Skip to main content

Issue 143: May 2025

Page 1

Issue 127143 ISSUE

July/August MAY 2522

LEADING WITH PROGRESS Progress Security Systems shares its blueprint for tackling stadium security

KNOWLEDGE

FUTURE-READY

NETWORK

Lead your team with actionable insights

Gain the strategic edge for what’s coming next

Tackle tomorrow’s challenges, together


Enter a new dimension of control

Barco CTRL Meet Barco CTRL, the innovative, scalable software platform for control rooms. A solution that simplifies workflows, deployment, and serviceability. With ‘Simplicity, Scalability and Security’ as the key principles, Barco CTRL allows users to securely connect to their sources, from any location. And interact with the content on any video wall or operator desk.

barco.com/ctrl


CONTACT US EDITORIAL Publisher Barry Bebbington +44 1708 229354 barry@pubint.co.uk

Editor Cora Lydon +44 7834 244613 cora.lydon@securitymiddleeastonline.com

ADVERTISING Worldwide

Mike Dingle +44 1752 267330 mike@securitymiddleeastonline.com

Ryan Bickerton +44 1752 265802 ryan@securitymiddleeastonline.com

Gareth Driscoll +44 1752 260603 gareth@securitymiddleeastonline.com

Rahul Vara +44 1752 604352 rahul@securitymiddleeastonline.com

Will Russell +44 7800 513300 will@securitymiddleeastonline.com

Digital Editor Britt Jones

britt@securitymiddleeastonline.com

PUBLISHED BY Publications International Ltd +44 1708 229354 166 Front Lane, Upminster, Essex, RM14 1LN, UK This publication may not be reproduced or transmitted in any form in whole or in part without the written consent of the publishers. ©Publications International Ltd. 2025 For subscriptions and advertising enquires, or for further information on the magazine visit our website at: securitymiddleeastmagazine.com

UP FRONT As you turn the pages of this latest edition of Security Middle East magazine, you’re not just reading about the current security landscape – you’re tapping into the very insights and innovations that will shape its future. This issue dives deep, from Progress Security Systems’ strategic blueprint for tackling complex stadium security challenges (page 12) to the critical need for authentication in safeguarding digital trust against deepfakes (page 34), and the undeniable precision of iris recognition in securing vital data centres (page 30). But the knowledge shared within these pages is just a prelude to the powerful connections and learning that awaits you at the Security Middle East Conference, taking place this May in the dynamic heart of Riyadh. Prepare to immerse yourself in a vital gathering of the region’s leading security minds, where you’ll gain actionable strategies and forge partnerships that will drive your success. Adding an exceptional dimension to this year’s conference is an exclusive pre-event opportunity: a focused 2-day masterclass hosted by the International Foundation for

Protection Officers (IFPO). This intensive practicum is designed to equip rising security leaders with the hands-on skills to strategically align security initiatives with core business objectives – a truly unique offering for our conference guests looking to elevate their leadership and impact. These features offer a glimpse into the depth of knowledge and forward-thinking solutions that will be at the forefront of the Security Middle East Conference. We look forward to welcoming you to Riyadh! Finally, look out for comments from some of our readers who have joined our newly-formed Ambassadors Team! They’ll share thoughts, opinions and experiences in forthcoming issues.

Cora Lydon Editor cora.lydon@securitymiddleeastonline.com smemag Security Middle East Magazine

SECURITY MIDDLE EAST | MAY 2025 | 3


ISSUE 143 MAY 2025

MONITOR 03 Up front

Foreword from the Editor

06 News Monitor

47

The latest regional and international security news

08 Market Monitor

A roundup of the latest security products and solutions

12 Cover story: Progress Security Systems

Progress Security Systems shares its blueprint for solving today’s toughest stadium security challenges through employee training, strategic partnerships and global expertise

FEATURES 17 Security Middle East Conference 2025

The Security Middle East Conference gives our audience an unparalleled opportunity to tap into the collective wisdom of the sector’s leading experts

17

27 Security Middle East Conference – What to look forward to

Daniel Norman, Regional Director, EMEA, Information Security Forum, will once again be taking the stage as the Chairperson for the Security Middle East Conference. He shares some of the highlights our audience can expect

30 The iris advantage

Mohammed Murad, Vice President, Global Sales and Business Development, IRIS ID, looks at the power of iris recognition and how it can secure data centres with biometric precision

34 Deepfakes and digital trust Leo Levit, Chairman, ONVIF Steering Committee, explores why we need authentication technology in order to secure video evidence

38 The AI security revolution

Issam Kabbani, Principal, Aerospace, Defense & Security Practice, and Karim Daghestani, Consultant, Kearney Middle East & Africa explore a world where threats can be seen before they strike thanks to AI technology

53 Beyond tomorrow’s tech

For anyone who still sees Artificial Intelligence as a technology of the future, here is the reality. It is already controlling the frontlines of security, according to Andreas Hassellöf, CEO, Ombori

CYBERSECURITY 57 The untapped power of cyber deterrence in risk management Is it time to turbocharge your cybersecurity? Will Candrick, Senior Director Analyst at Gartner, looks at what could be holding back the adoption of cyber deterrence strategies

59 The ransomware riddle

As 2024 saw more ransomware attacks but fewer ransom payments, Ray Kafity, Vice President – Middle East Turkey and Africa (META) at Halcyon, asks, what does it mean?

41 GenAI: Hype or help?

Is GenAI the breakthrough Endpoint Security needed or just another buzzword? asks Apu Pavithran, CEO and Founder, Hexnode

47 The agentic frontier

Karim Azar, Regional Vice President, Middle East & Turkey at Cloudera, explores navigating privacy in an AI-driven security world

4 | SECURITY MIDDLE EAST | MAY 2025

34


THIS ISSUE’S PARTNERS & CONTRIBUTORS Daniel Norman

Regional Director, EMEA, Information Security Forum (ISF)

Daniel Norman’s role at the ISF is to help organisations manage their current and emerging cyber risks.

53

Leo Levit

Chair, ONVIF Steering Committee

Leo Levit’s 20+ year career has seen him contribute to technology adoption in the telecommunication, security and video analytics fields.

Will Candrick

Senior Director Analyst, Gartner

Will Candrick brings extensive experience researching cybersecurity management challenges, and regularly advises CISOs and their teams on maturing security and risk practices.

62

Sponsors

62 Cloak and dagger

Renée Burton, Vice President of Threat Intel at Infoblox, looks closely at how malicious Traffic Distribution Systems are powering cybercrime

INDUSTRY MONITOR 66 Case study: IDIS

Looking to expand and modernise its video surveillance capabilities, ENTP, part of a state-owned oil company in Algeria, turned to IDIS

68 Interview: executive protection

Meshal Aljohani, CPP, PSP, PCI, Security Operations Specialist talks with Kevin Palacios, ASIS International Executive Protection Community, Chair; HELPS Latam, CEO; IFPO,Latin America Regional Director

70 Diary

PARTNERS

Diary dates for forthcoming security exhibitions, conferences and events

PROMOTIONAL FEATURES 44 Genetec 50 Al Thuraya SECURITY MIDDLE EAST | MAY 2025 | 5


MONITOR NEWS

LOOKING AHEAD TO GISEC GLOBAL 2025 GISEC Global 2025, which will place in Dubai, has promised to be a pivotal event in the cybersecurity landscape, offering initiatives like Women in Cyber Security Middle East. Women in Cyber Security Middle East promotes women’s participation and leadership in cybersecurity across the region by hosting panels and discussions focused on women in cybersecurity, providing a platform for female leaders to share their experiences and insights. The UAE has launched several initiatives to support women’s reintegration into the workforce, such as the Emirates NBD’s ‘Women’s Returnship’ programme that offers mentoring, learning and flexible working arrangements to help women transition back to work after career breaks. Heide Young, Co-Founder of Women in Cybersecurity Middle East, said: “We need business to engage with motherhood. You don’t check these policies until you need them. When it affects you, you (may have to) request a change to be made — maternity leave is really important.” Moreover, she added: “When you go away and come back, are there policies for re-entering your position? We need return-to-work programmes, and that is something that is not being done.”

The NCA signs MoU with EXPRO to enhance cybersecurity operational programmes The National Cybersecurity Authority (NCA) has signed a memorandum of understanding (MoU) with the Government Expenditure and Projects Efficiency Authority (EXPRO) to enhance collaboration between the two organisations. This agreement hopes to improve the efficiency of government spending in the cybersecurity sector and to advance the quality of government projects and operational programmes in this area. The MoU focuses on strengthening bilateral cooperation in several key areas, particularly through joint coordination on framework agreements with providers of cybersecurity services, solutions, or products. It will also allow for the listing of various services and products in the Etimad e-market, which will in turn manage the needs of government agencies to support their cybersecurity measures.

Study finds that nearly half of UAE Syria and Saudi Arabia talk physical SMEs experience cyberattacks security A Syrian security delegation recently visited Saudi Arabia to learn from the Kingdom’s advanced security practices and benefit from its expertise. In a statement, the Saudi Ministry of Interior said: “As part of Saudi Arabia’s support for the Syrian government in achieving security and stability in Syria, the Ministry of Interior hosted a security delegation from our Syrian brothers from April 14 to April 16, 2025. The aim was to learn about the experiences of the Kingdom’s security agencies and to benefit from their expertise.” The visit also saw talks between Saudi Interior Minister Prince Abdulaziz bin Saud and Deputy Head of Syrian Intelligence Muwaffaq Doukhi, who was accompanied by Khaled Eid, the Director of the Syrian Anti-Narcotics Department.

6 | SECURITY MIDDLE EAST | MAY 2025

A recent report by Mastercard found a troubling trend among small and medium-sized enterprises (SMEs) in the UAE, with nearly half (47%) having already faced a cyberattack. The research shows that many SMEs have suffered significant repercussions from these attacks, including the loss of customer trust and, in some cases, financial ruin. “SMEs are the backbone of the economy, yet their size often makes them more vulnerable to cyberattacks,” said Gina Petersen-Skyrme, Senior Vice President and Country Manager for UAE and Oman at Mastercard. “The impact can be debilitating to productivity, reputation and financial health. By partnering with trusted cybersecurity experts and implementing effective solutions like those offered by Mastercard, SMEs can concentrate on what they do best – running their business.” The Mastercard study further revealed that 77 per cent of UAE SMEs that encountered a cyber incident had to invest substantial time in rebuilding trust with customers and partners.

47%

of SMEs in the UAE have already faced a cyberattack

77%

of UAE SMEs that encountered a cyber incident had to invest substantial time in rebuilding trust with customers and partners


MONITOR NEWS

IN BRIEF BAHRAIN Bahrain has launched the Resecurity Identity Protection programme to safeguard citizens’ personal information across digital platforms.

UAE The UAE Cyber Security Council and Google Cloud has created an initiative to strengthen the UAE cybersecurity framework and enhance its global leadership to prevent an estimated USD $6.8 billion in cybercrime losses by the year 2030.

UAE Cybersecurity Council issues warning over rising QR code scams The Cybersecurity Council of the UAE has raised an alarm regarding the growing prevalence of scams involving QR codes (Quick Response codes) in public spaces. In a recent advisory, the Council found that fraudsters and cybercriminals are exploiting these codes to siphon off personal and financial information, directing unsuspecting users to fake websites disguised as legitimate services. To protect themselves, the Council has urged the public to exercise caution when encountering QR code stickers in public areas and advised against scanning any QR codes without first verifying their authenticity. Red flags to watch for include multiple layers of stickers in the same vicinity or being redirected to suspicious websites that seek personal information or contain spelling errors.

UAE to host first-ever Cybersecurity Awards and Recognition Programme The UAE Government Cybersecurity Council has announced the launch of the nation’s first-ever Cybersecurity Awards & Recognition Programme. The event is set to establish new standards for recognising achievements in digital security and will provide a competitive platform for organisations to showcase their contributions to cybersecurity advancements. Dr Mohammed Al-Kuwaiti, Head of UAE Cybersecurity, discussed the programme’s role in nurturing talent and the next generation of cybersecurity experts. He said: “The Cybersecurity Excellence Awards represent a continuation of our ongoing efforts to nurture talent and foster the development of innovative digital solutions to combat cyber threats. By recognising excellence at both individual and institutional levels, we’re not just celebrating achievements – we’re also inspiring the next generation of cybersecurity experts to redefine the boundaries of digital security.” The awards ceremony is scheduled for June 18, 2025, at Space42 Arena in Abu Dhabi.

