5.4 Delivery Platform — `/delivery-platform` **Meta title:** Delivery Platform | 24×7 SOC Stack, Toolkit & Academy | Daman Al Bayanat #### Hero (dark, SOC imagery) - **Eyebrow:** DELIVERY PLATFORM - **H1:** Core SOC & managed-services stack - **Sub:** The operational backbone that turns projects into 24×7 managed partnerships. - **Stat:** 24×7 SOC · MDR — Tiered L1–L3 analysts, a multi-tenant MSSP portal and detection-as-code behind every managed engagement. #### 01 Core SOC Platform - SIEM / analytics: Cortex XSIAM or Microsoft Sentinel - Automation: Cortex XSOAR / Tines playbooks - EDR/XDR telemetry: CrowdStrike & Cortex XDR - Case management & multi-tenant MSSP portal #### 02 Detection & Intelligence - Threat intel: Recorded Future + Mandiant feeds - Threat hunting & detection-as-code (Sigma) - Dark-web & brand monitoring - Purple-team validated use-case library #### 03 Managed Services Stack - RMM & asset inventory across tenants - Ticketing / ITSM (ServiceNow / Jira) - SLA dashboards & executive reporting - Vulnerability management (Tenable) as a service #### 04 Incident Response Kit - Forensics: Magnet AXIOM · Binalyze AIR - Velociraptor for scalable endpoint DFIR - Malware sandbox & reverse-engineering bench - Retainer playbooks & breach-comms templates #### Offensive toolkit, cloud stack & academy - **Sub:** The tooling, platforms and training environments behind every engagement. **05 Penetration-Testing Toolkit** *(Red-team bench)* - Kali / Parrot · Burp Suite Pro · Nessus / Nuclei - Cobalt Strike / Sliver C2 for red teaming - BloodHound · Impacket for AD attack paths **06 Cloud Security Stack** *(Cloud & container)* - CNAPP: Wiz or Cortex Cloud (CSPM + CWPP) - IaC & container scanning in CI/CD - CSP-native guardrails (Azure / AWS / GCP) - Cloud IR & Kubernetes runtime protection **07 Enablement & Academy** *(People & readiness)* - Awareness & phishing-simulation platform - Cyber range for analyst & client training - Vendor certification bootcamps - Executive & board tabletop exercises #### How an engagement runs *(new — suggested)* 1. **Assess** — scoped discovery, gap analysis, exposure mapping 2. **Engineer** — architecture, deployment, use-case engineering 3. **Operate** — 24×7 SOC, SLA dashboards, executive reporting 4. **Evolve** — purple-team validation, quarterly reviews, roadmap **CTA:** [Talk to the SOC] --- ### 5.5 Industries #### 5.5.0 Industries Hub — `/industries` **Meta title:** Industries We Secure | Banking, Government, Healthcare, Telecom, OT | Daman Al Bayanat - **Eyebrow:** WHO WE SERVE - **H1:** Target industries - **Sub:** Regulation-heavy, high-stakes sectors where security is a board-level mandate. | Industry | Focus | Link | |---|---|---| | Banking & Financial | SAMA CSF, PCI DSS, fraud & 24×7 SOC | /industries/banking-financial | | Government & Defense | NCA ECC/CSCC, sovereignty, classified handling | /industries/government-defense | | Healthcare | Patient-data protection, PDPL, medical IoT | /industries/healthcare | | Telecom & Technology | CRA / NCA regulatory alignment | /industries/telecom-technology | | Oil, Gas & Utilities | OT/ICS security, safety-critical uptime | /industries/oil-gas-utilities | | Education | Research data, identity at scale, budget fit | /industries/education | | Retail & E-Commerce | PCI DSS, bot & fraud defense, seasonal scale | /industries/retail-ecommerce | | Aviation & Logistics | Critical infrastructure, supply-chain risk | /industries/aviation-logistics | --- #### Industry Page Template (applies