Home Cybersecurity CIRA AI & Dev Platform About Contact Resources Forms ISO Standards
Now serving Jordan, Gulf & International clients

Security Intelligence
for Businesses That
Can't Afford to Get It Wrong

CiraGuard delivers vCISO leadership, cyber insurance readiness, AI automation, and managed security — built for mid-size businesses in Jordan, the Gulf, and beyond.

CIRA Readiness Score
49
/ 100 — Needs Improvement
Multi-Factor Auth
30%
Endpoint Detection
50%
Backup & Recovery
80%
Incident Response
20%
Patch Management
65%
$283M
MEA cyber insurance market 2024
26.2%
Annual market growth rate
0
Local CIRA providers before CiraGuard
60%
vCISO work automated by our platform
نخدم الأردن ودول الخليج والعملاء حول العالم

ذكاء أمني
للشركات التي
لا تحتمل الخطأ

سيرا غارد تقدّم قيادة الرئيس التنفيذي الافتراضي لأمن المعلومات (vCISO)، وتحليل جاهزية التأمين السيبراني، وأتمتة الذكاء الاصطناعي، والأمن المُدار — لشركات الأردن والخليج والعالم.

درجة جاهزية CIRA
49
من 100 — تحتاج إلى تحسين
المصادقة متعددة العوامل
30%
كشف نقاط النهاية
50%
النسخ الاحتياطي والاستعادة
80%
الاستجابة للحوادث
20%
إدارة التحديثات
65%
$283M
سوق التأمين السيبراني في الشرق الأوسط وأفريقيا 2024
26.2%
معدل النمو السنوي للسوق
0
مزودو خدمة CIRA المحليون قبل CiraGuard
60%
من أعمال vCISO تتم أتمتتها عبر منصتنا
✦ ISO 27001 Aligned
✦ NIST CSF Framework
✦ GDPR · HIPAA · PCI-DSS
✦ Jordan & Gulf Region
✦ Arabic & English
✦ Professionally Insured
✦ متوافق مع ISO 27001
✦ إطار عمل NIST CSF
✦ GDPR · HIPAA · PCI-DSS
✦ الأردن ودول الخليج
✦ العربية والإنجليزية
✦ مؤمّن مهنيًا

Enterprise security,
at mid-market pricing

Three integrated service pillars — each designed to solve a specific business problem, delivered by practicing security professionals.

🛡️

Cybersecurity & vCISO

Virtual CISO leadership, compliance support, managed detection & response, penetration testing, and board-level security briefings.

vCISO MDR ISO 27001 GDPR
📋

Cyber Insurance Readiness (CIRA)

The only structured readiness analysis service in Jordan — we assess, score, and prepare your business to qualify for cyber insurance at the best possible premium.

CIRA Assessment Broker Package Exclusive
🤖

AI & Technology Services

Secure web application development, intelligent process automation, and conversational AI agent development — built with security by design.

AI Agents Automation Web Dev

أمن بمستوى المؤسسات،
بأسعار الشركات المتوسطة

ثلاث ركائز خدمية متكاملة — كل منها مصممة لحل مشكلة عمل محددة، يقدّمها متخصصون أمنيون محترفون.

🛡️

الأمن السيبراني وvCISO

قيادة الرئيس التنفيذي الافتراضي لأمن المعلومات، ودعم الامتثال، والكشف والاستجابة المُدارة، واختبار الاختراق، وعروض أمنية لمجلس الإدارة.

vCISO MDR ISO 27001 GDPR
📋

تحليل جاهزية التأمين السيبراني (CIRA)

الخدمة المنظمة الوحيدة لتحليل الجاهزية في الأردن — نقيّم وضعك الأمني، نمنحك درجة جاهزية، ونُجهزك للتأهل للتأمين السيبراني بأفضل قسط ممكن.

تقييم CIRA حزمة الوسيط حصري
🤖

خدمات الذكاء الاصطناعي والتقنية

تطوير تطبيقات ويب آمنة، وأتمتة العمليات الذكية، وتطوير وكلاء ذكاء اصطناعي محادثين — مبنية بمبدأ الأمان أولاً.

وكلاء الذكاء الاصطناعي الأتمتة تطوير الويب
$283M
MEA cyber insurance market size in 2024 — growing at 26% annually
26.2%
Annual growth rate — fastest growing cyber insurance region globally
0
Dedicated CIRA service providers in Jordan before CiraGuard
3-in-1
Security, compliance, and technology — one trusted partner
$283M
حجم سوق التأمين السيبراني في الشرق الأوسط وأفريقيا لعام 2024 — بنمو 26% سنويًا
26.2%
معدل النمو السنوي — أسرع منطقة نموًا في التأمين السيبراني عالميًا
0
مزودو خدمة CIRA المتخصصون في الأردن قبل CiraGuard
3 في 1
الأمن، الامتثال، والتقنية — شريك واحد موثوق

Is your business ready
for cyber insurance?

Most businesses that apply for cyber insurance are rejected or overcharged because they can't demonstrate basic security controls. CiraGuard's CIRA service prepares you before you apply — saving thousands in premiums and eliminating rejection risk.

49
Average readiness score before CIRA
After remediation
87%
Premium savings
30%

✓ First and only CIRA provider in Jordan & MENA

هل شركتك جاهزة
للتأمين السيبراني؟

معظم الشركات التي تتقدم بطلب للحصول على تأمين سيبراني تُرفض أو يُفرض عليها أقساط أعلى لأنها لا تستطيع إثبات وجود ضوابط أمنية أساسية. تُجهّزك خدمة CIRA من CiraGuard قبل التقديم — مما يوفر آلاف الدولارات في الأقساط ويُلغي خطر الرفض.

49
متوسط درجة الجاهزية قبل CIRA
بعد المعالجة
87%
توفير في الأقساط
30%

✓ المزود الأول والوحيد لخدمة CIRA في الأردن والشرق الأوسط

Download the 2025 CIRA Checklist

The complete Cyber Insurance Readiness Checklist for MENA businesses — free, instant, no commitment required.

No spam. Unsubscribe anytime.

حمّل قائمة CIRA للتحقق لعام 2025

القائمة الكاملة لجاهزية التأمين السيبراني لشركات الشرق الأوسط وأفريقيا — مجانية، فورية، وبدون أي التزام.

بلا رسائل مزعجة. يمكن إلغاء الاشتراك في أي وقت.

Enterprise-grade security.
Mid-market pricing.

From virtual CISO leadership to managed detection & response — CiraGuard delivers the full security stack your business needs without the full-time executive cost.

أمن بمستوى المؤسسات.
بأسعار الشركات المتوسطة.

من قيادة الرئيس التنفيذي الافتراضي لأمن المعلومات إلى الكشف والاستجابة المُدارة — تقدّم CiraGuard كامل منظومة الأمن التي تحتاجها شركتك دون تكلفة توظيف تنفيذي بدوام كامل.

👔

vCISO & Security Strategy

Fractional Chief Information Security Officer services — security roadmap, risk assessments, policy development, and board reporting. Enterprise leadership at a fraction of the cost.