SAUDI ARABIA The Saudi Foreign Ministry praised the measures Jordan has taken to stop plots to undermine its security, and in turn expressed its support for the steps the Jordanian government will take to consolidate its security.

QATAR Iraqi Prime Minister Mohammed Shia al-Sudani met in Qatar with Syrian President Ahmed al-Sharaa, the first encounter between the two leaders as they discussed the future of physical security, safety, infrastructure and the public sector.

UAE The UAE government successfully prevented attacks on 634 government and private entities, preventing what would be large-scale UAE cyberattack or data leak affecting its critical sectors.

KUWAIT Kuwait’s Vision 2035 saw The Ministry of Interior initiating a nationwide biometric fingerprinting project, registering over 3 million citizens and expatriates.

SECURITY MIDDLE EAST | MAY 2025 | 7


MONITOR MARKET

BARRICADE SYSTEMS LAUNCH GLOBALLY TO EMPOWER SECURITY INSTALLERS Barricade Systems has officially launched its installer-first security platform worldwide, as of April. The initiative addresses three major challenges currently facing security installers: The first challenge is the pressing need for installers to reclaim brand visibility and control. In response, Barricade offers a complimentary white-label mobile app for all partners, featuring their own logos and names. The second challenge is the expectation of end-users for a single integrated solution that encompasses video surveillance, access control, intrusion detection, fire alarms and smart home features, regardless of device manufacturer. Barricade addresses this demand by already supporting leading brands such as Hikvision, Dahua, CROW, Provision ISR, Yale Doorman and Philips Hue. Finally, Barricade consolidates what has traditionally required multiple disconnected systems. Instead of managing various tools for CRM, billing, customer support, subscription management and analytics, installers can now access everything through one purpose-built platform designed specifically for the security industry, streamlining operations both in the office and the field. barricadesystems.com

SandboxAQ’s new platform helps combat AI threats SandboxAQ has made available its new platform AQtive Guard, which is designed to manage and secure nonhuman identities (NHIs) as well as other cryptographic assets that can be used by AI agents. Its release is well timed, after malevolent AI agents are surging across enterprise environments and contributing to a new cyber-attack surface. The new platform’s Discover module supports organisations to keep an accurate inventory of NHIs and other assets, such as keys, certificates, libraries and algorithms, and to manage and control them effectively, aligned with the necessary compliance and meeting regulatory mandates. The tool automates remediation workflows, enforcing protection policies for organisations, such as certificate renewal and credential rotation.

8 | SECURITY MIDDLE EAST | MAY 2025

In addition, SandboxAQ has announced integration with the CrowdStrike Falcon cybersecurity platform and interoperability with Palo Alto Networks. Marc Manzano, General Manager Cybersecurity, SandboxAQ, said: “As organisations accelerate AI adoption and the use of agents and machineto-machine communication across all business domains and functions, maintaining a real-time, accurate inventory of NHIs and cryptographic assets is an essential cybersecurity practice. “Being able to automatically remediate vulnerabilities and policy violations identified is crucial to decrease time to mitigation and prevent potential breaches within the first day of use of our software.” sandboxaq.com

Qlik enhances support for independent software vendors

Qlik has announced the launch of Qlik for ISVs, a dedicated team and set of capabilities specifically designed to support independent software vendors (ISVs). This new offering is built on Qlik’s cloud platform, aimed at providing ISVs with the tools necessary to enhance their data integration, quality and governance strategies while embedding AI and analytics directly into their applications. With artificial intelligence at its core, Qlik for ISVs is set to enable software vendors to deliver real-time, actionable insights that facilitate smarter decisionmaking and catalyse business growth. The initiative responds to the increasing demand for data-driven applications and Data-as-a-Service, empowering ISVs to provide high-quality data, predictive insights, conversational AI and enhanced decision-making capabilities within their solutions. David Zember, Senior Vice President of Worldwide Channels and Alliances at Qlik, said: “Our goal is to make it easier for ISVs to build exceptional applications on Qlik’s end-to-end platform. With the latest enhancements to our cloud offering, we’re enabling software vendors to move faster, reduce complexity, and deliver real-time, AI-powered insights that their customers can rely on. Qlik for ISVs is about providing partners with the foundation they need to innovate and differentiate at scale.” qlik.com


N

Betafence TriMax : ®

The Ultimate HCIS Compliant High-Security Delay Fence Introducing our cutting‑edge high‑security fencing solution, that surpasses HCIS compliance requirements.

PATENTED DESIGN

TriMax® delivers superior protection and durability

PATENTED S Y S T E M

Extreme Strength & Wind Resistance

Built to withstand winds up to 200 km/h, ensuring reliability in harsh conditions.

Unrivaled Delay Performance

Resists intrusion for over 18 minutes against mediumaggressive tools and over 7 minutes against highly aggressive tools—surpassing HCIS compliance

Best-in-Class Visibility

With 39.63% visibility, it allows for optimal surveillance and fewer cameras, making it the smart choice for high-security sites.

Betafence’s smart engineering represents a leap forward in delay fencing, ensuring peace of mind for those who prioritise safety. With over 140 years experience in the security industry, Betafence is a global market leader in perimeter security solutions. FOR MORE INFORMATION VISIT

trimax.discover.betafence.com


MONITOR MARKET

ICT ANNOUNCES THE LAUNCH OF ITS NEW TSL ACCESS READER SERIES Integrated Control Technology (ICT®) has announced the launch of its new TSL access reader series, designed to enhance modern access control systems. The company unveiled the product in March this year in Guildford, UK. It aims to provide property managers, security professionals and building operators with a stylish and efficient solution for building access. The TSL series features a sleek, compact design available in three sizes and two finishes, with optional keypads to suit various property aesthetics. Not only does it ensure hassle-free installation through appbased configuration, but it also offers future-proof capabilities with live over-the-network firmware updates. With a wide range of credential support including Bluetooth® and NFC, the readers are equipped with advanced encryption hardware to ensure top security. ict.co

Rackspace Technology launches OpenStack Flex on-demand cloud services

HID launches new integration platform for enhanced security HID has revealed the HID Integration Service at ISC West, designed to integrate physical security, cybersecurity and digital identity management. This integrated platform-as-aservice (IPaaS) aims to help application developers and solution integrators streamline the incorporation of essential security solutions, significantly reducing maintenance costs and implementation time. Martin Ladstaetter, Senior Vice President at HID, said: “The HID Integration

10 | SECURITY MIDDLE EAST | MAY 2025

Service addresses the complexities and costs associated with traditional security integrations, enabling faster and more resilient security solutions.” The platform allows organisations to: • Reduce operational complexities and maintenance costs • Accelerate the delivery of new security capabilities • Simplify user experiences with streamlined touchpoints. hidglobal.com

Rackspace Technology has launched Rackspace OpenStack Flex, an Enterpriseready, on-demand, shared cloud service providing secure and open Infrastructureas-a-Service (IaaS). The service includes 24/7 expert support and fully monitored and maintained infrastructure to facilitate adoption and ongoing applications operations, helping to bridge the gap between dedicated and multi-tenant cloud solutions. “With our unified OpenStack-powered cloud platform, customers stay agile, compliant, and equipped to evolve in a fast-paced world,” said Lance Weaver, Chief Product and Technology Officer of Rackspace Private Cloud. “Our team of experts is committed to delivering our Fanatical Support every step of the way, ensuring customers have the guidance and confidence in their technology stack.” From industry-leading security to enterprise-level support, Rackspace OpenStack Flex delivers an open-source ecosystem, security and compliance, scalability and flexibility, cost efficiency and enterprise-level support. rackspace.com/en-gb


Pushing the Boundaries of Technology

Leading the way in switches and network solutions for the telecommunication industry since 1987 From secure connectivity to seamless performance, our switches and networking solutions are built to keep you ahead in an ever-evolving digital landscape. Trusted by clients and partners worldwide, we deliver the value and reliability you need. For more information, please contact one of our Allied Telesis Account Managers today. Tel: +971 4 454 8740

© 2025 Allied Telesis, Inc. All rights reserved.


COVER STORY | PROGRESS SECURITY SYSTEMS

Progress Security Systems shares its blueprint for solving today’s toughest stadium security challenges through employee training, strategic partnerships and global expertise Stadiums are modern marvels — dynamic spaces where passion, culture and commerce converge. From global tournaments to local leagues, these venues host millions annually, driving economic growth and community pride. Yet, their scale and visibility make them prime targets for crime, terrorism and operational failures. Security teams worldwide grapple with a critical

12 | SECURITY MIDDLE EAST | MAY 2025

challenge: How can we protect lives, assets and reputations in an era of escalating risks? Progress Security Systems, a leader in integrated security solutions, has pioneered a framework to address these challenges. Its approach — rooted in employee expertise, global partnerships and regional adaptability — offers a roadmap for resilience. Here we explore

the high-stakes arena of stadium security, the hurdles facing these venues today and strategies to overcome them.

The perfect storm: modern stadium security challenges Crowd Dynamics: Chaos in Motion Stadiums thrive on crowds, but dense gatherings pose inherent risks. A single


COVER STORY | PROGRESS SECURITY SYSTEMS

stampede, medical emergency, or fan altercation can spiral into disaster. Recent incidents, such as a 2023 pitch invasion during a Saudi Pro League match, highlight the fragility of crowd control. Terrorism and Targeted Attacks High-profile venues are symbolic targets. From drone incursions to explosive devices, stadiums must counter evolving threats. The 2017 Manchester Arena bombing underscores the catastrophic consequences of security lapses. Cybersecurity Vulnerabilities Smart stadiums rely on interconnected systems — WiFi, IoT-enabled turnstiles and mobile ticketing — that hackers can exploit. A compromised network could disable access controls or leak sensitive data mid-event. Operational Risks: From Logistics to Liability Poor emergency signage, untrained staff, or equipment failures can escalate minor issues into crises.

Employee training and expertise: mastering security system integration

Progress Security Systems prioritises technical mastery to ensure seamless deployment and maintenance of advanced security solutions: • Technical Certification Programmes: Staff undergo rigorous training in installing, configuring and maintaining advanced systems such as AI-powered surveillance, biometric access controls and drone detection tools. Certifications focus on vendor-specific technologies (e.g., thermal imaging systems, automated barrier controls, AI analytics platforms, encrypted communication systems) to ensure precision in integration. • Cybersecurity Workshops: Teams are trained to harden integrated systems against cyber threats, including penetration testing, network segmentation and compliance with global data protection standards. Progress emphasises a ‘defence-indepth’ approach, securing every layer of interconnected infrastructure. • Cultural and Regulatory Adaptability: Employees learn to align security solutions with regional regulations (e.g., GCC data privacy laws) and client-specific needs, ensuring systems respect local norms while delivering optimal performance.

“Security teams worldwide grapple with a critical challenge: How can we protect lives, assets and reputations in an era of escalating risks?” Global partnerships: driving innovation in security technology Progress Security Systems collaborates with industry leaders to stay at the forefront of security innovation: Technology Alliances: Partnerships with global developers ensure access to advanced tools like AI-driven crowd analytics, anti-drone systems and biometric scanners. These alliances enable Progress to integrate the latest advancements into client solutions without compromising scalability. Local Regulatory Coordination: Progress works closely with regional authorities to ensure compliance with local standards, such as UAE’s cybersecurity mandates, Saudi Arabia’s IoT regulations or Qatar’s critical infrastructure protection mandates. This collaboration streamlines approvals and enhances system reliability.

Regional adaptability: tailoring security to local needs

Progress Security Systems recognises that security solutions must align with regional risks, cultural norms and regulatory landscapes: Localised Compliance: Systems are customised to meet regional mandates, such as heat-resistant infrastructure in Gulf states or gender-segregated crowd management protocols in Middle Eastern venues. Cultural Nuances: Security measures are designed to respect local customs. For example, Middle Eastern stadiums integrate privacy-conscious surveillance systems to align with cultural sensitivities. Threat-Specific Preparedness: Regional operations centres monitor locationspecific risks, such as extreme weather in the Gulf or political unrest in volatile areas. Drills are tailored to address these scenarios, ensuring readiness for events like sandstorms or mass protests. 24/7 Regional Support Hubs: Dedicated teams in key markets (e.g., UAE, Saudi

Arabia, Qatar) provide real-time threat intelligence and rapid response, ensuring systems adapt to evolving conditions.