to all 8) Each industry page follows the same structure: 1. **Hero** — Eyebrow: INDUSTRY · H1 · one-line challenge statement 2. **Why it matters** — 3 sector-specific risk drivers 3. **Regulatory landscape** — frameworks that apply 4. **How Daman helps** — 4–6 most relevant service domains (cards) 5. **Relevant technology** — vendor logos filtered to the sector 6. **Trusted by** — customer logos from that sector (where available) 7. **CTA** — [Request a Sector Briefing] --- #### 5.5.1 Banking & Financial — `/industries/banking-financial` - **H1:** Banking & Financial Services - **Sub:** SAMA CSF, PCI DSS, fraud defense and a 24×7 SOC — security at the pace of digital banking. - **Drivers:** Real-time payments & open banking expand the attack surface · Fraud and account takeover at scale · Regulators expect continuous, evidenced compliance. - **Regulations:** SAMA CSF · PCI DSS · NCA ECC · PDPL · SWIFT CSP - **Services:** SOC/MDR · GRC & Compliance · Identity Security · Application Security · Exposure & Emerging Risk (brand protection, fraud disruption) · Digital Forensics & IR - **Customers:** Riyad Bank · Bank Albilad · Alinma Bank · Arab National Bank · Al Rajhi Takaful · Tawuniya #### 5.5.2 Government & Defense — `/industries/government-defense` - **H1:** Government & Defense - **Sub:** NCA ECC/CSCC, data sovereignty and classified handling — national-grade security delivered from the Kingdom. - **Drivers:** Nation-state adversaries · Sovereignty and data-residency mandates · Critical national infrastructure interdependence. - **Regulations:** NCA ECC · NCA CSCC · NCA OTCC · PDPL · NDMO data classification - **Services:** GRC & Compliance · SOC/MDR · Offensive Security · Network Security · OT/ICS · Security Awareness - **Customers:** Royal Private Affairs · Ministry of Health · Ministry of Justice · Ministry of Industry & Mineral Resources · Expo 2030 Riyadh · MODON · NHC · Saudi Commission for Health Specialties *(confirm sector mapping)* #### 5.5.3 Healthcare — `/industries/healthcare` - **H1:** Healthcare - **Sub:** Patient-data protection, PDPL and medical-IoT security — without compromising care delivery. - **Drivers:** Ransomware targeting clinical availability · Connected medical devices (IoMT) with legacy firmware · Patient privacy under PDPL. - **Regulations:** PDPL · NCA ECC · Ministry of Health cybersecurity controls · ISO 27001 - **Services:** Data Security · IoT & Medical Device Security (Exposure domain) · SOC/MDR · Identity Security · GRC & Compliance · Digital Forensics & IR - **Customers:** Ministry of Health · Health Holding · Center for National Health Insurance · Saudi Commission for Health Specialties · Sehaty *(confirm)* #### 5.5.4 Telecom & Technology — `/industries/telecom-technology` - **H1:** Telecom & Technology - **Sub:** CRA / NCA regulatory alignment for the networks and platforms the Kingdom runs on. - **Drivers:** Carrier-scale attack surface · 5G / edge / cloud-native infrastructure · Regulator scrutiny (CST/CRA, NCA). - **Regulations:** CST (CRA) cybersecurity regulatory framework · NCA ECC/CSCC · PDPL - **Services:** Network Security · SOC/MDR · Cloud Security · Application Security · DDoS Protection & Resilience · Offensive Security - **Customers:** Mobily #### 5.5.5 Oil, Gas & Utilities — `/industries/oil-gas-utilities` - **H1:** Oil, Gas & Utilities - **Sub:** OT/ICS security and safety-critical uptime — from the network edge to the plant floor. - **Drivers:** IT/OT convergence exposes legacy control systems · Safety and