Risk Assessment Security Roadmap Board Reporting

Compliance Support

GDPR, HIPAA, PCI-DSS, ISO 27001, and NIST CSF — gap analysis, controls implementation, evidence vault management, and full audit preparation.

GDPR HIPAA PCI-DSS ISO 27001
🔍

Managed Detection & Response

24/7 threat monitoring, incident detection, and AI-powered response playbooks. Powered by our proprietary platform — not just manual work. For companies without an internal SOC.

MDR SIEM Integration Incident Response
🎯

Board Presentation Service

We translate your security findings into board-ready presentations that executives understand and act on. Includes the Board Security Minute — your legal paper trail of due diligence.

Executive Briefing Board Reporting Quarterly Retainer
🔐

Penetration Testing

Web application, network, and social engineering assessments by certified professionals. Reports aligned to insurance and compliance requirements for maximum utility.

OWASP Network Testing Red Team
👁️

Dark Web Monitoring

Continuous scanning for leaked credentials, stolen data, and brand impersonation across dark web sources. Real-time alerts and monthly intelligence reports.

Credential Monitoring Brand Protection Alerts
📚

Security Awareness Training

Monthly phishing simulations, interactive staff training, and executive security briefings. Compliance-ready reporting. Required by most cyber insurance policies.

Phishing Simulation Staff Training Compliance
🏢

Vendor Risk Assessment

Automated security questionnaires to your suppliers and vendors. Risk scoring per vendor. Required by PCI-DSS and increasingly demanded by cyber insurers.

Third-Party Risk Vendor Scoring PCI-DSS
👔

vCISO واستراتيجية الأمن

خدمات الرئيس التنفيذي الافتراضي لأمن المعلومات — خارطة طريق أمنية، تقييمات للمخاطر، تطوير السياسات، وتقارير لمجلس الإدارة. قيادة بمستوى المؤسسات بجزء بسيط من التكلفة.

تقييم المخاطر خارطة الطريق الأمنية تقارير مجلس الإدارة

دعم الامتثال

GDPR وHIPAA وPCI-DSS وISO 27001 وNIST CSF — تحليل الفجوات، تطبيق الضوابط، إدارة سجل الأدلة، والتجهيز الكامل للتدقيق.

GDPR HIPAA PCI-DSS ISO 27001
🔍

الكشف والاستجابة المُدارة (MDR)

مراقبة التهديدات على مدار الساعة، كشف الحوادث، وخطط استجابة مدعومة بالذكاء الاصطناعي. مدعومة بمنصتنا الخاصة — وليست عملاً يدويًا فقط. مناسبة للشركات التي لا تملك مركز عمليات أمنية داخلي.

MDR تكامل SIEM الاستجابة للحوادث
🎯

خدمة عروض مجلس الإدارة

نترجم نتائجك الأمنية إلى عروض تقديمية لمجلس الإدارة يفهمها التنفيذيون ويتخذون القرار بناءً عليها. تشمل محضر الأمن لمجلس الإدارة — سجلك القانوني لإثبات بذل العناية الواجبة.

إحاطة تنفيذية تقارير مجلس الإدارة اشتراك ربع سنوي
🔐

اختبار الاختراق

تقييمات لتطبيقات الويب والشبكات والهندسة الاجتماعية بواسطة محترفين معتمدين. تقارير متوافقة مع متطلبات التأمين والامتثال لأقصى استفادة.

OWASP اختبار الشبكات الفريق الأحمر
👁️

مراقبة الويب المظلم

مسح مستمر لبيانات الاعتماد المسروقة، البيانات المسربة، وانتحال العلامة التجارية عبر مصادر الويب المظلم. تنبيهات فورية وتقارير استخباراتية شهرية.

مراقبة بيانات الاعتماد حماية العلامة التجارية التنبيهات
📚

التدريب على الوعي الأمني

محاكاة شهرية لهجمات التصيد، تدريب تفاعلي للموظفين، وإحاطات أمنية للتنفيذيين. تقارير جاهزة للامتثال. مطلوبة في معظم وثائق التأمين السيبراني.

محاكاة التصيد تدريب الموظفين الامتثال
🏢

تقييم مخاطر المورّدين

استبيانات أمنية تلقائية لمورديك وشركائك. تصنيف المخاطر لكل مورّد. مطلوب بموجب PCI-DSS ويزداد طلبه من شركات التأمين السيبراني.

مخاطر الطرف الثالث تصنيف الموردين PCI-DSS

Ready to strengthen your security posture?

Start with a free 30-minute consultation. No commitment, no sales pressure — just honest advice.

هل أنت مستعد لتعزيز وضعك الأمني؟

ابدأ باستشارة مجانية لمدة 30 دقيقة. بدون التزام، وبدون أي ضغط بيعي — فقط نصيحة صادقة.

Will your business qualify
for cyber insurance?

CIRA — Cyber Insurance Readiness Analysis. The only structured readiness service in Jordan and MENA. We assess your posture, identify gaps, and prepare your broker package — before you apply.

هل تتأهل شركتك
للتأمين السيبراني؟

CIRA — تحليل جاهزية التأمين السيبراني. الخدمة المنظمة الوحيدة من نوعها في الأردن والشرق الأوسط. نقيّم وضعك الأمني، نحدد الفجوات، ونُجهّز حزمة الوسيط — قبل أن تتقدم بالطلب.

Why businesses get rejected

⚠️

Rejected or overcharged

Businesses that cannot prove basic security controls are rejected by insurers or charged 40–70% higher premiums than those who can demonstrate a strong posture.

📝

Complex questionnaires

Modern cyber insurance applications contain 50–200 technical questions. Most IT managers and business owners cannot answer them confidently or completely.

🌍

No local expert to help

In Jordan and across MENA, there is no specialist who prepares businesses specifically for cyber insurance applications. Until now.

لماذا تُرفض طلبات الشركات

⚠️

الرفض أو زيادة الأقساط

الشركات التي لا تستطيع إثبات وجود ضوابط أمنية أساسية تُرفض من شركات التأمين أو يُفرض عليها أقساط أعلى بنسبة 40 إلى 70٪ مقارنة بالشركات ذات الوضع الأمني القوي.

📝

استبيانات معقدة

تحتوي طلبات التأمين السيبراني الحديثة على 50 إلى 200 سؤال تقني. لا يستطيع معظم مدراء تقنية المعلومات وأصحاب الأعمال الإجابة عليها بثقة أو بشكل كامل.

🌍

لا يوجد خبير محلي للمساعدة

في الأردن وعبر منطقة الشرق الأوسط وأفريقيا، لا يوجد متخصص يُجهّز الشركات خصيصًا لطلبات التأمين السيبراني. حتى الآن.

Five steps to full readiness

From first contact to broker-ready package — delivered in 2 to 14 days depending on your tier.

1

Assess

120-point evaluation across 8 control domains mapped to insurer requirements

2

Score

Readiness score out of 100 with traffic-light rating per control domain

3

Gap Report

Every gap that will hurt your application or increase your premium, prioritized

4

Roadmap

30-day quick wins and 90-day action plan to fix what matters most

5

Broker Package

Professional evidence documentation ready to hand to your insurance broker

خمس خطوات للجاهزية الكاملة

من أول اتصال إلى حزمة جاهزة للوسيط — يتم التسليم في 2 إلى 14 يومًا حسب الباقة.