The future of stadium security: trends in physical systems

As technology evolves, so too does stadium security. Key trends Progress Security Systems anticipate include: 1. Advanced Biometric Access Control: Facial recognition and palm-scanning technologies streamline entry while preventing fraud, ensuring fans spend less time waiting and more time enjoying events. 2. AI-Driven Perimeter Security: Autonomous robots and drones provide real-time surveillance, detecting intrusions before they escalate. 3. Integrated Crowd Management Systems: Predictive analytics anticipate congestion points, dynamically adjusting routes to prevent overcrowding and improve safety. 4. Resilient Physical Barriers: Reinforced materials and automated bollards protect against vehicle-borne threats, creating safer environments for all attendees. These innovations not only enhance security but also elevate the overall fan experience, fostering trust and loyalty among visitors.

A call for proactive resilience

Stadium security is no longer just about reacting to threats — it’s about anticipating them. Progress Security Systems’ blueprint — grounded in employee expertise, global partnerships and regional adaptability — offers a path forward. As venues grow in size and ambition, their success hinges on embracing solutions that protect both people and the spirit of the game. “Safety isn’t a cost — it’s an investment in trust,” says Joseph Faraj, Progress’ CEO. “When fans feel secure, they return. And when they return, communities thrive. So, ask yourself: Is your venue ready to meet tomorrow’s security challenges?” www.progress-security.com

SECURITY MIDDLE EAST | MAY 2025 | 13


SECURITY’S SHARPEST MINDS, UNITED The Security Middle East Conference gives our audience an unparalleled opportunity to tap into the collective wisdom for the sector’s leading experts In a rapidly evolving security landscape, access to the right expertise is no longer a luxury – it’s a necessity. The Security Middle East Conference stands as the definitive platform for professionals seeking to elevate their understanding and drive tangible impact within their organisations. This year, we’ve curated a powerful assembly of leaders, innovators and practitioners, spanning the full spectrum of security disciplines and each a driving force in their respective fields. From the intricacies of cybersecurity and the evolving landscape of physical threats to the strategic imperatives of risk management and the transformative power of AI, our Conference agenda delves into the vital topics that are not just relevant, but essential for progress.

Advancing the sector

From practical, implementable solutions to visionary insights into the future of security, the collective wisdom present at the conference is designed to provide our audience with unparalleled value,

equipping them with the tools and perspectives needed to not only keep pace but to lead the way forward. Progress in the security sector demands more than just awareness; it requires deep understanding, informed strategies, and the ability to anticipate future challenges. The Security Middle East Conference has been meticulously crafted to deliver precisely that, bringing together a distinguished faculty of experts whose collective knowledge represents the cutting edge of our industry. With this insight, our audience will be able to contribute to the continued advancement and resilience of the security landscape in the Middle East and beyond. Join us as we shine a spotlight on the diverse knowledge and profound insights that will empower our audience to navigate today’s complexities and build a more secure tomorrow.

Empowering through knowledge

Our opening address will be delivered by Walid Abukhaled, Chairman at EMIR Intelligence Saudi Arabia. Walid is talking about the future of security amidst technology, innovation and meeting the ambitions of Vision 2030 – a huge topic to get the discussions started for the day, but one that encompasses the overall themes you can expect to hear more about. Following on from Walid, will be our first panel discussion of the day – which will focus on security as a profit centre and how to unlock ROI through safety and security. Debating how to transform security and safety functions from cost centres into strategic assets, we have a number of industry heavyweights. Dr Ahmad Alghamdi, Vice President HSE, International Maritime Industries; Nouf Aljalaud, Safety & Security Senior Manager, King Salman Park Foundation;

SECURITY MIDDLE EAST | MAY 2025 | 17


Autonomous Perimeter Protection Software Geospatial AI-Boosted Video Analytics on new and existing cameras Virtually Eliminate Nuisance Alarms in Harsh Conditions Demonstratable ROI Mission Critical Mobile Platforms Truck Mounted System

HIGHLIGHTS RDAPSS & Truck-Mounted Integrated Sensor/Comms Platforms Integrated Autonomous AI Analytics PureActiv® AlertView Common Operating Picture Tuned to Customer-Specific Concept of Operations Comprehensive Coverage: Land, Marine, Air with Counter Drone Solutions Patented Technology with 20+ Years of Operational Success FOR MORE INFORMATION www.puretechsystems.com

Missionready RDAPSS


Eng. Thamer Anwar Noori, Director of Industrial Security & Safety, Royal Commission for Jubail & Yanbu; and Brett Taylor, Security Strategy & Design Senior Director, Diriyah Company will be taking to the stage. Our experts will be joined by Luke Bencie, Managing Director, Security Management International, as our moderator responsible for the smooth running of discussions.

Dedicated discussions

From aligning security with core corporate objectives, to the protection of potentially thousands of people, not to mention assets and reputations. Our second panel discussion will be unpacking what it takes to master the art of global protection, debating key strategies, the cultural nuances that need to be considered, the technology that offers a helping hand and the collaborative frameworks supporting

the protection of attendees, infrastructure and national interests. This panel is particularly timely given Saudi Arabia’s hosting of the World Expo, Asian Winter Games and FIFA World Cup. Sharing their considerable expertise on stage we have Ahmed Alshammari, Security Operations Expert; Regina Dagueva, Safety and Security Operations, Committee of Qatar; and Mohamed Saad, Country Director KSA, Genetec. Our experts will be on stage with our moderator for this panel – Craig Ross, Associate Director Safety & Security, Diriyah Company.

Lively debates

Following our second networking session of the day we will have our first-ever live podcast, with this exciting new format designed to capture our audience’s attention. Sameeha Assayari, Senior Investigations Manager, Red Sea Global

will be joined by Dan Norman, Regional Director, EMEA, Information Security Forum, to discuss how trust can be built through investigations and how security can be positioned as a pillar in corporate and community. When incidents occur, the way they are investigated profoundly impacts trust. Security teams, through thorough and impartial inquiries, have the power to demonstrate a commitment to justice and safety. This proactive approach, focused on understanding root causes and implementing preventive measures, positions security not just as a reactive force, but as a crucial element in building a culture of trust and assurance within both corporate structures and the communities they operate in. Our podcast will also be broadcast live from the stage widening its impact on the security sector.

OUR SPONSORS & SUPPORTERS GOLD SPONSOR

INNOVATION SPONSORS

SILVER SPONSORS

BRONZE SPONSORS

EXHIBITORS

SUPPORTERS

SECURITY MIDDLE EAST | MAY 2025 | 19


Shoring up security

Next our audience will have a keynote address from Dr Khalid Koser, Executive Director, Global Community Engagement and Resilience Fund (GCERF). Dr Koser will be exploring the value of investing in national security and strengthening prevention to safeguard global and domestic interests. Strengthening national security through dedicated investment and a focus on prevention yields invaluable long-term returns. It’s about more than immediate protection; it’s about cultivating resilience, fostering stability, and ensuring the enduring safety and prosperity of both our nation and the interconnected world we inhabit. Dr Koser’s valuable insights will inform our audience about the cornerstones of safeguarding for a more stable world for everyone. The session will focus on actionable strategies and best practices, using examples from GCERF’s work in various contexts to strengthen national security while proactively preventing threats.

Cyber chat

Our final discussion panel is focused on the fast-paced nature of cybersecurity and is a must-attend for anyone in today’s current business climate. Protecting your digital assets: third party risk management strategies for the Middle East’s evolving threats will look at key challenges, regulatory demands and industry-specific risks, offering strategies for risk assessment, due diligence, security controls and incident response. The panel aims to deliver powerful knowledge into building a resilient supply chain and safeguarding sensitive data

20 | SECURITY MIDDLE EAST | MAY 2025

in an evolving threat landscape. Our panellists are: Betania Allo, Cyber Policy & Law Expert and Ex-UN & NEOM; Dr Nasser Alamri, Cybersecurity Executive Director, Institute of Public Administration; and Dr Faisal Alfouzan, Director of Cybersecurity. They will be joined by Daniel Norman, Regional Director, EMEA, Information Security Forum as our moderator.

Tackling the biggest issues

Before we break for lunch and more networking the Security Middle East Conference will host our second live podcast of the day with our guest Alex Bomberg, Chairman, Intelligent Protection International who will be talking to podcast host, Daniel Norman. The duo will be tackling the topic of the growing risks associated with AI and social engineering. Globally, AI is amplifying the scale and sophistication of manipulative tactics, making it easier for malicious actors to craft believable scams and exploit human vulnerabilities at an unprecedented level. This potent combination presents a growing risk to individuals, organisations and societies worldwide, making this a must-see for anyone looking to gain the edge.

Exclusive opportunity

For a small group of Security Middle East Conference attendees we also have an exceptional opportunity to join a two-day masterclass, hosted by IFPO, taking place on the two days prior to the conference.

Rising security leaders are invited to join the exclusive 2-day ‘Security Strategy Practicum: A Balanced Scorecard Approach’ led by Master Security Instructor Nadeem Iqbal. Participants will receive handson learning on how to align security initiatives with core business strategies, measure your security programme’s value and drive organisational success. Sixteen hours of studying will include active participation in individual and group assignments and multiple-choice questions to evaluate each section. If you’re looking to bridge the gap between security operations and business goals then you can’t afford to miss the IFPO-hosted Practicum as part of the build-up to the Security Middle East Conference. Interested parties should email ryan@securitymiddleeastonline. com for more details. Don’t miss your chance to be at the forefront of security innovation and leadership. The Security Middle East Conference offers an unparalleled opportunity to connect with the region’s top experts, gain actionable knowledge to elevate your role, and explore the cutting-edge technologies shaping the future of our industry. Join us to forge vital partnerships, future-proof your strategies, and become a driving force in creating a more secure Middle East. Register to attend now and be part of this essential gathering. securitymiddleeastconference.com


OUR SPEAKERS Walid Abukhaled

reflecting her commitment to fostering a culture of excellence, purpose and inclusivity.

Luke Bencie

Eng. Walid A. Abukhaled is a distinguished global executive with nearly three decades of leadership experience, including as the former CEO of Saudi Arabian Military Industries (SAMI), where he propelled the company into the top 75 global defence firms within five years. A recognised thought leader and award-winning CEO, Eng. Abukhaled brings invaluable insights from the highest levels of global defence and security.

Eng. Thamer Anwar Noori

Luke Bencie has been a consultant to the US Department of State, US Department of Defense, Fortune 500 companies, as well as foreign governments. He has worked in over 100 countries and has trained thousands of police, intelligence and military officers around the world in the fields of counterterrorism, counterintelligence, crisis management and strategic leadership.

Chairman, EMIR Intelligence Saudi Arabia

Dr Ahmad Alghamdi

Vice President HSE, International Maritime Industries Dr Alghamdi has over 30 years’ experience in the energy and environmental sectors and recently obtained his DBA in Leadership Influences on Enhancing ESG practices at Westford University College.

Nouf Aljalaud

Safety & Security Senior Manager, King Salman Park Foundation Nouf Aljalaud is a dynamic leader with over 12 years of experience in the convergence of technology and security. In her role at King Salman Park Foundation she is dedicated to crafting safety and security strategies that ensure an unparalleled experience at the world’s largest urban park. Her professional journey encompasses pivotal roles in corporate aviation, ground services, border management and security operations,

Director of Industrial Security & Safety, Royal Commission for Jubail & Yanbu Thamer Noori brings over 20 years of experience in the security field, with the last three spent in his role at the Royal Commission for Jubail and Yanbu. Instrumental in modernising the security approach in Yanbu Industrial City, he empowered personnel with advanced technology, leading to significant improvements and a recent award for Best Emergency and Public Service Centre in EMEA in 2024. His vision is focused on continuous advancement and overcoming the challenges within the security sector.

Brett Taylor

Security Strategy & Design Senior Director, Diriyah Company Brett Taylor is a Chartered Security Professional with extensive international experience specialising in urban environment security. He provides strategic leadership on complex, high-profile security master planning projects, guiding clients from initial strategy to technical solution review. Brett excels in collaborating with design teams to seamlessly integrate effective and unobtrusive security measures, underpinned by in-depth threat and risk assessments and the development of resilient, sustainable mitigation strategies.