availability outrank confidentiality · NCA OTCC compliance deadlines. - **Regulations:** NCA OTCC · IEC 62443 · NCA ECC · NIST CSF - **Services:** OT/ICS Security · Network Security · SOC/MDR (OT monitoring) · Digital Forensics & IR (ICS IR planning) · Exposure & Emerging Risk - **Customers:** Saudi Energy (se) *(confirm)* #### 5.5.6 Education — `/industries/education` - **H1:** Education - **Sub:** Research data, identity at scale, budget fit — security that works for open, distributed campuses. - **Drivers:** Tens of thousands of identities with high churn · Valuable research IP · Constrained budgets requiring managed models. - **Regulations:** NCA ECC · PDPL · Ministry of Education guidelines - **Services:** Identity Security · SOC/MDR (as-a-service) · Security Awareness · Data Security · Email Security - **Customers:** *(to be supplied)* #### 5.5.7 Retail & E-Commerce — `/industries/retail-ecommerce` - **H1:** Retail & E-Commerce - **Sub:** PCI DSS, bot & fraud defense, and security that scales with seasonal peaks. - **Drivers:** Card-data compliance · Bot traffic, scraping and account takeover · Ramadan / White Friday traffic spikes. - **Regulations:** PCI DSS · PDPL · SAMA (payments) - **Services:** Application Security · Network Security (WAF/DDoS) · GRC & Compliance (PCI) · Exposure & Emerging Risk (brand protection, fraud) · SOC/MDR - **Customers:** *(to be supplied)* #### 5.5.8 Aviation & Logistics — `/industries/aviation-logistics` - **H1:** Aviation & Logistics - **Sub:** Critical infrastructure and supply-chain risk — securing the movement of people and goods. - **Drivers:** Critical national infrastructure designation · Complex third-party ecosystems · OT in airports, ports and warehouses. - **Regulations:** NCA ECC · NCA CSCC · NCA OTCC · GACA cybersecurity requirements · ICAO Annex 17 - **Services:** OT/ICS Security · Third-Party & Supply-Chain (Exposure domain) · SOC/MDR · Network Security · Cyber Crisis Management - **Customers:** *(to be supplied — confirm GACA logo)* --- ### 5.6 Technology Partners — `/technology-partners` **Meta title:** Technology & Vendor Partnerships | 30+ Best-of-Breed Vendors | Daman Al Bayanat #### Hero (dark) - **Eyebrow:** SECTION 03 · TECHNOLOGY & VENDOR PARTNERSHIPS - **H1:** Technology & Vendor Partnerships - **Sub:** A curated, best-of-breed ecosystem — engineered, integrated and operated by certified specialists. #### Filter bar All · Core Defense · Identity, Email & Cloud · Application & Edge · Data & Resilience · Engineering, Industrial & AI #### 01 Core Defense Stack | Category | Vendors | |---|---| | Enterprise Firewall | Cisco · Palo Alto Networks · Forcepoint · HPE Juniper Networking · Fortinet | | Endpoint · EDR / XDR / NDR | Darktrace · CrowdStrike · Microsoft · Palo Alto Networks · Vectra AI | | Security Analytics · SIEM | Cisco · CrowdStrike · Palo Alto Networks · Elastic · LogRhythm | | Security Automation · SOAR | Cisco · Palo Alto Networks · Fortinet | #### 02 Identity, Email & Cloud | Category | Vendors | |---|---| | IAM & Identity Governance | Ping Identity · Microsoft · Okta · SailPoint | | Privileged Access · PAM | BeyondTrust · Delinea · Palo Alto Networks | | Email Security | Barracuda · Darktrace · Proofpoint | | Cloud · CNAPP / CSPM / CWPP | Oracle · Google Cloud · CrowdStrike · Microsoft · Palo Alto Networks | #### 03 Application, Network-Edge & Exposure | Category | Vendors | |---|---| | WAF & App Protection | F5 · Thales · Cloudflare | | Vulnerability Management | Rapid7 · Tenable | | ZTNA / SASE | Palo Alto Networks · Fortinet · Zscaler | | NAC | Cisco · HPE Juniper Networking · Fortinet | #### 04 Data, Resilience & Intelligence | Category | Vendors | |---|---| | DLP & Data Protection | Forcepoint · Rubrik · Symantec · Fortinet | | Backup & Ransomware | Commvault · Rubrik · Veeam | | Threat Intelligence (TI) | Recorded Future · CrowdStrike · Kaspersky · Group-IB | | Database Security | Thales · IBM · Oracle | #### 05 Engineering, Industrial, Investigative & AI | Category | Vendors | |---|---| | OT / ICS / CPS | Claroty · Dragos · Nozomi Networks · Fortinet · Tenable | | AppSec / DevSecOps | Checkmarx · Veracode · Snyk | | Forensics & Incident Response | Magnet Forensics · Cellebrite · Binalyze · OpenText Cybersecurity | | AI-SPM / LLM Defence | HiddenLayer · Lakera | #### Unique vendor master list (for logo assets — 49) Akamai · Barracuda · BeyondTrust · Binalyze · Cellebrite · Checkmarx · Cisco · Claroty · Cloudflare · Commvault · CrowdStrike · Darktrace · Delinea · Dragos · Elastic · F5 · Forcepoint · Fortinet · Google Cloud · Group-IB · HiddenLayer · HPE Juniper Networking · IBM · Kaspersky · Lakera · LogRhythm · Magnet Forensics · Mandiant · Microsoft · Nozomi Networks · Okta · OpenText Cybersecurity · Oracle · Palo Alto Networks · Ping Identity · Proofpoint · Radware · Rapid7 · Recorded Future · Rubrik · SailPoint · ServiceNow · Snyk · Symantec · Tenable · Thales · Tines · Veeam · Veracode · Vectra AI · Wiz · Zscaler #### Partnership tiers *(placeholder — confirm certification levels, e.g. Palo Alto Diamond, Fortinet Expert, CrowdStrike Elite)* **CTA:** [Discuss a Technology Roadmap] --- ### 5.7 Customers — `/customers` **Meta title:** Our Customers | Trusted by Leaders Across KSA & MENA | Daman Al Bayanat - **Eyebrow:** OUR CUSTOMERS - **H1:** Trusted by Leaders - **Sub:** Our track record of successful delivery and long-term partnerships reflects our commitment to excellence, innovation, and customer success across the region. #### Logo wall (grouped by sector — as identified from profile; confirm names & permissions) **Government & Public Sector** - Royal Private Affairs (الشؤون الخاصة لخادم الحرمين الشريفين) - Royal Court / General Secretariat *(confirm)* - Ministry of Interior emblem *(confirm)* - Ministry of Health - Ministry of Justice - Ministry of Industry & Mineral Resources - Expo 2030 Riyadh - MODON (Saudi Authority for Industrial Cities & Technology Zones) - NHC — National Housing Company - National Security Center *(confirm)* **Healthcare** - Health Holding Company - Health HR Co. (شركة الصحة للموارد البشرية) - Saudi Commission for Health Specialties - Center for National Health Insurance - Sehaty *(confirm)* **Banking, Finance & Insurance** - Riyad Bank - Bank Albilad - Alinma Bank - Arab National Bank (anb) - Al Rajhi Takaful - Tawuniya **Energy & Telecom** - Saudi Energy (se) *(confirm entity)* - Mobily #### Case studies *(Phase 2 — placeholder cards)* - Template: Challenge → Approach → Outcome → Services used → Vendors deployed #### Testimonials *(to be supplied)* **CTA:** [Join Our Customers — Request a Consultation] --- ### 5.8 Global Presence — `/global-presence` **Meta title:** Global Presence | Riyadh, Dubai, Cairo, Casablanca | Daman Al Bayanat - **Eyebrow:** WHERE WE OPERATE - **H1:** Innovation Without Borders. Powering the Future, Everywhere. - **Sub:** Headquartered in Riyadh with delivery centers across the GCC, Egypt and North Africa — and a new Center of Excellence expanding to Asia. #### Interactive dotted world map with office pins | Office | Role | Status | |---|---|---| | **Saudi Arabia – Riyadh** | Head Office | Active | | **UAE – Dubai** | GCC (except KSA) | Active | | **Egypt – Cairo** | Center of Excellence | Active | | **Morocco – Casablanca** | Africa Region | Active | | **Philippines / India** | New Center of Excellence Expansion | Coming Soon | #### Coverage line 24×7 SOC · KSA & MENA *(Full addresses, phone numbers, and maps to be supplied by client.)