1

التقييم

تقييم من 120 نقطة عبر 8 مجالات تحكم متوافقة مع متطلبات شركات التأمين

2

الدرجة

درجة جاهزية من 100 مع تصنيف بنظام الإشارة المرورية لكل مجال تحكم

3

تقرير الفجوات

كل فجوة قد تؤثر على طلبك أو ترفع قسطك، مرتبة بحسب الأولوية

4

خارطة الطريق

خطة تحسينات سريعة لـ30 يومًا وخطة عمل لـ90 يومًا لمعالجة الأهم أولاً

5

حزمة الوسيط

وثائق إثبات مهنية جاهزة لتسليمها إلى وسيط التأمين الخاص بك

Three options for every size

All tiers include a delivery call and professional disclaimer. Annual renewal discounts available.

CIRA ESSENTIALS
$800
per engagement · delivered in 2–3 days
For small businesses up to 50 staff who need a fast, clear picture before applying.
  • 40-point assessment
  • Readiness score (0–100)
  • Top 10 gaps identified
  • 1-page broker summary
  • Delivery walkthrough call
CIRA ENTERPRISE
$3,500
per engagement · delivered in 10–14 days
For large or multi-site organizations requiring depth, on-site interviews, and ongoing monitoring.
  • Everything in Professional
  • Vendor risk assessment
  • On-site interview included
  • 6-month posture monitoring
  • Quarterly status updates

ثلاث باقات تناسب كل حجم شركة

تشمل جميع الباقات مكالمة تسليم وإفادة إخلاء مسؤولية مهنية. تتوفر خصومات للتجديد السنوي.

CIRA الأساسية
$800
لكل تقييم · يُسلَّم في 2-3 أيام
للشركات الصغيرة التي يصل عدد موظفيها إلى 50، وتحتاج لصورة سريعة وواضحة قبل التقديم.
  • تقييم من 40 نقطة
  • درجة جاهزية (0-100)
  • تحديد أهم 10 فجوات
  • ملخص صفحة واحدة للوسيط
  • مكالمة شرح التسليم
CIRA للمؤسسات
$3,500
لكل تقييم · يُسلَّم في 10-14 يومًا
للمؤسسات الكبيرة أو متعددة المواقع التي تحتاج تعمقًا أكبر، ومقابلات ميدانية، ومراقبة مستمرة.
  • كل ما في الباقة المتقدمة
  • تقييم مخاطر الموردين
  • مقابلة ميدانية ضمن الباقة
  • مراقبة الوضع الأمني لمدة 6 أشهر
  • تحديثات حالة ربع سنوية

Download the 2025 CIRA Checklist

8 things cyber insurers check — and how to prepare for each one. Free, instant, no commitment.

حمّل قائمة CIRA للتحقق لعام 2025

8 أمور تتحقق منها شركات التأمين السيبراني — وكيف تستعد لكل منها. مجانًا، فورًا، وبدون أي التزام.

Build smarter.
Automate faster.
Deploy securely.

Secure web application development, intelligent process automation, and conversational AI agents — built with security by design and delivered in Arabic and English.

ابنِ بذكاء أكبر.
أتمتة أسرع.
نشر أكثر أمانًا.

تطوير تطبيقات ويب آمنة، وأتمتة العمليات الذكية، ووكلاء ذكاء اصطناعي محادثون — مبنية بمبدأ الأمان أولاً ومقدّمة بالعربية والإنجليزية.

Three technology capabilities

💻

Secure Web Application Development

Full-stack development with security by design — OWASP Top 10 protections, secure authentication, encrypted data handling, and compliance-ready architecture from the first line of code. Every application is built to pass security audits.

React / Next.js Python / Node.js OWASP Secure Cloud Native

Intelligent Process Automation (IPA)

AI-powered workflows using LLMs, RPA, and custom agents that replace repetitive manual processes. Document processing, invoice automation, compliance reporting, data extraction, and ERP integration — reducing manual work by 60–80%.

LLM Workflows RPA SAP / Salesforce Microsoft 365
🤖

Conversational AI & Autonomous Agent Development

Context-aware chatbots and multi-step AI agents built on Claude API, OpenAI, LangChain, and AutoGen. Customer service automation, internal knowledge assistants, document Q&A systems, and security questionnaire responders with full Arabic language support.

Claude API LangChain Arabic Support AutoGen
📄

Security Questionnaire Responder ★ Featured

Answer a 200-question enterprise security questionnaire in 20 minutes using AI — instead of 3 days manually. Pulls from your CiraGuard security posture data to generate accurate, consistent, professionally worded responses. Huge ROI for any company selling to enterprise clients.

AI-Powered 20-Min Turnaround Enterprise Sales

ثلاث قدرات تقنية

💻

تطوير تطبيقات ويب آمنة

تطوير متكامل بمبدأ الأمان أولاً — حماية وفق أهم 10 ثغرات OWASP، مصادقة آمنة، تشفير البيانات، وبنية جاهزة للامتثال من أول سطر برمجي. كل تطبيق مصمم لتجاوز التدقيق الأمني.

React / Next.js Python / Node.js آمن وفق OWASP سحابي أصلي

أتمتة العمليات الذكية (IPA)

تدفقات عمل مدعومة بالذكاء الاصطناعي تستخدم نماذج اللغة الكبيرة وأتمتة العمليات الروبوتية ووكلاء مخصصين لاستبدال العمليات اليدوية المتكررة. معالجة المستندات، أتمتة الفواتير، تقارير الامتثال، استخراج البيانات، والتكامل مع أنظمة ERP — مما يقلل العمل اليدوي بنسبة 60-80٪.

تدفقات نماذج اللغة RPA SAP / Salesforce Microsoft 365
🤖

تطوير الذكاء الاصطناعي المحادث والوكلاء الذكيين

روبوتات محادثة واعية بالسياق ووكلاء ذكاء اصطناعي متعددو الخطوات مبنية على Claude API وOpenAI وLangChain وAutoGen. أتمتة خدمة العملاء، مساعدون داخليون للمعرفة، أنظمة أسئلة وأجوبة للمستندات، ومستجيبو استبيانات أمنية بدعم كامل للغة العربية.

Claude API LangChain دعم اللغة العربية AutoGen
📄

مستجيب الاستبيانات الأمنية ★ مميز

أجب على استبيان أمني للمؤسسات يحتوي 200 سؤال في 20 دقيقة باستخدام الذكاء الاصطناعي — بدلاً من 3 أيام عمل يدوي. يعتمد على بيانات وضعك الأمني في CiraGuard لإنشاء إجابات دقيقة ومتسقة وبصياغة مهنية. عائد استثمار ضخم لأي شركة تبيع لعملاء المؤسسات.