Managing Director, Security Management International

Ahmed Alshammari

Security Operations Expert Ahmed Alshammari is an accomplished and energetic Security Leader who has had an exciting impact on some of the biggest companies/projects in Saudi Arabia, including: SAFE, KAFD, and NEOM. His areas of expertise include Security Operations, Command and Control Centre and Security Construction. Ahmed is known as a tactical team builder with a strong background in training and team development.

Regina Dagueva

Safety and Security Operations, Committee of Qatar Regina Dagueva is a seasoned security expert with 17 years of experience specialising in major event security and programme management for global events like the FIFA World Cup and the Olympic Games. With a strong track record in security planning and team leadership, she has led large-scale teams in implementing strategic methodologies and developing comprehensive security frameworks.

SECURITY MIDDLE EAST | MAY 2025 | 21


Smart Cities Demand Smart Security. G-SIM Delivers It. One platform. All your systems. Infinite control. From AI-enhanced surveillance to seamless integration across city-wide systems, G-SIM is the unified platform designed to protect the future. G-SIM, the Security Information Management System by Geutebrück, integrates video surveillance, alarm management, and third-party systems into a single, intelligent platform. Ideal for smart cities, critical infrastructure, and complex environments. G-SIM scales globally while giving you total local control.

In addition to site plans and georeferenced maps, G-SIM offers highly customizable user interfaces for operators

Reliability Built-In

Built for Integration

Failover concepts for servers and camera channels Outstanding uptime and instant switchover in case of failure

Scalable for Smart Cities • •

Geo-referenced maps for live location-based surveillance Centralized control of multi-site systems

www.geutebrueck.com

Connects seamlessly with fire alarms, access control, logistics, intercoms, and more

Intelligent Alarm Management • • •

Real-time alerts, automated workflows. Prioritize, cluster, and delegate alarms automatically Interactive site plans and instant video playback


Mohamad Saad

Country Director KSA, Genetec Mohamad Saad is a seasoned business leader with over 15 years of experience in the IT and security industry. He currently serves as the Country Manager for Genetec, overseeing operations and business development in the Kingdom of Saudi Arabia and Bahrain. As Country Manager, Mohamad is now responsible for driving Genetec’s overall strategy within Saudi Arabia and Bahrain, focusing on revenue growth, market positioning and operational excellence. His leadership has been instrumental in strengthening relationships with local stakeholders, government entities and industry partners.

Craig Ross

Associate Director Safety & Security, Diriyah Company Craig Ross is the Associate Director of Safety and Security for the Diriyah Company in Riyadh, Saudi Arabia. He holds a Master’s degree in Terrorism and Politics and has more than 25 years’ experience in the built environment, critical infrastructure and security consultancy. He has also diversified experience in security projects and risk assessment.

Sameeha Assayari

Senior Investigations Manager, Red Sea Global Sameeha Yislam Assayari is a highly accomplished investigations expert with over 15 years of experience supporting Saudi Arabia’s leading giga projects, research institutions and government ministries, including Red Sea Global and KAUST. A pioneering Saudi woman in her field, she currently serves as Senior Manager of the Security Investigations Unit at Red Sea Global,

strategically shaping tourism security concepts and embedding investigative best practices that align with community wellbeing and safety.

Dr Khalid Koser

Executive Director, Global Community Engagement and Resilience Fund Dr. Khalid Koser is the founding Executive Director of the Global Community Engagement and Resilience Fund (GCERF). A Professor of Conflict, Peace, and Security at the University of Maastricht, he was previously Deputy Director at the Geneva Centre for Security Policy and Deputy Director to the Representative of the UN Secretary General on the Human Rights of IDPs at the Brookings Institution. Ranked among the top 2% of scientists globally by Stanford University, Dr. Koser is a widely published expert on asylum, migration and refugees, and was appointed MBE for services to asylum seekers and refugees.

Betania Allo

Cyber Policy & Law Expert & Ex-UN & NEOM Betania Allo is a globally recognised cyber lawyer, policy expert, and thought leader with over a decade of experience spanning governance, public policy, private sector leadership and entrepreneurial ventures. Formerly leading the Cyber Culture Program and Innovation & Partnerships for a major Saudi Vision 2030 project, she now heads BA Cyber Law & Policy, her global consulting firm advising on complex cyber legal and policy issues, including emerging technologies.

Dr Nasser Alamri

Cybersecurity Executive Director, Institute of Public Administration Dr Nasser Alamri is the Cybersecurity Executive Director at IPA, bringing over 15 years of extensive experience in Cybersecurity and Digital Transformation. He is a recognised leader, speaker at numerous events, and recipient of the CISO Award 2023. His diverse leadership background includes roles as GRC Senior Manager and Head of Information Technology Sector, contributing significantly to digital transformation and cybersecurity strategy development, including establishing a Cybersecurity LAB.

Dr Faisal Alfouzan

Director of Cybersecurity, Confidential Dr Alfouzan is a dedicated cybersecurity and IT professional with over 13 years of academic and practical experience. Holding a Ph.D. and MSc in Cybersecurity and Networks, alongside certifications like CISM and CGEIT, he champions the adoption of cutting-edge cybersecurity practices and fosters strategic partnerships to enhance organisational resilience. Passionate about innovation, Dr Alfouzan leverages his technical expertise and leadership training from Harvard and INSEAD to support and empower the Kingdom of Saudi Arabia.

“our audience will be able to contribute to the continued advancement and resilience of the security landscape in the Middle East and beyond” SECURITY MIDDLE EAST | MAY 2025 | 23


Daniel Norman

Regional Director, EMEA, Information Security Forum Daniel Norman’s role at the ISF involves helping organisations to manage current and emerging cyber risks by helping them design information security systems, architecture and environments to effectively mitigate the risks associated with human behaviour. Historically, he has focused on threat intelligence and risk forecasting.

Alex Bomberg

Chairman, Intelligent Protection International Alex Bomberg is the Chairman of Intelligent (UK Holdings) Limited and the founder of International Intelligence Limited. A Fellow of the Institute of Strategic Risk Management and a member of the Security Institute, he has played a key role in major litigation cases, including KAC v IAC. An expert in commercial espionage, corporate security and intelligence analysis, Alex has also lectured on espionage and security at universities across Europe and to organisations like Facebook and Formula 1.

Nadeem Iqbal

Regional Director for IFPO MENASA Through his role at IFPO MENASA, Nadeem is focused on creating equal opportunities and making professional growth accessible, whether someone lives in an emerging market or a developed country. His work is driven by the values of empowerment, stewardship and a focus on transformative development. After decades of experience working in the Middle East, Nadeem joined IFPO in 2009.

securitymiddleeastconference.com

24 | SECURITY MIDDLE EAST | MAY 2025

ELEVATE YOUR LEADERSHIP IMPACT In the dynamic and high-stakes world of security, effective leadership isn’t just beneficial – it’s paramount. That’s why the Security Middle East Conference is thrilled to offer delegates a unique opportunity to hone their decision-making prowess and embark on the next stage of their leadership journey with the CARVER Leadership Workshop. This engaging two-hour session, offered completely free of charge to our conference delegates, provides an invaluable introduction to the time-tested CARVER methodology. For over seven decades, CARVER has empowered leaders across diverse sectors, from boardrooms to operational command centres, providing a quantifiable framework to clarify complex decisions and drive impactful outcomes. As a senior leader in the security sector, you understand the importance of continuous growth and setting a positive example. This workshop offers a tangible tool that will become a permanent asset in your professional toolkit, enhancing your leadership, organisational and operational skills. Through compelling case studies, you’ll gain a practical understanding of how CARVER principles can be applied in various high-pressure environments. The CARVER Leadership Workshop, happening on the afternoon of the Conference, offers a comfortable and professional setting to absorb this crucial knowledge and connect with a network of like-minded experts from across the globe. Furthermore, completion of this programme grants you the prestigious status of both CARVER Training Institute and University of South Florida Alumni, along with a digital badge from the University of South Florida to showcase your commitment to leadership development on LinkedIn. This is an opportunity to learn directly from Luke Bencie, a renowned global security consultant and leading expert on the CARVER Methodology. With over two decades of experience advising governments and Fortune 500 companies across 130 countries, Luke brings unparalleled real-world insights to this transformative workshop. Don’t miss this chance to equip yourself with a powerful framework that will elevate your leadership capabilities and enhance your impact within the security sector. Thanks to the CARVER Leadership Workshop your next step towards impactful leadership starts at the Security Middle East Conference.


WE’RE WITH YOU EVERY STEP OF THE WAY As the industry leader in power and data transmission innovation, Altronix designs and manufactures electronic products that ensure security systems run at optimal performance. We pride ourselves on providing the best technical and customer support in the business. That’s the Altronix advantage.

© 2025 Altronix Corporation. All rights reserved.

altronix.com


CLOUD VIDEO SURVEILLANCE

The Most Powerful, Flexible, and Open Cloud Video Surveillance Platform

Features: ARTIFICIAL INTELLIGENCE AND ANALYTICS

Witness the Power and Flexibility of Smart Video Surveillance and AI Eagle Eye Networks is number one worldwide in delivering true cloud video surveillance and artificial intelligence to make businesses more efficient and the world a safer place – all on the only video management platform robust and flexible enough to power the future of video surveillance.

CAMERA FLEXIBILITY

FLEXIBLE RETENTION

MULTI-SITE CENTRAL MANAGEMENT

OPEN API FOR EASY INTEGRATION

24/7/365 CUSTOMER SUPPORT

LEARN MORE EEN.COM

UNITED STATES +1-512-473-0500

+52 55 8526 4926

EUROPE +31 20 26 10 460

+81-3-6868-5527

©2024 Eagle Eye Networks. All rights reserved.


SECURITY MIDDLE EAST CONFERENCE

WHAT TO LOOK FORWARD TO Daniel Norman, Regional Director, EMEA, Information Security Forum, will once again be taking the stage as Chairperson for the Security Middle East Conference. Here, he shares some of the highlights our audience can expect

As Chairperson for the Security Middle East Conference over the last three years, it has been a pleasure to see the event grow and evolve into a world-class show, bringing Middle Eastern security leaders together to shape the way our industry is perceived and addressed in the region. Security is a dynamic and ever-changing topic, with the physical and digital worlds constantly reshaping in terms of new threats and implementation of rapidly developing technologies. The Middle East has become one of the most technologically advanced and ambitious areas of the world, introducing an array of new security-related challenges, which, partnered with long-term, established physical security risks, creates a headache for all security leaders. This is personified by the Saudi Vision 2030, which is edging closer to its completion year on year: security leaders across industries such as tourism, hospitality, manufacturing, energy, retail and all areas of critical national infrastructure cannot face these challenges alone. This is why we are proud to run the Security Middle East Conference in Riyadh once again. There is so much to look forward to, as we explore a variety of topics that tackle existing and emerging challenges. There are many themes that will be explored, covering security culture, governance, emerging risks, artificial intelligence, etc. For example, one of the big issues security leaders face is constantly battling

the perception that security is a cost and does not add value. We have a dynamic group of security leaders joining Luke Bencie, MD of Security Management International, to highlight how security functions can position safety and security as a profit-centre or potential contributor to revenue generation. Dovetailing off of the back of this presentation will be a live podcast being delivered on stage, discussing how security can become a pillar in corporations and with wider community,

further cementing the significance of the industry. Relevance, demonstrating value and demanding a seat at the top table are all topics security leaders have historically had to tackle, so this session will provide a unique insight into what success looks like. Another interesting topic that will be on the agenda is mega-event security. With Saudi Arabia hosting the World Expo, Asian Winter Games and a future FIFA World Cup, a group of senior security operations leaders will give audiences a

SECURITY MIDDLE EAST | MAY 2025 | 27


“Collaboration, knowledge sharing and a passion to secure the interconnected ecosystem is what drives the Security Middle East Conference” rare glimpse into what happens behind the scenes. The eyes of the world will be firmly focused on the Middle East and mega-events are a complex web of interconnected infrastructures, frameworks, national interests, critical national infrastructure and cultures. Navigating this high-stress environment and creating a safe, secure and inclusive space for the public is critical. There will be many lessons learned from historical events, and strategies for future events that will be applicable to organisations from a variety of sectors. It would not be a security conference without mentioning artificial intelligence and other emerging technologies. AI dominates headlines in newspapers, and is on the lips of world leaders and CEOs across the globe – many companies and governments have rushed to exploit the operational and commercial value associated with machine learning, neural networks and accelerated computing power. However, one topic that has been underserved in recent months is how attackers are leveraging these topics for nefarious activity. We have dedicated time to highlight the most up-to-date risks presented by AI, focusing especially on social engineering and AI-powered attack mechanisms. One final theme that will be evident throughout the conference is third-party risk management – with emerging local and international regulations stipulating a robust approach to securing the supply chain, this topic is not only relevant to large multinationals, but SMEs alike. Audiences will hear from experts that have mastered their internal frameworks associated with due diligence, thirdparty risk assessments, assurance and continuous monitoring. Resiliency across

28 | SECURITY MIDDLE EAST | MAY 2025

WHAT’S NEW FOR 2025 Live Podcasts

This exciting new format for the event, will bring live debates into the heart of the event, with our experts tackling vital issues that will impact on our audience.

