In-region logging on Enterprise.Details
Secure Domains
Banking & finance

Stop phishing and malware before they reach the bank.

Financial institutions face targeted phishing and command-and-control traffic, and must prove to SAMA and other regulators that they detect it.

The challenge

What financial-services teams need

01

Earlier threat blocking

Phishing domains and malware infrastructure must be stopped before a connection opens.

02

Detection your SOC can see

DNS telemetry has to flow into the SIEM so analysts can investigate and report.

03

Third-party assurance

Supplier reviews require a documented residency position, a DPA and a sub-processor list.

Deployment

Typical deployment: Cloud Delivered with a Local Resolver at branches

Banks usually protect head office and branches through Local Resolver appliances and roaming clients, with the service and logging planes pinned to the Kingdom or the GCC.

  • Endpoint clients deployed through Intune, GPO or SCCM
  • Coexists with existing perimeter firewalls
  • Logs retained in your SIEM for 12 months or more
Capabilities

How DNS Armor™ meets those needs

Meets need 01

Protective resolution

20M+ active threat indicators applied at resolution time, plus AI detection of tunnelling and DGA activity.

Meets need 02

SIEM streaming over CEF

Firewall events, query logs and portal audit logs streamed to ArcSight, Microsoft Sentinel and Elastic, with templates for Splunk and QRadar.

Meets need 03

Documented supplier position

Data Processing Addendum, published sub-processor list and Gulf data centres including Riyadh, Dubai and Doha.

Meets need 02

Policies per branch and subsidiary

Multi-tier tenancy with segregated audit trails per entity.

Regulation

The frameworks your sector answers to.

Each is mapped control by control to the DNS layer, with the evidence behind it.

  • SAMA CSFSaudi financial sector
  • NCA ECCSaudi Arabia
  • PDPLUAE & Saudi Arabia
View the full control mapping
Verify us

Check our claims before the first call.

Alongside a demo, these are the published documents auditors and procurement teams ask for.

Sub-processors

Every third party that touches customer data, versioned and dated.

See the list

Show your regulator DNS-layer controls.

Walk through SAMA CSF and NCA ECC mapping with a solutions engineer.