مدعوم بالذكاء الاصطناعي تسليم في 20 دقيقة مبيعات المؤسسات

The difference is security-first

🔒

Every AI deployment is secured, audited, and compliance-ready from day one

🌍

Full Arabic and English capability — rare in the AI development market

MENA market expertise — we understand local business culture and regulations

🤝

One partner for security and technology — not two vendors pulling in different directions

الفرق هو الأمان أولاً

🔒

كل عملية نشر للذكاء الاصطناعي مؤمّنة، مدققة، وجاهزة للامتثال من اليوم الأول

🌍

قدرة كاملة بالعربية والإنجليزية — أمر نادر في سوق تطوير الذكاء الاصطناعي

خبرة في سوق الشرق الأوسط وأفريقيا — نفهم ثقافة الأعمال المحلية وأنظمتها

🤝

شريك واحد للأمن والتقنية — وليس مزوّدَين مختلفَين يسيران في اتجاهين متعارضين

The CiraGuard Platform —
your security operating system

A Security Decision Intelligence System that continuously maps your cyber risk, detects posture changes, and generates executive decisions and reports — replacing 60% of manual vCISO work.

منصة CiraGuard —
نظام تشغيل الأمن الخاص بك

نظام ذكاء أمني يرسم خريطة مستمرة لمخاطرك السيبرانية، يكتشف التغيرات في وضعك الأمني، ويُنشئ قرارات وتقارير تنفيذية — ليحل محل 60٪ من العمل اليدوي لـvCISO.

Everything in one place

📊

Risk Register Generator

AI-powered risk register built from your assets, industry, and org size. Auto-updated as your posture changes.

🔍

Multi-Framework Gap Analyzer

ISO 27001, NIST CSF, GDPR, HIPAA, PCI-DSS. Pluggable framework engine — add new standards as data files.

📋

Evidence Vault

Per-control document store for compliance evidence. Auditor-ready ZIP export at the click of a button.

🚨

Incident Tracker & MDR

Incident timeline, AI-generated response playbooks, SIEM integration, and vulnerability ingestion.

📄

Executive Report Engine

One-click branded PDF reports for boards, executives, and insurance brokers. AI writes the narrative.

🤖

AI vCISO Chat Agent

"What are our top risks this month?" — natural language queries answered with your real security data.

Join the early access waitlist

Be among the first 50 businesses on the platform. Founding discount included.

كل شيء في مكان واحد

📊

مولّد سجل المخاطر

سجل مخاطر مدعوم بالذكاء الاصطناعي يُبنى من أصولك وقطاعك وحجم مؤسستك. يُحدَّث تلقائيًا مع تغير وضعك الأمني.

🔍

محلل الفجوات متعدد الأطر

ISO 27001، NIST CSF، GDPR، HIPAA، PCI-DSS. محرك أطر قابل للتوسعة — أضف معايير جديدة كملفات بيانات.

📋

خزانة الأدلة

مخزن وثائق لكل ضابط تحكم لأدلة الامتثال. تصدير ملف ZIP جاهز للتدقيق بضغطة زر.

🚨

متابع الحوادث وMDR

سجل زمني للحوادث، خطط استجابة مولّدة بالذكاء الاصطناعي، تكامل مع SIEM، واستيعاب الثغرات.

📄

محرك التقارير التنفيذية

تقارير PDF مخصصة بضغطة زر لمجالس الإدارة والتنفيذيين ووسطاء التأمين. الذكاء الاصطناعي يكتب السرد.

🤖

وكيل محادثة vCISO الذكي

"ما هي أهم مخاطرنا هذا الشهر؟" — استعلامات بلغة طبيعية يتم الرد عليها ببيانات أمنك الحقيقية.

انضم لقائمة الانتظار للوصول المبكر

كن من أول 50 شركة على المنصة. يشمل خصم المؤسسين.

Security intelligence,
built for the region

CiraGuard was founded in Jordan with one mission: give mid-size businesses in MENA access to the same security intelligence that enterprises pay millions for — at a price and format that actually works for them.

ذكاء أمني،
مصمم لمنطقتنا

تأسست CiraGuard في الأردن بمهمة واحدة: تمكين الشركات متوسطة الحجم في الشرق الأوسط وأفريقيا من الوصول إلى نفس الذكاء الأمني الذي تدفع المؤسسات الكبرى ملايين الدولارات للحصول عليه — بسعر وشكل يناسبها فعليًا.

CG
Founder & vCISO
CiraGuard — Amman, Jordan
Practicing virtual CISO with deep expertise in cybersecurity strategy, compliance frameworks, and managed security services. Serving clients across Jordan and the MENA region in Arabic and English. Pioneered the Cyber Insurance Readiness Analysis (CIRA) methodology — the first structured cyber insurance readiness service in the Arab world.
vCISO ISO 27001 NIST CSF GDPR Jordan Based Arabic & English

Why clients trust us

🎯

Honesty first

We tell clients what they need to hear, not what they want to hear. Our reports reflect reality — because sugarcoated assessments get people breached.

💡

Clarity over complexity

We translate security complexity into business decisions. A board member should understand our report without a security background.

🤝

Independence

We are not paid by vendors or insurers. We work for our clients — and only our clients. Our recommendations are always in their interest.

🌍

Regional expertise

Based in Amman, fluent in Arabic and English, deeply familiar with the Jordan and Gulf business environment, regulations, and culture.

CG
المؤسس وvCISO
CiraGuard — عمّان، الأردن
رئيس تنفيذي افتراضي لأمن المعلومات يمتلك خبرة عميقة في استراتيجيات الأمن السيبراني، وأطر الامتثال، وخدمات الأمن المُدارة. يخدم عملاء في الأردن ومنطقة الشرق الأوسط وأفريقيا بالعربية والإنجليزية. ابتكر منهجية تحليل جاهزية التأمين السيبراني (CIRA) — أول خدمة منظمة من نوعها لجاهزية التأمين السيبراني في العالم العربي.
vCISO ISO 27001 NIST CSF GDPR مقرها الأردن العربية والإنجليزية

لماذا يثق بنا العملاء

🎯

الصدق أولاً

نخبر عملاءنا بما يحتاجون لمعرفته، لا بما يريدون سماعه. تقاريرنا تعكس الواقع — لأن التقييمات المُجمَّلة تؤدي إلى الاختراق.

💡

الوضوح فوق التعقيد

نترجم تعقيدات الأمن إلى قرارات عمل. يجب أن يفهم عضو مجلس الإدارة تقريرنا دون أي خلفية أمنية.

🤝

الاستقلالية

لا نتقاضى أموالاً من الموردين أو شركات التأمين. نعمل لعملائنا فقط — وتوصياتنا دائمًا في صالحهم.

🌍

خبرة إقليمية

مقرنا في عمّان، نتحدث العربية والإنجليزية بطلاقة، ومطلعون بعمق على بيئة الأعمال والتشريعات والثقافة في الأردن ودول الخليج.

Frameworks & standards we work with

ISO 27001:2022 NIST CSF 2.0 GDPR Article 32 HIPAA Security Rule PCI-DSS v4.0 Saudi NCA UAE NESA OWASP Top 10

الأطر والمعايير التي نعمل بها

ISO 27001:2022 NIST CSF 2.0 GDPR Article 32 HIPAA Security Rule PCI-DSS v4.0 Saudi NCA UAE NESA OWASP Top 10

Let's talk about
your security.

Start with a free 30-minute consultation. No commitment, no sales pressure — just an honest conversation about where your business stands and what we can do together.