Tech demonstrations

Security Middle East Conference App

Don’t forget to register on our new App in advance so you can build your own personalised event experience and connect with your peers also in attendance.

the supply chain is critical to the efficacy and security of every organisation and nation state. Collaboration, knowledge sharing and a passion to secure the interconnected ecosystem is what drives the Security Middle East Conference event organisers

We know that technology is driving the evolution of the sector, and so we’re delighted to be able to bring you short demonstrations and presentations from leading vendors so you can experience the tools you need for security success. Joining us on the day for these live demos are: Al Malath; Limitless Technologies; Magnet Forensics; Genetec; Allied Telesis; Threatlocker; PureTech Systems; and Betafence.

IFPO pre-conference masterclass – The ‘Security Strategy Practicum

A Balanced Scorecard Approach’ will be hosted by IFPO as part of the Security Middle East Conference.

and board members. It is a perfect environment to meet likeminded peers for any security leader. Join us on the 13th May as we explore some of the biggest security challenges and discuss strategies to overcome them together. I hope to see many familiar and new faces soon.


Era is the first series of compact outdoor stations with advanced access control functions, specifically designed for residential applications. It can be expanded up to 4 users or in a version with numeric keypad and includes a proximity reader with MIFARE/NFC technology as standard. It is a product entirely designed and manufactured in Italy.

Up to four apartment

Codelock

MIFARE/NFC

Bluetooth

RS485

Dip switch configuration

Voice assistance

IP65

IK09

Download for free

Videx Virtual Fob videx.it

Videx Electronics S.p.A. - Via del Lavoro, 1 - 63846 - Monte Giberto (FM) - info@videx.it - T.+39 0734 631 669 - F.+39 0734 6332 475


DATA CENTRES | BIOMETRIC PROTECTION

30 | SECURITY MIDDLE EAST | MAY 2025


DATA CENTRES | BIOMETRIC PROTECTION

The iris advantage Mohammed Murad, Vice President, Global Sales and Business Development, IRIS ID looks at the power of iris recognition and how it can secure data centres with biometric precision

No firewall or encryption protocol can protect a data centre if an unauthorised person gains physical access. While organisations invest heavily in cybersecurity, physical security remains an overlooked vulnerability — one that attackers increasingly exploit. In 2024, the average cost of a data breach soared to $4.88 million, a 10% increase from the previous year, according to the IBM Security Report. Yet, 68% of breaches involve human error, insider mistakes, or credential misuse, as found in the Verizon 2024 Data Breach Investigations Report. For data centres — the backbone of global digital infrastructure — this risk is even greater. A stolen keycard, shared password, or compromised credential can bypass multiple security layers, granting an attacker direct access to critical systems. Traditional access controls, such as PIN codes and RFID badges, are increasingly ineffective. To counter these risks and with billions of records at risk, organisations are turning to biometric authentication, with iris recognition emerging as the most secure and scalable solution.

heavily on preventing malware, phishing and ransomware, but physical security remains a weak point. Cybercriminals and insider threats don’t always rely on hacking — sometimes, gaining physical access to a server room is enough to bypass even the most sophisticated cybersecurity measures. According to Flashpoint’s Global Threat Intelligence Report, data centres experienced a 34.5% increase in physical security incidents in 2023, including unauthorised access, tailgating and credential theft. More than 80% of data breaches involve stolen or misused credentials, highlighting the urgent need for stronger access control policies. Traditional security measures, such as keycards, PIN codes and fingerprint scanners, present their own vulnerabilities. Keycards can be cloned, PINs can be shared and fingerprint scanners often fail in environments where employees wear gloves and PPE. Meanwhile, social engineering tactics — such as phishing or impersonation — make it easier than ever for attackers to manipulate access controls.

methods, offering unmatched accuracy, speed and compliance with global security regulations.

The growing security risks facing data centres

Iris recognition: the new standard in data centre security

Eliminating credential and insider threats

Data centres store and process vast amounts of sensitive data, making them prime targets for both cyber and physical attacks. Organisations focus

Security leaders are seeking solutions that offer both stronger protection and operational efficiency. Iris recognition outperforms traditional access control

Unmatched accuracy and protection

Iris biometrics analyse over 240 unique characteristics, delivering near-zero false acceptance rates. The National Institute of Standards and Technology (NIST) has confirmed that iris recognition surpasses fingerprints and facial recognition in highsecurity applications. Since no two irises are alike — not even in identical twins — it is virtually impossible to duplicate or spoof.

Non-contact, fast and reliable authentication

Unlike fingerprint scanners, which struggle in environments where personnel wear gloves or have wet or damaged skin, iris recognition works effortlessly — even with PPE, glasses or face masks. This makes it an ideal solution for data centres with strict hygiene protocols and high employee turnover, curbing bottlenecks at security checkpoints.

With 80% of breaches involving stolen or misused credentials, traditional keycards and passwords remain a security liability. Iris authentication ties access directly

SECURITY MIDDLE EAST | MAY 2025 | 31


DATA CENTRES | BIOMETRIC PROTECTION

to an individual’s biological identity, eliminating the risk of shared, stolen or lost credentials. This is particularly critical in colocation data centres, where multiple organisations operate within the same facility, increasing the risk of unauthorised access.

Privacy and compliance advantages

Stronger security comes with greater regulatory responsibility. GDPR, CCPA and ISO 27001 require organisations to safeguard biometric data, and iris recognition technology ensures compliance by encrypting templates into a non-reversible mathematical code. Unlike facial recognition, which stores identifiable images, iris recognition provides security without compromising privacy.

Setting a new security benchmark Tech giants like Google have already integrated iris-based access control in their data centres, demonstrating the technology’s scalability and effectiveness. These real-world applications set a precedent for data centres worldwide, proving that iris recognition is not only viable but essential for mission-critical security.

Strengthening access control with a layered approach

While iris recognition provides a high level of security, no single technology should operate in isolation. The most effective security strategies use a layered approach, combining biometric authentication with multi-factor authentication (MFA) and seamless integration into existing access control frameworks. MFA enhances security by requiring multiple authentication methods. A data centre may use iris recognition with a PIN for general access, while high-security zones require dual biometric verification, such as iris and facial recognition. Even if a keycard is lost, biometric authentication ensures that only authorised personnel can enter. Modern iris recognition systems integrate with existing security infrastructure, supporting legacy protocols like Wiegand and OSDP. They also work with turnstiles, mantraps and visitor management systems, strengthening access control without requiring a full security overhaul. To prevent spoofing, Presentation Attack Detection (PAD) verifies iris liveness, blocking attempts to use images

32 | SECURITY MIDDLE EAST | MAY 2025

“Data centres experienced a 34.5% increase in physical security incidents in 2023” Flashpoint’s Global Threat Intelligence Report

or prosthetics. This ensures only real, live users gain access. Beyond security, iris recognition reduces costs by eliminating lost keycards, minimising IT helpdesk requests and streamlining access. Faster authentication improves operational efficiency, allowing data centres to maintain strict security without disrupting workflows.

Future-proofing data centres

As data centres grow in size and complexity, security measures must evolve to address both current and future risks. Iris recognition provides a long-term solution that enhances physical security while reducing administrative burdens and ensuring regulatory compliance. Unlike keycards and PINs, which require constant oversight and replacement, iris biometrics operate on a one-time enrollment system, eliminating recurring credential management issues. This simplifies user authentication, minimises access-related disruptions and reduces maintenance costs. As data centres scale, iris recognition adapts seamlessly, maintaining efficiency without requiring infrastructure overhauls. Compliance with evolving regulations is non-negotiable. Standards like GDPR, CCPA and ISO 27001 demand strict controls over data access, including secure identity verification. Iris recognition encrypts biometric data, ensuring privacy while meeting

regulatory mandates. Its ability to provide detailed access logs also supports auditing requirements, helping organisations demonstrate compliance with security policies. By adopting iris recognition as part of a forward-looking security strategy, data centres can increase resilience against unauthorised access, strengthen compliance efforts and reduce long-term operational risks — ensuring secure and efficient facility management well into the future.

Setting a higher standard

Security leaders are responsible for protecting the most critical infrastructure in the digital economy. Yet, keycards, PINs and passwords continue to create avoidable risks. Every stolen credential, every unauthorised entry, and every insider threat weakens the system from within. Iris recognition removes these vulnerabilities by ensuring that access is non-transferable, tamper-proof and tied to the individual. It strengthens compliance, reduces operational costs and integrates seamlessly with existing security frameworks. As threats escalate and regulations tighten, biometric access control is no longer an enhancement — it is the foundation of a data centre built for long-term security and resilience. www.irisid.com

HEAR FROM THE AMBASSADORS

”In my opinion, iris recognition enhances security, especially in sensitive areas like airports and secure facilities. However, concerns about privacy and the potential for misuse of personal data are significant. My experiences with iris identification systems have been mostly positive, as they provide a quick and efficient way to verify identity. Still, ongoing discussions about ethical implications are essential as this technology evolves.” Ali Al Nomais Aviation Security Manager


CTF CONSOLES

CONTROL FOR SUCCESS RESPONSE TIME & LEAD TIME 3-4 weeks lead time within the GCC

PREMIUM CUSTOMIZATION State-of-the-art designs, fully customized to meet specific use cases

BID WINNING DESIGN SUPPORT Project specific 2D drawings & photo realistic 3D renders

www.ctfconsoles.com

hello@ctfconsoles.com


VIDEO SURVEILLANCE | AI INTEGRITY

34 | SECURITY MIDDLE EAST | MAY 2025


VIDEO SURVEILLANCE | AI INTEGRITY

Leo Levit, Chairman, ONVIF Steering Committee, explores why we need authentication technology in order to secure video evidence The rise of generative AI is expected to revolutionise the ways we use our security systems as well as the information that these systems will be able to provide. These promises of new levels of efficiency, accuracy and depth of data from artificial intelligence are capturing most of the attention surrounding AI and its influences on security. However, the impacts from generative AI are not all positive, with some presenting serious threats to the integrity of the industry’s core set of technologies – video surveillance. One of the most pressing areas of concern is the growing prevalence of manipulated or ‘deepfake’ videos, which are made possible by the mainstream availability of video alteration tools based on gen-AI technology. Creating these videos used to require expert skills and expensive equipment but can now be done using everyday apps, many of which are free to download or use. While some instances of deepfakes or manipulated video are easier to spot – think a dinosaur wandering around an office lobby – other alterations to video can be seamless to the viewer because they don’t involve obvious changes in the video footage. For example, altering the timestamp of a video clip to a different day or time can provide incorrect information about when an event occurred. Taking out specific frames of a video clip from an event can remove the event or person of interest in the video, which means the clip does not accurately represent the scene. More extreme examples include substituting a face with that of another person in a scene or using generative AI to put a firearm in an individual’s hand.

Global issue

The threat of deepfakes has moved from theoretical concern to practical reality in recent years. In 2024, a multinational company in Hong Kong was tricked into wiring $25 million to fraudsters

after participating in a video call with a deepfake of the company’s chief financial officer. Law enforcement agencies have also reported instances where manipulated surveillance footage was submitted as evidence in criminal cases, with timestamps and content altered to create false alibis. This ability to alter video can ultimately pose significant challenges to organisational trust in video evidence and the industry’s ability to maintain the authenticity of surveillance footage, which can have severe consequences in many areas. Video is one of the most crucial pieces of evidence used in criminal investigations, court proceedings and internal corporate security investigations. In many countries, there is a very robust chain of custody process required as part of law enforcement investigations and the admission of the video as evidence in court. Public distrust in video can easily lead to concerns about reasonable doubt in the eyes of a jury or judicial ruling in court proceedings and corporate investigations. If the current legal precedents about the admissibility of video evidence are undermined by AI manipulation, courts may be forced to establish entirely new standards for this type of evidence. This could potentially exclude video evidence in cases where authentication cannot be definitively established.

