Trust Center
Compliance
Honest status per framework. We never show a logo for a certification we do not hold. Statuses: Certified (with certificate number, scope, auditor and date), In progress (with a target quarter), Aligned (a self-assessed mapping available on request), Planned.
Status
Where Inlinea stands today
| Framework | Why it matters | Status |
|---|---|---|
| NCA Essential Cybersecurity Controls (ECC) | The Kingdom's baseline for government and critical sectors. | Planned |
| NCA Cloud Cybersecurity Controls (CCC) | Required for cloud services to Saudi government entities. | Planned |
| CST cloud service provider registration | The Kingdom's regulatory framework for cloud services. | Planned |
| Personal Data Protection Law (PDPL) | Personal data of people in the Kingdom. | Planned |
| SAMA Cyber Security Framework | Banks and insurers. | Planned |
| ISO/IEC 27001 | The global baseline buyers ask for first. | Planned |
| SOC 2 Type II | US and multinational procurement. | Planned |
| General Data Protection Regulation (GDPR) | Personal data in the European Union. | Planned |
The controls the frameworks name are built into the platform today: identity-based access, least privilege, privileged access with evidence, logging with retention and export, residency and single tenancy. A control mapping pack is available through the document request.
Controls
What is built in, whatever the framework
- AccessIdentity-based, per resource, with device posture and re-evaluation.
- Privileged accessBrokered sessions, managed credentials, Session Evidence, termination.
- LoggingFour streams with retention, export and forwarding to your SIEM.
- ResidencySingle-tenant in your region, dedicated environments, on-premises.