لنتحدث عن
أمن شركتك.

ابدأ باستشارة مجانية لمدة 30 دقيقة. بدون التزام، وبدون أي ضغط بيعي — فقط محادثة صادقة عن وضع شركتك وما يمكننا تحقيقه معًا.

Send us a message

We respond within one business day.

Other ways to reach us

Choose the channel that works best for you.

📅

Book a consultation call

Schedule a free 30-minute call directly in our calendar.

Book on Calendly →
💬

WhatsApp

Quick questions? Message us directly.

+962 792910716 & 782856655
✉️

Email

For formal correspondence and proposals.

info@ciraguard.com
📍

Location

Amman, Jordan — serving MENA and international clients remotely and in person.

🎁 Free CIRA Checklist

Download the 2025 Cyber Insurance Readiness Checklist — free, no commitment.

أرسل لنا رسالة

نرد خلال يوم عمل واحد.

طرق أخرى للتواصل معنا

اختر القناة الأنسب لك.

📅

احجز مكالمة استشارية

حدد موعدًا لمكالمة مجانية لمدة 30 دقيقة مباشرة في تقويمنا.

الحجز عبر Calendly →
💬

واتساب

أسئلة سريعة؟ راسلنا مباشرة.

+962 792910716 & 782856655 ←
✉️

البريد الإلكتروني

للتواصل الرسمي والعروض.

info@ciraguard.com rsalim@ciraguard.com
📍

الموقع

عمّان، الأردن — نخدم عملاء الشرق الأوسط وأفريقيا والعملاء الدوليين عن بُعد وحضوريًا.

🎁 قائمة CIRA المجانية

حمّل قائمة جاهزية التأمين السيبراني لعام 2025 — مجانًا، بدون أي التزام.

Professional Resources & Downloads

Checklists, guides, templates, and frameworks — everything your business needs to build and maintain a strong security posture.

Cybersecurity guides & tools

📋
2025 CIRA Readiness Checklist
The complete Cyber Insurance Readiness checklist — 40 controls across 8 domains that insurers check. Know your score before you apply.
🛡️
ISO 27001 Readiness Self-Assessment
A structured 114-control checklist mapped to ISO 27001:2022. Assess your current posture and identify gaps before an official audit.
📊
vCISO Playbook for MENA Businesses
A practical guide to building a security program from scratch — risk register, policy templates, compliance roadmap, and board reporting guide.
Incident Response Plan Template
A ready-to-use Incident Response Plan aligned to NIST IR framework. Fill in your details and you have a compliant IR plan in under an hour.
📝
Security Policy Pack
10 essential security policies (Acceptable Use, Password, Data Classification, Remote Work, BYOD, and more) ready to customize for your organization.
🔍
Vendor Risk Assessment Questionnaire
A 50-question vendor security questionnaire you can send to your suppliers. Covers data handling, access controls, incident history, and compliance.

Forms & governance templates

💼
IT Project Investment Request Form
Propose, justify, and allocate funding for new technology initiatives with this structured request form.
📱
Software Approval & Acquisition Form
Vet, license, and secure new software or cloud platforms to ensure organizational compliance and security.
🤝
Vendor SLA Template
Define expected metrics, deliverables, and terms for third-party IT contractors and service providers.
🚨
Security Incident Report Form
Standardized form for logging, investigating, and resolving cybersecurity breaches or system outages.
🖥️
Hardware Asset Assignment Form
Track issuance and return of laptops, mobile devices, and office equipment with full chain of custody.
🗑️
IT Asset Disposal Form
Ensure retired hardware is safely wiped and properly disposed in compliance with environmental and privacy policies.

Can't find what you need?

Our team develops custom security templates, policies, and governance frameworks tailored to your industry and compliance requirements.

IT Governance & Security Forms

Professional forms for IT governance, security management, and compliance. Complete online and submit — no attachments required. Submissions are sent directly to our team.

💼
IT Project / Investment Request
Propose and justify new technology initiatives
No file attachments. Email supporting documents to info@ciraguard.com referencing your project title.
✓ Your request has been submitted. We will respond within 2 business days.
📱
Software Approval & Acquisition
Vet and approve new software or cloud platforms
No file attachments. Email vendor security documentation to info@ciraguard.com.
✓ Software approval request submitted. Our security team will review within 3 business days.
🤝
Vendor & SLA Agreement Request
Define terms for third-party IT contractors
Email draft contracts to info@ciraguard.com referencing this submission.
✓ SLA request submitted. Our team will prepare the agreement framework within 3 business days.
🔐
Data Access & Security Clearance
Grant or modify employee access permissions
✓ Access request submitted. Security clearance review will be completed within 1 business day.
🖥️
Hardware Provisioning & Asset Assignment
Track issuance and return of IT equipment
✓ Hardware request submitted. Asset management will process within 2 business days.
🗑️
IT Asset Disposal & Decommissioning
Ensure compliant, secure disposal of retired hardware
✓ Disposal request submitted. A certificate of destruction will be issued upon completion.
🚨
Information Security Incident Report
Log and report cybersecurity breaches or outages
⚠️ If this is an active ongoing attack, call us immediately: +962 792910716
Email evidence screenshots and logs to info@ciraguard.com with subject: INCIDENT — [your company name]
✓ Incident report submitted. Our security team will respond within 1 hour for P1/P2 incidents.
⚖️
Risk Acceptance Form
Document formally accepted security risks
✓ Risk acceptance submitted and logged in the risk register.
👔
CIO Service Request
Request IT leadership consultation or advisory services
✓ Request submitted. A senior consultant will contact you within 1 business day.
🔄
Business Process Reengineering Request
Initiate a BPR assessment or redesign engagement
✓ BPR request submitted. Our process consultant will schedule a discovery call within 2 business days.
🎯
Penetration Test Request
Request a professional security assessment
✓ Pen test request submitted. We will send a scoping questionnaire and quote within 2 business days.
📊
Sample Pen Test Results Dashboard
Example of online results delivery — anonymized
Overall Risk Score HIGH — 67/100
3
Critical
7
High
12
Medium
5
Low
FindingSeverityCVSSStatus
SQL Injection — Login formCritical9.8🔴 Open
Outdated SSL/TLS (TLS 1.0)Critical9.1🔴 Open
Default admin credentialsCritical8.8✅ Fixed
Missing MFA on admin panelHigh7.5🟡 In progress
Exposed sensitive API endpointsHigh7.2🔴 Open
Insecure direct object referenceMedium5.3🔴 Open

✓ Your actual pen test results will be delivered in this secure online format plus a full PDF report. Client portal access provided upon engagement completion.

ISO Standards & Compliance Frameworks

Everything you need to understand, implement, and maintain compliance with the world's leading cybersecurity and information security frameworks.

Frameworks we implement

🏆

ISO 27001:2022

The international standard for Information Security Management Systems (ISMS). Covers people, processes, and technology across 93 controls in 4 themes.

  • Organizational controls (37 controls)
  • People controls (8 controls)
  • Physical controls (14 controls)
  • Technological controls (34 controls)
  • Risk assessment and treatment
  • Statement of Applicability (SoA)
🔄

NIST CSF 2.0

The NIST Cybersecurity Framework — a risk-based approach to managing cybersecurity risk organized into 6 core functions.