Crimes against corporates

For corporate security, the stakes are equally high. Internal investigations

rely heavily on surveillance footage to resolve incidents, ranging from workplace safety violations to theft and harassment claims. Human resources departments and corporate legal teams often base consequential decisions on video evidence. If this evidence is in doubt, organisations face increased liability risks, higher settlement costs and greater difficulty in fairly resolving disputes in the workplace. Insurance companies have also begun expressing concern about the ability to verify claims in an era of manipulable video, with some policies now specifically addressing digital evidence reliability. The impacts extend beyond the courtroom and corporate settings. Public safety organisations, transportation systems, critical infrastructure protection and national security applications all rely on verified video for both real-time decision-making and after-action reviews. As these threats continue to grow, traditional forensic techniques to safeguard video footage will not be enough to protect against generative AI’s ability to covertly and overtly alter surveillance video. This growing need for new solutions highlights the importance for industry collaboration and a standardised way to preserve the integrity of video and institutional trust in the footage as an accurate view of a situation.

Finding a solution with video signing

As a global standards organisation, ONVIF is working on a method of video

“This ability to alter video can ultimately pose significant challenges to organisational trust in video evidence” SECURITY MIDDLE EAST | MAY 2025 | 35


VIDEO SURVEILLANCE | AI INTEGRITY

authentication called video signing that provides proof that the video has not been altered since it has left the specific camera sensor that captured the video. Securing the video at its earliest point – when the sensor in the camera captures the video – is key to ensuring the authenticity and trustworthiness of the video footage from camera to court. On a technical level, the method involves a camera having a unique signing key that is used to sign a group of video frames, where each frame is accounted for. The signature is then embedded in the video. When the video is played through a media player (like a standalone video player or video management client) that supports video signing and a trusted root certificate from the camera manufacturer, the media player can verify that the video data originated directly from that specific camera and has not been tampered with. If pixels in a video frame have been altered, or frames have been removed or reordered, the signature verification will fail and the video player signals that the video is not valid.

Simplifying authentication for law enforcement

Standardising video authentication enables a single mechanism to verify the authenticity of the video it has received.

36 | SECURITY MIDDLE EAST | MAY 2025

“Video signing involves a camera having a unique signing key that is used to sign a group of video frames, where each frame is accounted for” This can help to streamline processes for video users such as law enforcement and other criminal justice personnel, who deal with video footage generated by systems from many different manufacturers that might use a variety of methods for protecting video. In addition, by securing the video right from the specific camera that captured it, there’s no need to prove the chain of custody for the video. You can verify the video authenticity at every step — from the camera, to a person viewing the exported recording. With authentication provided at the point of capture, the video can be traced back to the device that recorded it.

Open source release

ONVIF is planning to release the implementation of video signing as an open source project. Providing

the specification to the open source community will add transparency to the ONVIF method and make it easier for a wide community of developers to use it, helping the standard gain wider adoption in the security industry. Making these standards available via open source will also create transparency in the technical implementation, preserving trust in the authentication process and the integrity of the video itself. Standardising this process for the security industry and others that rely on camera footage for other uses will provide consistency and reliability in the authenticity of video. ONVIF believes that video authentication at the source (from the camera) through video signing will provide the assurances needed to preserve trust in surveillance video. www.onvif.org


Fully Integrated. Seamlessly Connected. From mission-critical infrastructure to complex systems integration, We design, install, and maintain advanced technology solutions tailored for performance, security, and operational continuity.

convergint.com\mea


AI | THREAT INTELLIGENCE

Issam Kabbani, Principal, Aerospace, Defense & Security Practice, and Karim Daghestani, Consultant, Kearney Middle East & Africa, explore a world where threats can be seen before they strike thanks to AI technology Security has always been about more than just reacting to threats – it’s about anticipating them. However, in today’s rapidly evolving world, where cyberattacks grow more sophisticated, geopolitical tensions escalate, and physical threats become increasingly unpredictable, traditional methods of threat anticipation are being pushed to their limits. This is where artificial intelligence (AI) steps in, enhancing situational awareness and enabling proactive threat prediction like never before. From military defence systems to real-time cyber threat monitoring, AI supports proactive, intelligence-driven actions.

AI-driven situational awareness

AI is revolutionising situational awareness by rapidly analysing vast amounts of

38 | SECURITY MIDDLE EAST | MAY 2025

data from multiple sources, delivering real-time insights to security teams. In cybersecurity, AI-driven platforms automate threat detection, filter out false alarms, and allow analysts to focus on high-risk incidents. This shift towards AI-assisted security operations is reshaping how organisations defend against threats. For example, AI-powered deception technology is being used to strengthen cybersecurity by deploying decoy assets (fake credentials, servers, or data) to lure attackers. These AI-driven traps analyse hacker behaviour in real time, helping security teams predict and prevent future threats. In physical security, AI-powered video analytics have turned traditional surveillance cameras into intelligent

monitoring systems. These systems can automatically detect anomalies, unauthorised access and suspicious behaviour, significantly reducing false alarms and improving response times. The integration of facial recognition technology has further enhanced access control and monitoring capabilities, particularly in highsecurity environments like airports and government facilities.

Predictive analytics: Staying ahead of threats

One of the most powerful applications of AI in security is predictive analytics. By analysing patterns from diverse data sources, including traffic flows, social media, and weather reports,


AI | THREAT INTELLIGENCE

AI tools provide early warnings to security operations centres (SOCs), enabling preemptive action. In the UAE, for example, law enforcement agencies like Dubai Police are leveraging AI to predict crime hotspots and optimise resource allocation. By analysing historical crime data, these AI systems enable more efficient patrol deployment, contributing to a 25% reduction in serious crime rates in early 2023. This proactive approach enhances public safety and reflects the UAE’s commitment to smart, data-driven policing.

Key AI technologies in situational awareness

Modern situational awareness hinges on the effective use of vast and complex data, with AI’s effectiveness depending on how well it manages this data. This relies on the four Vs: Volume Processing massive datasets from diverse sources. Velocity Analysing data streams in real-time. Variety Integrating different formats (video, text, sensor data). Veracity Ensuring accuracy for reliable decision-making. To support this, technologies like cloud computing, IoT and edge processing enable real-time, scalable and decentralised AI-driven security analysis. Examples of the application of these technologies include: 1. Computer Vision & Video Analytics – AI-powered surveillance systems can analyse vast amounts of video footage, identifying suspicious activities, abandoned objects or unauthorised access in real-time. 2. Geospatial Intelligence (GEOINT) – AI processes satellite imagery and drone data to detect unusual patterns, such as border intrusions or military build-ups, enhancing national security efforts. The US and Middle Eastern countries are integrating AI-based GEOINT into defence strategies. 3. Natural Language Processing (NLP) – AI scans open-source intelligence (OSINT), including social media, news and dark web forums, to identify potential threats such as extremist activities, misinformation campaigns or geopolitical unrest.

“As AI continues to evolve, its role in security will only grow more significant.” By integrating these technologies and supporting them with robust data management practices, security forces and enterprises can act pre-emptively, reducing response times and mitigating risks more effectively.

Cybersecurity: AI as a force multiplier

In the realm of cybersecurity, AI is proving to be a formidable ally against increasingly sophisticated threats. AIdriven systems analyse network behaviour, detect vulnerabilities and even automate software patching before exploits occur. This proactive approach is helping organisations reduce the time between threat discovery and remediation. A notable example is the deployment of AI-powered threat intelligence platforms by major banks in the UAE and Qatar. These systems continuously monitor global threat landscapes, analyse potential attack vectors, and provide real-time alerts to security teams, significantly enhancing the organisations’ cyber resilience.

Challenges and ethical considerations

While the benefits of AI in security are clear, its deployment is not without challenges. Data privacy concerns, potential AI bias and the need for human oversight are critical issues that need to be addressed. There’s also the risk of over-reliance on AI systems, which could lead to complacency or vulnerability to AI-specific attack vectors. It is also worth noting that AI serves as a double-edged sword in cybersecurity. While it enhances defence capabilities, adversaries are also leveraging it for malicious purposes. AI-generated deepfakes have been used in political subterfuge, like the impersonation

of Ukraine’s former Foreign Minister in a call with US Senator Ben Cardin. Cybercriminals are using AI to craft convincing phishing emails and even clone voices to commit fraud, making scams harder to detect. These threats highlight the urgent need for security practitioners to strengthen AI governance, adopt advanced threat detection tools and stay vigilant against the evolving misuse of AI.

Forging ahead

As AI continues to evolve, its role in security will only grow more significant. The integration of AI with other emerging technologies, such as quantum computing, promises to unlock even more powerful capabilities for threat detection and prevention. To make AI work for them, security firms must develop a strong data strategy to ensure high-quality and secure data for AI systems. They should identify key processes for automation, empower staff to propose innovative solutions, focus on strong data management, and upskill teams to effectively use these tools. Fostering public-private collaboration and establishing robust governance frameworks will also be key to maximising AI’s potential while managing associated risks. The integration of AI into security operations represents a paradigm shift in how we approach threat detection, prediction and response. For the Middle East, a region at the forefront of both security challenges and technological adoption, AI offers unprecedented opportunities to enhance safety and stability. In this new era, AI is not just a tool but a strategic imperative for security professionals across the region. www.middle-east.kearney.com

SECURITY MIDDLE EAST | MAY 2025 | 39


Elevate Your Surveillance Operations The new IDIS Edge AI Camera Plus range takes security and safety to a new level of efficiency for real-time monitoring and incident review

Supercharge your security and safety operations with the IDIS Edge AI Camera Plus range. It features IDIS A-Cut Monitoring and IDIS Deep Learning Analytics (IDLA) Pro event functions - including crowd detection, abandoned object, removed object, fall detection, and violence detection. These new functions enable faster investigations and response times thanks to automatic image cropping, intuitive attribute searches, and advanced automated alerts, as standard.

IDIS Europe

1000 Great West Road, Brentford, Middlesex, TW8 9HH, United Kingdom

T +44 (0)203 657 5678 F +44 (0)203 697 9360 E uksales@idisglobal.com P.O. Box 341037, D-308, DSO HQ Bldg, Dubai Silicon Oasis, Dubai, U.A.E.

IDIS Middle East

T +971 4 501 5434 F +971 4 501 5436 E sales_mena@idisglobal.com Turkiye Liaison Office

T +90 533 696 7780 E sales_mena@idisglobal.com

www.idisglobal.com


GENAI | SECURITY SAVIOUR

GenAI: Hype or help?

Is GenAI the breakthrough Endpoint Security needed or just another buzzword? asks Apu Pavithran, CEO and Founder, Hexnode Generative AI (GenAI) is not just another tech fad. It’s everywhere: writing code, generating art, composing music and even pulling off an unpaid therapist act, telling us exactly what we want to hear. While it is reshaping creativity and innovation, it’s also giving cybersecurity a powerful new edge. The kicker is that GenAI does not play favourites. The same technology that fortifies defences also arms attackers. They’re weaponising it to amplify their

attacks and camouflaging phishing emails with genuine conversations that are almost impossible to tell apart. So, the real question is not whether GenAI is changing cybersecurity. But who is wielding it better?