* **CTA:** [Contact Your Nearest Office] --- ### 5.9 Contact — `/contact` **Meta title:** Contact Daman Al Bayanat | Request a Cybersecurity Consultation - **Eyebrow:** ENGAGE - **H1:** Let's build your cyber resilience together. - **Sub:** Securing tomorrow's innovation, today. Tell us about your environment and a senior consultant will respond within one business day. #### Form fields - Full name * - Work email * - Company / Organization * - Job title - Country (dropdown: KSA, UAE, Egypt, Morocco, Other) - Industry (dropdown: 8 sectors + Other) - I'm interested in (multi-select): Managed SOC / MDR · Penetration Testing / Red Team · GRC & Compliance · Identity · Cloud · Application Security · Network · Data · Email · OT/ICS · Awareness · Forensics & IR · AI Security · Exposure Management · Technology Reselling · Other - Message - Consent checkbox (PDPL-compliant privacy notice) - **Submit:** [Request a Consultation] #### Direct contact - **Partnerships & general enquiries:** partnerships@damanbayanat.com - **Head Office:** Riyadh, Kingdom of Saudi Arabia *(address TBD)* - **Phone:** *(TBD)* - **24×7 SOC:** *(hotline TBD)* #### Regional offices (compact list → links to Global Presence) --- #### 5.9.1 Report an Incident — `/contact/report-incident` - **Eyebrow:** 24×7 INCIDENT RESPONSE - **H1:** Under attack? We're on it. - **Sub:** Our incident-response team operates 24×7. Call the hotline for immediate triage, or submit the form and we'll respond within minutes. - **Hotline:** *(TBD — prominent, click-to-call)* - **Email:** *(ir@ TBD)* - **Short form:** Name · Phone · Email · Organization · What's happening (free text) · [Submit — Priority] - **What happens next:** 1. Triage call within 15 minutes → 2. Containment guidance → 3. Forensic acquisition & scoping → 4. Recovery & reporting - **Note:** Existing retainer customers: use your dedicated portal/hotline. --- ### 5.10 Secondary Pages #### Careers — `/careers` *(Phase 2)* - **H1:** Build the region's most trusted cyber team. - **Sub:** Red teamers, SOC analysts, GRC consultants, cloud engineers — join a certified bench with a cyber range, vendor bootcamps and a 24×7 mission. - **Why Daman:** Vendor certification bootcamps · Cyber range training · Multi-region career paths (Riyadh, Dubai, Cairo, Casablanca) · Values-led culture - **Open roles:** dynamic list - **CTA:** [View Open Roles] / [Send Your CV] #### Insights — `/insights` *(Phase 2)* - **H1:** Insights - **Types:** Threat advisories · Regulatory briefs (NCA, SAMA, PDPL) · Whitepapers · Webinars - Suggested launch content: "NCA ECC 2.0 readiness checklist" · "OWASP Top 10 for LLM — what KSA enterprises must test" · "IEC 62443 vs NCA OTCC: a practical mapping" #### Privacy Policy — `/privacy-policy` - PDPL-compliant privacy notice (to be drafted by legal) #### Terms — `/terms` #### 404 - **H1:** This page is off the map. - **Sub:** But your attack surface shouldn't be. [Back to Home] [Explore Services] --- ## 6. SEO Metadata | Page | Title (≤60 chars) | Description (≤155 chars) | Primary keywords | |---|---|---|---| | Home | Daman Al Bayanat \| Cybersecurity Integrator & MSSP · KSA | Premium cybersecurity integrator and MSSP in Saudi Arabia. 