  • Govern — establish cybersecurity strategy
  • Identify — understand your assets and risks
  • Protect — implement safeguards
  • Detect — identify cybersecurity events
  • Respond — take action on detected events
  • Recover — restore capabilities after incidents
🇪🇺

GDPR — Article 32

General Data Protection Regulation technical and organizational measures for protecting personal data of EU residents.

  • Pseudonymisation and encryption of data
  • Ongoing confidentiality and integrity
  • Availability and resilience assurance
  • Regular testing and evaluation
  • Data breach notification (72-hour rule)
  • Data Protection Impact Assessments (DPIA)
🏥

HIPAA Security Rule

US federal standards for protecting electronic Protected Health Information (ePHI). Required for healthcare providers and their business associates.

  • Administrative safeguards (9 standards)
  • Physical safeguards (4 standards)
  • Technical safeguards (5 standards)
  • Risk analysis and management
  • Workforce training requirements
  • Business Associate Agreements (BAA)
💳

PCI-DSS v4.0

Payment Card Industry Data Security Standard — mandatory for any organization that stores, processes, or transmits cardholder data.

  • 12 requirements across 6 goals
  • Build and maintain secure networks
  • Protect cardholder data
  • Vulnerability management program
  • Strong access control measures
  • Regular monitoring and testing
🌙

Saudi NCA & UAE NESA

Regional cybersecurity frameworks mandatory for organizations operating in Saudi Arabia and the UAE.

  • Saudi NCA — Essential Cybersecurity Controls (ECC)
  • UAE NESA — Information Assurance Standards
  • Critical infrastructure protection
  • Incident reporting to regulators
  • Cyber risk management program
  • Third-party security requirements

Business Process Reengineering

Our structured BPR methodology helps organizations redesign core business processes to achieve dramatic improvements in performance, efficiency, and quality.

1

Discovery

Document and map all current (As-Is) processes. Identify waste, bottlenecks, and redundant steps.

2

Analysis

Measure process performance. Benchmark against industry standards. Identify root causes of inefficiency.

3

Redesign

Design future-state (To-Be) processes. Eliminate non-value-adding steps. Automate where possible.

4

Implement

Roll out redesigned processes. Change management, staff training, and system configuration.

5

Monitor

Measure results against targets. Continuous improvement cycle. Regular performance reviews.

Privacy Policy

Last updated: June 2025 — How CiraGuard collects, uses, and protects your information.

1. Who we are

CiraGuard (ciraguard.com) is a cybersecurity and technology services company based in Amman, Jordan, operated by itsdlc.com. We provide vCISO services, Cyber Insurance Readiness Analysis (CIRA), managed cybersecurity, and AI technology services to businesses in Jordan, the MENA region, and internationally.

Data controller contact: info@ciraguard.com

2. Information we collect

We collect information you provide directly when you:

  • Complete a contact or service request form on our website
  • Request a free resource or checklist download
  • Engage us for cybersecurity or technology services
  • Communicate with us by email or phone

The types of information collected include: name, email address, phone number, company name, job title, and details about your security and technology requirements. We do not collect payment information through our website.

3. How we use your information

  • To respond to service inquiries and deliver requested resources
  • To provide cybersecurity assessment, consulting, and technology services
  • To send relevant security updates, service announcements, and industry insights (you may opt out at any time)
  • To improve our website and service offerings
  • To comply with our legal obligations

We do not sell, rent, or share your personal information with third parties for marketing purposes.

4. Form submissions & data processing

Contact and service request forms on this website are processed through Formspree (formspree.io), a third-party form processing service. Formspree processes submissions securely and transmits them to our team email. By submitting a form, you consent to this processing. Formspree's privacy policy applies to data in transit.

5. Data security

We implement appropriate technical and organizational measures to protect your personal information, consistent with the security standards we recommend to our clients. This includes encrypted communications (HTTPS), access controls, and secure email handling. However, no method of transmission over the internet is completely secure, and we cannot guarantee absolute security.

6. Data retention

We retain personal information for as long as necessary to provide our services and comply with legal obligations, typically no longer than 5 years after the end of a client relationship. Form submissions are retained for 12 months unless you request earlier deletion.

7. Your rights (GDPR)

If you are located in the European Union or European Economic Area, you have the following rights under GDPR:

  • Right to access your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing

To exercise any of these rights, contact us at info@ciraguard.com. We will respond within 30 days.

8. Cookies

Our website uses minimal cookies for basic functionality. We do not use advertising cookies or third-party tracking cookies. If we add analytics in the future, we will update this policy and obtain your consent where required.

9. Third-party links

Our website may contain links to third-party websites. We are not responsible for the privacy practices of those sites and encourage you to review their privacy policies.

10. Changes to this policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date. Continued use of our website after changes constitutes acceptance of the revised policy.

11. Contact us

For any privacy-related questions or to exercise your rights:

Terms of Service

Last updated: June 2025 — Please read these terms carefully before using our services.

1. Acceptance of terms

By accessing ciraguard.com or engaging CiraGuard for any service, you agree to be bound by these Terms of Service and our Privacy Policy. If you do not agree, please do not use our website or services.

2. Services provided

CiraGuard provides cybersecurity consulting, Cyber Insurance Readiness Analysis (CIRA), virtual CISO (vCISO) services, managed security services, and AI technology development services. Specific terms, deliverables, and fees for each engagement are defined in a separate Statement of Work or engagement letter signed by both parties.

3. Professional disclaimer

CiraGuard is a cybersecurity consulting firm. Our CIRA assessments, gap analyses, risk registers, and all other deliverables are professional security assessments representing the opinion of qualified security professionals at the time of assessment. They are not:

  • A guarantee of insurance eligibility, coverage, or premium outcome
  • Legal advice or legal opinion
  • A guarantee that all vulnerabilities have been identified
  • An assurance that following our recommendations will prevent all security incidents

Clients should consult licensed insurance brokers for insurance decisions and qualified legal counsel for legal matters.

4. Limitation of liability

To the maximum extent permitted by applicable law, CiraGuard's total liability to any client for any claims arising from our services shall not exceed the total fees paid by that client for the specific engagement giving rise to the claim in the preceding 12 months. CiraGuard shall not be liable for any indirect, incidental, consequential, or punitive damages.

5. Confidentiality

CiraGuard treats all client information as strictly confidential. We do not disclose client information to third parties without written consent, except as required by law. Clients must keep our proprietary methodologies, tools, and reports confidential and may not share them with unauthorized parties.

6. Intellectual property

All content on ciraguard.com — including text, design, methodology descriptions, frameworks, and code — is the intellectual property of CiraGuard / itsdlc.com and is protected by copyright law. Unauthorized copying, reproduction, or distribution is prohibited. Reports and deliverables produced for a specific client engagement are the property of that client upon full payment of fees.