The GenAI effect in the Middle East

The Middle East isn’t just dipping its toes into GenAI; it’s diving in headfirst. In the last year itself, 88% of CEOs in the

SECURITY MIDDLE EAST | MAY 2025 | 41


GENAI | SECURITY SAVIOUR

“The urgency is not just about adopting GenAI; it is about weaving it into the core of security operations (SecOps).” region have integrated GenAI into their businesses, outpacing global adoption rates, according to PwC’s 28th Annual CEO Survey: Middle East findings. This isn’t just a side project; 57% of organisations allocate at least 5% of their digital budgets to GenAI initiatives (McKinsey’s The state of gen AI in the Middle East’s GCC countries: A 2024 report card). While every sector in the region stands to benefit, the energy industry is leading the way, according to the McKinsey research, with potential annual gains of $5 billion to $8 billion. From automating routine back-office tasks to optimising grid management, GenAI is changing how the industry operates. By crunching historical data and real-time sensor inputs, it predicts demand more accurately, allowing grid operators to make smarter, data-driven decisions. Finance, healthcare and government agencies are also tapping into GenAI for fraud detection, clinical decision-making, and process optimisation. That’s why the cybersecurity industry needs to catch up. GenAI is already transforming industries across the region, streamlining operations and driving efficiency. If it can do that for business, it can do the same for security.

Can GenAI actually level up security?

The urgency is not just about adopting GenAI; it is about weaving it into the core of security operations (SecOps). The smartest way is to deploy GenAI as a complementary tool within cybersecurity tools and workflows. A major issue security teams face today is ‘alert fatigue’. Security Information and Event Management (SIEM) systems pull in a constant stream of alerts, but with so many false positives, it’s easy to miss the serious threats hiding beneath the noise. The ransomware attack on a Saudi construction firm is a case in point. The

42 | SECURITY MIDDLE EAST | MAY 2025

attack carried out by the ransomware-asa-service (RaaS) group DragonForce led to the exfiltration of 6TB of blueprints, airbase plans and sensitive project files. By the time the company realised what had happened, the damage was already done. When the company refused to pay, the stolen files were dumped on the dark web, causing severe financial and reputational fallout. This is where GenAI can make a difference. Unlike traditional Artificial Intelligence (AI), which might just flag everything as suspicious, GenAI’s ability to add context sifts through the noise, prioritising critical threats and offering actionable mitigation strategies. As credential theft and insider threats rise, behaviour tracking becomes a nonnegotiable defence. GenAI is expected to build on existing AI and machine learning capabilities, creating smarter models that can detect even subtle deviations, predict attacks and adapt to evolving threats in real time. Compliance is another daunting task that has been made easier with GenAI. Through continuous monitoring and automated audits, organisations can ensure all devices comply with regulatory standards, eliminating the need for time-consuming manual reviews. However, as Gartner puts it, GenAI thrives when it’s part of a broader AI strategy. To fully harness GenAI’s power in security, it needs full access to the digital battlefield, including central management, SIEM systems, threat intelligence feeds and security orchestration tools. Think of it like a master strategist pulling intel from all these sources to map out the best defence. However, even the smartest AI is only as good as its data. Therefore, it must be constantly fed with new threat intelligence and relevant data.

Gen-AI meets UEM

A chain is only as strong as its weakest link, and in enterprise security, that link has long been the human element. Even minor slip-ups can cause massive security gaps, compliance nightmares and network-wide failures. That’s exactly why management tools exist. Yet, the problem today is not just human error but the sheer scale of what needs to be managed. Today’s enterprise ecosystem isn’t just laptops and desktops anymore. It’s a cornucopia of devices, from mobile phones to kiosks and even wearables, all running on different operating systems with their own security needs. Trying to keep this chaos under control manually is only a recipe for disaster. And it becomes exponentially harder when you take into account the scams waiting around every corner. Attackers are not just casting wide nets anymore; they are crafting highly personalised phishing attacks that can easily fool generic defences. Using a Unified Endpoint Management (UEM) solution undoubtedly remains the best approach in such cases. However, as device diversity increases and scams become more complex, even UEMs require a touch of AI.


GENAI | SECURITY SAVIOUR

57%

88%

of organisations allocate at least 5% of their digital budgets to GenAI initiatives

of CEOs in the region have integrated GenAI into their businesses

Modern GenAI powered UEMs can generate custom scripts capable of implementing customised solutions for such unique device management challenges. All an admin has to do is describe the task in plain language, say generate a script to automatically create backups of critical files and directories every 24 hours, and GenAI handles the rest. It ensures they comply with organisational standards and even schedules their execution. That is not all. GenAI can also generate detailed reports, like identifying endpoints running outdated security patches or listing devices with unrestricted USB access, giving IT teams a clear view of the weak spots. And it’s not just IT admins; AI-powered chatbots embedded within the UEM interface, are making life easier for the end users too. We’ve all been there, stuck on a problem, referring through endless help documentation, and dreading the wait for IT support. If a user cannot connect to a secure VPN or encounters access errors, the chatbot walks them through a step-by-step fix, preventing risky workarounds. No more back and forth emails or listening to hold music. Users get instant answers when they need them.

The cyber arms race is in full throttle, and AI is fuelling both sides. Attackers today are breaking in within minutes, and the sprawl of endpoints is only growing. So, the only way to strike back is to harness the defensive side of AI where it matters the most within endpoint security and management. Managing endpoints with UEM is one thing but marrying it with AI for a more proactive endpoint security gives us a real chance to stand firm against the next wave of cyber onslaughts. www.hexnode.com HEAR FROM THE AMBASSADORS

“With rapid technological advancements, AI has become an indispensable tool, especially in security. Its ability to analyse vast amounts of data at incredible speed provides security teams with a crucial edge in detecting threats and making proactive decisions. However, increased reliance on AI also raises concerns about data protection and ethical considerations. In my view, it is essential to establish a strict governance and transparency framework to ensure AI is used responsibly. Adopting a ‘privacy by design’ approach is crucial to guarantee that data is handled securely without compromising individuals’ rights. Striking the right balance between leveraging AI capabilities and ensuring privacy protection is the key to a safer future.” Turki Al-Malki Security Facilities & Vigilance Manager at Riyadh Air

SECURITY MIDDLE EAST | MAY 2025 | 43


PROMOTIONAL FEATURE

UNITE TO FIGHT Collaboration can be made easy, according to Firas Jadalla, Regional Director, Middle East, Turkey and Africa, Genetec Inc, thanks to a work management platform

Effective collaboration between security operators, teams and other departments is essential for the smooth functioning of any organisation. However, as organisations grow in complexity, it becomes increasingly challenging for teams to coordinate. Factors such as staffing shortages, high turnover rates and outdated collaboration tools exacerbate these challenges. When staff rely on multiple disconnected tools for dispatch, reporting and task tracking, operations often become fragmented, leading to delays and gaps in communication. In critical areas like safety and security, these inefficiencies can have serious consequences.

44 | SECURITY MIDDLE EAST | MAY 2025

Work management solutions bridge these gaps by managing, tracking and documenting activities, streamlining processes and fostering real-time collaboration. Built specifically for security teams, these solutions enhance communication, boost productivity and improve overall operational efficiency through workflow automation. Organisations in the Middle East operate in high-security environments where seamless collaboration is essential. A robust work management platform enables swift response and coordination across complex operational landscapes. This growing need for integration is driving more organisations to align their security and IT departments. According to

a recent Genetec report, 78% of end users in the META region indicate that these departments now work collaboratively, reflecting a shift toward a more unified security approach.

Overcoming barriers to effective collaboration

Over time, many organisations accumulate a patchwork of databases, spreadsheets and standalone systems to communicate, create reports and track activities. Some still rely on outdated paper-and-pen processes, which aren’t only time-consuming but also prone to errors. These disjointed methods hinder information sharing and coordination.


PROMOTIONAL FEATURE

A digital work management platform consolidates these fragmented systems, offering teams a unified view of activities accessible on both desktop and mobile devices. To take full advantage of their security system data, security teams need to consider more than a generic work management solution. An ideal work management solution for security teams should accommodate security activities such as guard tours, patrols and maintenance inspections. It should also seamlessly integrate with existing security systems. For instance, a video operator should be able to create a work request with an attached camera snapshot and route it to the appropriate team in just a few clicks. To ensure trustworthy audits and reporting, the work management system should be built with strong cybersecurity measures and ensure that data can’t be manipulated after the fact by applying blockchain principles.

Benefits of work management systems

Implementing a work management system can transform security operations in several ways: Improved Communication: Teams gain real-time visibility into task progress, responsibilities and pending assignments. Updates and alerts can be shared seamlessly to request assistance or provide situational awareness. Enhanced Collaboration: Every team member contributes to shared goals rather than isolated tasks. Custom API integrations can connect with other systems, such as employee apps, further fostering teamwork. Time Savings: Built-in reporting tools automate activity logs and compliance audits, freeing up time for other critical tasks. Operational Efficiency: Routine tasks, incident management and resource tracking are streamlined. Tasks are assigned to personnel with the appropriate skills, tools and knowledge, ensuring readiness and precision. Workflow Automation: Automations simplify recurring tasks, such as setting reminders, generating reports or notifying team leads when new requests are added.

Resource Optimisation: Features like work ticketing and asset management enable efficient resource allocation and management of internal and external requests. Mobile Support: Field officers benefit from mobile apps that enhance situational awareness, communication and access to standard operating procedures on the go. Today, governments across the region, including the UAE and Saudi Arabia, are heavily investing in smart security solutions as part of their national digital transformation strategies. A centralised work management platform not only supports these efforts but also helps businesses align with evolving security regulations, ensuring compliance and streamlining reporting processes.

Tips for successful implementation

Every organisation has unique workflows, so selecting a customisable work

management system is crucial. It’s important to choose a solution that’s customisable and intuitive to minimise the need for extensive training. Integration is another key factor. A platform that deeply integrates with your existing security ecosystem provides a cohesive view of operations and eliminates the need for manual data transfers or redundant processes. A well-designed work management system can break down silos, empower teams and boost efficiency. To ensure a successful deployment, adopt a lean and agile approach: start small and gradually incorporate more features as your team becomes comfortable with the platform. With initiatives like Saudi Vision 2030 and UAE’s Smart City strategy, organisations are increasingly integrating AI-driven security and IoT-enabled monitoring into their operations. A work management platform with automation capabilities supports these advanced security frameworks. www.genetec.com

SECURITY MIDDLE EAST | MAY 2025 | 45


© 2021 Genetec Inc. Genetec and the Genetec logo are trademarks of Genetec Inc., and may be registered or pending registration in several jurisdictions.

See where unified security can take you. 93% of organizations that moved to a unified platform saw a decrease in compatibility issues across their security system. This is why our Security Center platform excels. It delivers a cohesive operating picture through modules that were built as one system. So, whether you’re securing an airport, a parking structure, a multi-site enterprise, public transit, or an entire city, you can access all the information you need in one place. This is unification.

To learn about the benefits of unifying your security operations visit genetec.com


DATA PRIVACY | AI

Karim Azar, Regional Vice President, Middle East & Turkey at Cloudera, explores navigating privacy in an AI-driven security world

SECURITY MIDDLE EAST | MAY 2025 | 47


DATA PRIVACY | AI

“Businesses should invest in secure and governed data platforms with robust encryption and tokenization strategies.” Data privacy is becoming increasingly complex as organisations leverage AI to transform operations and decisionmaking. One of the latest advancements in this field is agentic systems designed to autonomously execute tasks and make decisions without human intervention. AI agents are widely adopted across industries. In the financial sector, they analyse market signals, adjust trading strategies and mitigate risks in real-time. Government agencies also use AI agents to streamline administrative processes, such as assessing grant eligibility and offering personalised citizen services. As we integrate AI more deeply into our lives, particularly in sensitive areas like healthcare and finance, concerns about privacy and data security are becoming increasingly prominent. Imagine if your personal preferences, hobbies, and even private information were accessible to data entities that might manipulate this information to market their products to you. This reliance on extensive personal data raises serious ethical questions about how organisations manage and protect our information. As AI adoption accelerates, consumers are growing more cautious about the practices of these organisations, seeking greater transparency and accountability in how their data is used.

data equally unless clear safeguards are implemented, so security is a top priority. Businesses should invest in secure and governed data platforms with robust encryption and tokenization strategies. Consistently applying these measures across on-premises and cloud environments ensures comprehensive protection against breaches and cyber threats.

Navigating regulatory compliance and data governance

As governments introduce stricter data privacy regulations, companies must adapt to evolving compliance requirements. Deploying AI agents adds another layer of complexity, particularly when cross-border data flows are involved. A zero-trust security model, which ensures no user or system is automatically trusted, can help businesses meet these regulatory demands. Organisations need full visibility into where customer data is stored, apply appropriate access controls, and be prepared to generate detailed audit reports when required. Mechanisms for data anonymisation and deletion should be integrated to align with legal and consumer expectations.