24×7 SOC/MDR, offensive security, GRC and a 30+ vendor portfolio. | cybersecurity company Saudi Arabia, MSSP Riyadh | | Services | Cybersecurity Services \| 14 Domains \| Daman Al Bayanat | Offensive, defensive, governance, cloud, OT and AI security — one integrated portfolio delivered by a certified bench and 24×7 SOC. | cybersecurity services KSA | | SOC/MDR | 24×7 SOC-as-a-Service & MDR \| Daman Al Bayanat | Managed detection and response with tiered L1–L3 analysts, detection-as-code and guaranteed IR SLAs. | managed SOC Saudi Arabia, MDR KSA | | Offensive | Penetration Testing & Red Team \| Daman Al Bayanat | MITRE ATT&CK-aligned red teaming, pentesting and purple teaming for enterprises in KSA & MENA. | penetration testing Saudi Arabia, red team KSA | | GRC | NCA ECC, SAMA CSF & PCI DSS Compliance \| Daman Al Bayanat | Provable compliance programs against NCA, SAMA, PCI DSS, ISO 27001 and PDPL, plus vCISO services. | NCA ECC compliance, SAMA CSF consultant | | OT/ICS | OT / ICS Security \| IEC 62443 & NCA OTCC \| Daman Al Bayanat | OT asset discovery, IT/OT segmentation and ICS monitoring aligned to IEC 62443 and NCA OTCC. | OT security Saudi Arabia, NCA OTCC | | AI Security | AI Security & LLM Pen-Testing \| Daman Al Bayanat | AI governance (NIST AI RMF, ISO 42001, SDAIA), GenAI red teaming, shadow-AI guardrails and AI-driven SOC. | AI security KSA, LLM penetration testing | | Partners | Technology Partners \| 30+ Vendors \| Daman Al Bayanat | Certified partner for Palo Alto, CrowdStrike, Fortinet, Cisco, Microsoft, Okta, Tenable and more. | cybersecurity vendor partner Saudi Arabia | | Industries | Industries \| Daman Al Bayanat | Cybersecurity for banking, government, healthcare, telecom, energy, education, retail and aviation in KSA & MENA. | — | | Contact | Contact \| Daman Al Bayanat | Request a consultation with Daman Al Bayanat's cybersecurity team in Riyadh, Dubai, Cairo or Casablanca. | — | **Technical SEO notes:** hreflang EN/AR · Organization + LocalBusiness schema per office · Service schema per domain page · BreadcrumbList · Sitemap.xml auto-generated. --- ## 7. Content Gaps — To Confirm with Client | # | Item | Needed for | Priority | |---|---|---|---| | 1 | Leadership team (names, titles, bios, photos) | About | High | | 2 | Head-office address, phone, IR hotline number | Contact, Footer, Report Incident | High | | 3 | Vendor partnership tier / certification levels | Technology Partners | High | | 4 | Customer logo usage permissions + exact entity names (esp. flagged *confirm*) | Customers, Industries | High | | 5 | Company founding year, headcount, certifications held (ISO 27001, CREST, etc.) | About, trust signals | Medium | | 6 | SOC service tiers / packaging | SOC/MDR page | Medium | | 7 | 2–3 anonymized case studies | Customers, Industries | Medium | | 8 | Testimonials | Home, Customers | Medium | | 9 | Regional office addresses | Global Presence | Medium | | 10 | Social channels (LinkedIn, X) | Footer | Low | | 11 | Arabic copy — translate or transcreate? | /ar/* | Medium | | 12 | Careers: open roles, HR contact | Careers | Low (Phase 2) | | 13 | Insights: first 3–5 articles | Insights | Low (Phase 2) | | 14 | Brand assets: full logo suite, typography (profile appears to use a geometric sans, e.g. Space Grotesk-style, + monospace labels), color tokens | Design system | High | --- *End of document.*