7. Acceptable use

You agree not to use our website or services to:

  • Submit false, misleading, or fraudulent information
  • Attempt to gain unauthorized access to our systems
  • Engage in any activity that violates applicable laws
  • Reproduce or redistribute our proprietary content without permission

8. Payment terms

Payment terms for each engagement are specified in the engagement letter. Standard terms are 50% deposit upon engagement commencement and 50% upon delivery. Overdue invoices accrue interest at 1.5% per month. CiraGuard reserves the right to suspend services for overdue accounts.

9. Governing law

These terms are governed by the laws of the Hashemite Kingdom of Jordan. Any disputes arising from these terms or our services shall be subject to the exclusive jurisdiction of the courts of Amman, Jordan.

10. Changes to terms

We reserve the right to update these terms at any time. Changes will be posted on this page. Continued use of our services after changes constitutes acceptance.

11. Contact

For questions about these terms: info@ciraguard.com

الموارد والتنزيلات المهنية

قوائم تحقق، أدلة، قوالب، وأطر عمل — كل ما تحتاجه شركتك لبناء وضع أمني قوي والحفاظ عليه.

أدلة وأدوات الأمن السيبراني

📋
قائمة التحقق من جاهزية CIRA لعام 2025
قائمة التحقق الكاملة لجاهزية التأمين السيبراني — 40 ضابطاً عبر 8 مجالات تتحقق منها شركات التأمين. اعرف درجتك قبل التقديم.
🛡️
تقييم ذاتي لجاهزية ISO 27001
قائمة تحقق منظمة بـ114 ضابطاً مُعيَّنة لـISO 27001:2022. قيّم وضعك الحالي وحدد الفجوات قبل التدقيق الرسمي.
📊
دليل vCISO للشركات في منطقة الشرق الأوسط
دليل عملي لبناء برنامج أمني من الصفر — سجل المخاطر، قوالب السياسات، خارطة طريق الامتثال، ودليل تقارير مجلس الإدارة.
قالب خطة الاستجابة للحوادث
خطة استجابة للحوادث جاهزة للاستخدام ومتوافقة مع إطار NIST IR. أضف بياناتك وستحصل على خطة IR متوافقة في أقل من ساعة.
📝
حزمة السياسات الأمنية
10 سياسات أمنية أساسية جاهزة للتخصيص لمنظمتك — الاستخدام المقبول، كلمات المرور، تصنيف البيانات، العمل عن بُعد، BYOD، والمزيد.
🔍
استبيان تقييم مخاطر الموردين
استبيان أمني من 50 سؤالاً يمكنك إرساله لمورديك. يغطي معالجة البيانات، ضوابط الوصول، تاريخ الحوادث، والامتثال.

النماذج وقوالب الحوكمة

💼
نموذج طلب مشروع / استثمار تقني
اقترح وبرر وخصص التمويل للمبادرات التكنولوجية الجديدة بهذا النموذج المنظم.
📱
نموذج اعتماد واقتناء البرمجيات
فحص ومنح الترخيص وتأمين البرمجيات أو المنصات السحابية الجديدة لضمان الامتثال التنظيمي والأمني للمنظمة.
🤝
قالب اتفاقية مستوى الخدمة مع الموردين
حدد المقاييس والمخرجات والشروط المتوقعة من مقاولي تقنية المعلومات ومزودي الخدمات الخارجيين.
🚨
نموذج تقرير حوادث أمن المعلومات
نموذج موحد لتسجيل والتحقيق وحل اختراقات الأمن السيبراني أو انقطاعات الأنظمة.
🖥️
نموذج توفير الأجهزة وتعيين الأصول
تتبع إصدار وإعادة أجهزة الكمبيوتر المحمولة والأجهزة المحمولة ومعدات المكتب مع سلسلة كاملة من الحيازة.
🗑️
نموذج التخلص من أصول تقنية المعلومات
تأكد من مسح الأجهزة المتقاعدة بشكل آمن والتخلص منها بشكل صحيح وفقاً لسياسات البيئة والخصوصية.

لم تجد ما تبحث عنه؟

يطور فريقنا قوالب أمنية مخصصة وسياسات وأطر حوكمة مصممة خصيصاً لقطاعك ومتطلبات الامتثال لديك.

معايير ISO وأطر الامتثال

كل ما تحتاجه لفهم وتنفيذ والحفاظ على الامتثال لأبرز أطر الأمن السيبراني وأمن المعلومات في العالم.

الأطر التي ننفذها

🏆

ISO 27001:2022

المعيار الدولي لأنظمة إدارة أمن المعلومات (ISMS). يغطي الأشخاص والعمليات والتكنولوجيا عبر 93 ضابط في 4 محاور.

  • الضوابط التنظيمية (37 ضابطاً)
  • الضوابط المتعلقة بالأشخاص (8 ضوابط)
  • الضوابط المادية (14 ضابطاً)
  • الضوابط التكنولوجية (34 ضابطاً)
  • تقييم المخاطر ومعالجتها
  • بيان التطبيق (SoA)
🔄

NIST CSF 2.0

إطار الأمن السيبراني من NIST — نهج قائم على المخاطر لإدارة مخاطر الأمن السيبراني منظم في 6 وظائف أساسية.

  • الحوكمة — وضع استراتيجية الأمن السيبراني
  • التحديد — فهم أصولك ومخاطرك
  • الحماية — تطبيق ضمانات الحماية
  • الكشف — تحديد أحداث الأمن السيبراني
  • الاستجابة — اتخاذ إجراءات تجاه الأحداث المكتشفة
  • الاسترداد — استعادة القدرات بعد الحوادث
🇪🇺

GDPR — المادة 32

اللائحة الأوروبية العامة لحماية البيانات — التدابير التقنية والتنظيمية لحماية البيانات الشخصية للمقيمين في الاتحاد الأوروبي.

  • إخفاء هوية البيانات وتشفيرها
  • ضمان السرية والنزاهة المستمرة
  • ضمان التوفر والمرونة
  • الاختبار والتقييم المنتظم
  • إشعار اختراق البيانات (قاعدة 72 ساعة)
  • تقييمات أثر حماية البيانات (DPIA)
🏥

قانون HIPAA الأمني

المعايير الفيدرالية الأمريكية لحماية المعلومات الصحية الإلكترونية المحمية (ePHI). مطلوب لمزودي الرعاية الصحية وشركائهم التجاريين.

  • الضمانات الإدارية (9 معايير)
  • الضمانات المادية (4 معايير)
  • الضمانات التقنية (5 معايير)
  • تحليل المخاطر وإدارتها
  • متطلبات تدريب القوى العاملة
  • اتفاقيات الشريك التجاري (BAA)
💳

PCI-DSS الإصدار 4.0

معيار أمان بيانات صناعة بطاقات الدفع — إلزامي لأي منظمة تخزن أو تعالج أو تنقل بيانات حاملي البطاقات.

  • 12 متطلباً عبر 6 أهداف
  • بناء وصيانة شبكات آمنة
  • حماية بيانات حاملي البطاقات
  • برنامج إدارة الثغرات
  • تدابير ضبط الوصول القوية
  • المراقبة والاختبار المنتظم
🌙

NCA السعودية وNESA الإماراتية

أطر الأمن السيبراني الإقليمية الإلزامية للمنظمات العاملة في المملكة العربية السعودية والإمارات العربية المتحدة.

  • NCA السعودية — ضوابط الأمن السيبراني الأساسية (ECC)
  • NESA الإماراتية — معايير ضمان المعلومات
  • حماية البنية التحتية الحيوية
  • الإبلاغ عن الحوادث للجهات التنظيمية
  • برنامج إدارة مخاطر الأمن السيبراني
  • متطلبات أمن الطرف الثالث

إعادة هندسة العمليات التجارية

تساعد منهجيتنا المنظمة في BPR المنظماتِ على إعادة تصميم العمليات التجارية الأساسية لتحقيق تحسينات جوهرية في الأداء والكفاءة والجودة.

1

الاستكشاف

توثيق وتعيين جميع العمليات الحالية. تحديد الهدر ونقاط الاختناق والخطوات المكررة.

2

التحليل

قياس أداء العمليات. القياس المعياري مقارنة بمعايير الصناعة. تحديد الأسباب الجذرية للقصور.

3

إعادة التصميم

تصميم العمليات المستقبلية. إلغاء الخطوات غير ذات القيمة. الأتمتة حيث أمكن.

4

التنفيذ

طرح العمليات المُعاد تصميمها. إدارة التغيير وتدريب الموظفين وتهيئة الأنظمة.

5

المراقبة

قياس النتائج مقارنة بالأهداف. دورة التحسين المستمر. مراجعات الأداء المنتظمة.

سياسة الخصوصية

آخر تحديث: يونيو 2025 — كيف تجمع CiraGuard معلوماتك وتستخدمها وتحميها.

1. من نحن

CiraGuard (ciraguard.com) شركة أمن سيبراني وخدمات تقنية مقرها عمّان، الأردن، تعمل بموجب itsdlc.com. نقدم خدمات vCISO، وتحليل جاهزية التأمين السيبراني (CIRA)، والأمن السيبراني المُدار، وخدمات تقنية الذكاء الاصطناعي للشركات في الأردن ومنطقة الشرق الأوسط وأفريقيا وعلى المستوى الدولي.

2. المعلومات التي نجمعها

نجمع المعلومات التي تقدمها مباشرة عند: إكمال نموذج اتصال أو طلب خدمة، طلب مورد أو قائمة تحقق مجانية، التعامل معنا لخدمات الأمن السيبراني أو التقنية، أو التواصل معنا عبر البريد الإلكتروني أو الهاتف. تشمل المعلومات التي نجمعها: الاسم، البريد الإلكتروني، رقم الهاتف، اسم الشركة، المسمى الوظيفي، وتفاصيل متطلباتك الأمنية والتقنية.

3. كيف نستخدم معلوماتك

  • للرد على استفسارات الخدمة وتقديم الموارد المطلوبة
  • لتقديم خدمات التقييم الأمني والاستشارات وخدمات التكنولوجيا
  • لإرسال تحديثات أمنية ذات صلة وإعلانات الخدمة (يمكنك إلغاء الاشتراك في أي وقت)
  • لتحسين موقعنا الإلكتروني وعروض خدماتنا
  • للامتثال لالتزاماتنا القانونية

لا نبيع معلوماتك الشخصية ولا نؤجرها ولا نشاركها مع أطراف ثالثة لأغراض تسويقية.

4. أمان البيانات

نطبق تدابير تقنية وتنظيمية مناسبة لحماية معلوماتك الشخصية، متسقة مع معايير الأمن التي نوصي بها لعملائنا. يشمل ذلك الاتصالات المشفرة (HTTPS)، وضوابط الوصول، ومعالجة البريد الإلكتروني الآمنة.

5. حقوقك (GDPR)

إذا كنت مقيماً في الاتحاد الأوروبي أو المنطقة الاقتصادية الأوروبية، فلديك الحقوق التالية بموجب اللائحة الأوروبية لحماية البيانات:

  • الحق في الوصول إلى بياناتك الشخصية
  • الحق في تصحيح البيانات غير الدقيقة
  • الحق في المحو ("الحق في النسيان")
  • الحق في تقييد المعالجة
  • الحق في نقل البيانات
  • الحق في الاعتراض على المعالجة

6. التغييرات على هذه السياسة

قد نحدّث سياسة الخصوصية هذه من وقت لآخر. ستُنشر التغييرات على هذه الصفحة مع تاريخ محدّث. يُعدّ الاستمرار في استخدام موقعنا بعد التغييرات قبولاً للسياسة المُراجَعة.

7. تواصل معنا

لأي أسئلة تتعلق بالخصوصية: info@ciraguard.com | عمّان، الأردن

شروط الخدمة

آخر تحديث: يونيو 2025 — يُرجى قراءة هذه الشروط بعناية قبل استخدام خدماتنا.

1. قبول الشروط

بالوصول إلى ciraguard.com أو التعامل مع CiraGuard للحصول على أي خدمة، فإنك توافق على الالتزام بشروط الخدمة هذه وسياسة الخصوصية الخاصة بنا.

2. الخدمات المقدمة

تقدم CiraGuard استشارات الأمن السيبراني، وتحليل جاهزية التأمين السيبراني (CIRA)، وخدمات الرئيس التنفيذي الافتراضي لأمن المعلومات (vCISO)، وخدمات الأمن المُدارة، وخدمات تطوير تقنية الذكاء الاصطناعي. تُحدَّد الشروط والمخرجات والرسوم المحددة لكل مشاركة في بيان عمل منفصل أو خطاب مشاركة موقّع من الطرفين.

3. إخلاء المسؤولية المهنية

CiraGuard شركة استشارات أمن سيبراني. تقييمات CIRA لدينا وتحليلات الفجوات وسجلات المخاطر وجميع المخرجات الأخرى هي تقييمات أمنية مهنية تمثل رأي متخصصين أمنيين مؤهلين وقت التقييم. وهي ليست:

  • ضماناً للأهلية التأمينية أو التغطية أو نتيجة القسط
  • مشورة قانونية أو رأي قانوني
  • ضماناً بتحديد جميع الثغرات الأمنية
  • ضماناً بأن اتباع توصياتنا سيمنع جميع الحوادث الأمنية

4. تحديد المسؤولية

إلى أقصى حد يسمح به القانون المعمول به، لا يتجاوز إجمالي مسؤولية CiraGuard تجاه أي عميل عن أي مطالبات ناشئة عن خدماتنا إجمالي الرسوم التي دفعها ذلك العميل عن المشاركة المحددة التي أدت إلى المطالبة خلال الـ12 شهراً السابقة.

5. الملكية الفكرية

جميع المحتويات على ciraguard.com — بما في ذلك النصوص والتصميم وأوصاف المنهجية والأطر والكود — هي ملكية فكرية لـCiraGuard / itsdlc.com وتخضع لحماية قانون حقوق التأليف والنشر. يُحظر النسخ أو الاستنساخ أو التوزيع غير المصرح به.

6. القانون الحاكم

تخضع هذه الشروط لقوانين المملكة الأردنية الهاشمية. تخضع أي نزاعات ناشئة عن هذه الشروط أو خدماتنا للاختصاص القضائي الحصري لمحاكم عمّان، الأردن.

7. تواصل معنا

للاستفسار عن هذه الشروط: info@ciraguard.com