Solutions offering unified governance mitigate privacy risks by ensuring that sensitive information is only accessible to authorised individuals.

Embedding privacy and trust in AI adoption

Transparency is essential for fostering consumer confidence in AI-driven processes. Companies should implement ‘Privacy by Design’ principles, ensuring data protection is embedded from the outset in AI models and digital services. Consumers, on the other hand, should adopt a ‘trust but verify’ mindset, and stay informed about how their data is collected and used. Organisations that prioritise clear communication and ethical data practices not only reduce security risks but also strengthen long-term brand reputation and success. As AI continues to shape the world digitally, balancing innovation with responsibility is critical. Businesses that integrate robust data privacy strategies will be better positioned to drive sustainable growth while maintaining trust in an AI-powered future. www.cloudera.com HEAR FROM THE AMBASSADORS

Safeguarding critical data

According to the recent PwC Global Consumer Insights Survey, 40% of Middle East consumers are wary of providing their personal data on social media and websites. In the Middle East, where digital transformation is rapidly progressing, data privacy is a top priority. Nations such as the UAE and Saudi Arabia have implemented stringent data protection laws, emphasising the need for businesses to proactively enhance their security measures. Organisations must secure personally identifiable information (PII) to maintain consumer trust. AI systems process all

48 | SECURITY MIDDLE EAST | MAY 2025

“As AI systems grow more sophisticated and capable of independent decision-making, the Middle East is uniquely positioned to lead in building secure and ethical digital ecosystems. The region has embraced innovation with enthusiasm and now has an opportunity to champion global standards in data governance and agentic AI. By embedding privacy-by-design principles and fostering a culture of trust and transparency, AI can be developed and deployed responsibly. With the right policies, collaboration, and investment in capacity-building, the future of AI in the region looks promising: one where technology enhances lives while upholding fundamental rights and ensuring long-term digital resilience.” Betania Allo Cyber lawyer, policy expert and thought leader


Powering Interoperability in the Middle East

Standardizing IP Connectivity for Physical Security With 32,000+ ONVIF conformant products

onvif.org/middle-east


PROMOTIONAL FEATURE

BEYOND THE GAME Al Thuraya Holdings explores the idea of culturally intelligent security leadership in Middle Eastern and African sports events As the global sports spotlight increasingly shines on the Middle East and Africa, the stakes behind the scenes have never been higher. Stadiums may host the spectacle, but it’s the invisible systems — the planning, the protection, the coordination — that ensure these events run safely, smoothly and in a way that respects the host nation’s identity. From our first major event — the Formula 1 Grand Prix in Abu Dhabi in 2009 — to the NBA Global Games in Abu Dhabi, the Basketball Africa League, the USA Men’s Olympic Basketball Team’s multi-country tour, and Basketball Without Borders (BWB) Games across Europe, Africa and the Middle East, through to past FIFA tournaments in Russia and Doha, our group of companies — including Al Thuraya Consultancy, ICE24 and trusted regional partners — has been deeply embedded in making these events happen securely, respectfully and in alignment with local context. What sets our work apart is not just what we do, but how we do it — through multi-stakeholder coordination, cultural

50 | SECURITY MIDDLE EAST | MAY 2025

intelligence, and deep-rooted local trust and human risk management approach.

something often missed in international event planning.

Security isn’t just a perimeter

Cultural fluency Is a security asset

“Every major sporting event we support is approached as a complex and evolving system, not a static venue,” commented Jeremiah Davis, Vice President of Strategy and Consultancy. “That means engaging national authorities — from Ministries of Interior, Defense, Health, Transportation, Foreign Affairs and Sport — and ensuring that all players, national and local, are aligned from the start.” Success hinges on respecting local governance structures. That means working with municipalities, law enforcement, civil protection units and private partners to align responsibilities, avoid duplication and ensure seamless decision-making. In many countries, this also includes implementing temporary regulatory frameworks to clarify legal authority, enable joint operations and accelerate communication between agencies —

“In the Middle East and Africa, you can’t separate security effectiveness from cultural understanding,” said Moataz Ahmed, Head of MENA Regional Operations. “Security personnel become the face of the event. How they interact with fans, how they navigate gender norms, and how they respond in pressure situations is just as important as how well they follow protocol.” Our operations place strong emphasis on: Respect for local religious practices (e.g., screening near prayer times or handling gender-sensitive protocols) Clear, multilingual communication with crowds Community engagement to create a sense of shared responsibility — not enforcement. This has proven essential not only in stadiums, but also in fan zones, hotels,


PROMOTIONAL FEATURE

transportation hubs and surrounding soft targets.

Manpower is more than a numbers game

The selection, vetting and training of event personnel is one of the most influential factors in how secure — and respected — an event feels. “We don’t just send staff; we train teams with purpose,” explained Alain Couture, Vice President of Corporate Quality and Head of our Center of Excellence, a training and development hub dedicated to applying best practices in culturally relevant ways. “Our job isn’t to drop in foreign models, but to adapt global standards to local expectations and capacities.” Training includes: Cultural sensitivity and conflict resolution De-escalation techniques Scenario-based simulations Security technology use and emergency protocols. This approach enables a high level of service, discretion and authority, while respecting the unique social dynamics of each host country.

Planning for the real cost of safety

Security for major events can’t be an afterthought — and it certainly can’t be underfunded. “This is truly the hardest part,” said Michael Padilla Pagan Payano, CEO of Al Thuraya Holdings. “If we’re working with a multinational group that doesn’t understand the need to invest — or fails to pay local vendors properly or define measurable KPIs — problems will escalate. And when that happens, it affects service quality, morale, and ultimately, sponsor confidence. We’ve seen this happen more times than we’d like.” Davis added: “We work closely with host countries and organisers to ensure budgets are realistic, comprehensive and forward-looking.” This includes: Protection of not only stadiums, but also critical infrastructure (e.g. electricity, water, transportation) Risk mitigation for soft targets like bars, restaurants and fan zones Contingency funds for political, health or climate-related disruptions Full cost coverage for recruiting, training, equipping and supporting private security staff

Framing security budgets as long-term investments, not one-time costs.

Coordination and continuity in a shifting environment

Whether planning NBA exhibition games in the Gulf or FIFA broadcasts across 11 Russian cities, flexibility and institutional memory are essential. We support: Real-time monitoring and intelligence feeds integrated into operations Structured stakeholder knowledge transfer, especially during personnel transitions Post-event evaluations focused not just on lessons learned, but system improvement. “We encourage a collaborative spirit,” said Ahmed. “Everyone — from ministries to private vendors — must feel ownership of the security effort, not just carry out orders.”

Growth, monetisation and innovation

As the MENA region’s sports sector matures, ecosystem-building and revenue diversification have become central to its future. “There are several markets showing fantastic potential if growth is handled properly — Mexico, Russia, Egypt, Africa, and China among them,” said Padilla. “While Saudi Arabia is trying to learn to maximise monetisation opportunities, others will also need to learn and address market-specific challenges to unlock their full potential.” According to Padilla, early investment in education is critical — not just for fans, but for advertisers and commercial partners: “We must highlight value, show return on investment (ROI), and support the development of sports ecosystems — especially in emerging economies.”

Key revenue strategies include: Attracting advertisers and long-term brand sponsors Growing sports broadcasting and streaming partnerships Boosting ticketing and hospitality revenues Monetising fan experiences and digital collectibles Involving private sector players in venue management, tech and marketing Leveraging AI, ML and data analytics for fan engagement, predictive modeling and team performance. Virtual events and hybrid experiences are also rising as innovative formats — combining live sport with music, entertainment and gaming — open doors to cross-industry monetisation and immersive fan engagement. “What we’re building isn’t just security,” Padilla said. “We’re helping lay the groundwork for a viable, sustainable sports economy — one that supports local industries, creates jobs and leaves behind more than just a memory.”

A new standard for global sports security

Our group of companies believes that delivering secure sports events across the MENA, LATAM, Asia and African regions isn’t about enforcement — it’s about trust, collaboration and systems thinking. It’s about helping athletes perform, fans celebrate and cities shine — all while protecting the integrity, reputation and future of the sports industry. www.althurayaholdings.com

SECURITY MIDDLE EAST | MAY 2025 | 51


CYBERSECURITY | FUTURE OF AI

For anyone who still sees Artificial Intelligence as a technology of the future, here is the reality. It is already controlling the frontlines of security, according to Andreas Hassellöf, CEO, Ombori. From predicting cyberattacks before they happen to tracking threats in real time, AI is here, and it is redefining security across the Middle East The security paradigm in the Middle East is undergoing a profound and irreversible transformation, fuelled by the pervasive integration of Artificial Intelligence. What was once considered a futuristic concept is now the operational reality, with AI

actively controlling the critical frontlines of defence across numerous sectors. This isn’t a gradual evolution; it’s a seismic shift in mindset and methodology. From sophisticated systems capable of anticipating and neutralising cyber

intrusions with remarkable accuracy, to intelligent platforms that provide real-time situational awareness and threat analysis on an unprecedented scale, AI is no longer a peripheral tool. It has become a central pillar in the security

SECURITY MIDDLE EAST | MAY 2025 | 53


CYBERSECURITY | FUTURE OF AI

architecture of the region, redefining protocols, enhancing response capabilities and ultimately shaping a new era of proactive defence. So let’s explore the depth and breadth of this AI-driven revolution, examine the key applications, the challenges overcome and the immense potential that lies ahead as the Middle East embraces the intelligent future of security.

AI as the foundation of modern security

Machine learning and anomaly detection process vast amounts of data in real-time, helping organisations respond faster to potential threats. In Dubai and Abu Dhabi, these technologies support Smart City initiatives, making it possible to detect cyber risks and suspicious activity with greater accuracy. Facial recognition technology is transforming security across UAE airports and public spaces. AI-powered biometric systems verify identities instantly, improving security protocols while reducing delays. Predictive analytics enable law enforcement agencies to anticipate threats based on historical trends. Security is shifting from reactive measures to proactive strategies. I firmly believe that security is about predicting threats before they happen.

UAE leading the charge in AI-powered security

The future of security is being written in algorithms, not policies. And yet, policies and governance play an important role in the adoption of technology and AI for security. The UAE has been at the forefront of integrating AI into national security. Abu Dhabi’s Safe City initiative employs AI-driven surveillance to identify risks before they escalate. Dubai’s Oyoon programme uses a network of smart cameras to monitor public spaces, detect criminal activity and ensure real-time threat response. Dubai International Airport relies on AIbased biometric screening, streamlining passenger identification and reducing wait times. With significant investment in AI-driven initiatives, the UAE is reinforcing its commitment to secure digital and physical environments. The broader Middle East is also embracing AI-powered security as part of its long-term vision.

54 | SECURITY MIDDLE EAST | MAY 2025

“AI is driving the next generation of security. The combination of biometric recognition, behavioural analytics and predictive intelligence is shaping security ecosystems that are more adaptive and personalised.”

Speed, precision, and automation in security operations Security is an enabler of progress. AI enhances security by improving efficiency and minimising human error. AI-driven drones and robots assist law enforcement in surveillance, crowd control and search operations. AI-based cybersecurity systems identify phishing attempts, unauthorised access and malware attacks in milliseconds. These capabilities help organisations strengthen their defences against evolving cyber threats. Many businesses in the region recognise cyber risks as a major challenge. Investing in AI-driven security solutions has become essential for longterm resilience.

Challenges in AI-driven security

While AI enhances security, it presents challenges related to privacy, ethical considerations and potential misuse. Facial recognition technology has raised concerns about data privacy, leading to discussions on how to balance security with individual rights. Cybercriminals are using AI to create deepfake frauds and voice cloning schemes, making digital identity protection more complex. The cost of AI implementation remains a key factor for organisations considering large-scale adoption. Ensuring AI is used responsibly requires

governance frameworks and policies that address security risks while encouraging innovation. The UAE and Saudi Arabia are actively working on ethical AI policies to establish clear guidelines for their application.

AI as the future of security

AI is driving the next generation of security. The combination of biometric recognition, behavioural analytics and predictive intelligence is shaping security ecosystems that are more adaptive and personalised. The UAE’s National AI Strategy emphasises the role of AI in creating safer communities and stronger digital infrastructures. The region is establishing itself as a leader in AI-driven security. By integrating AI into national security frameworks, businesses and governments are taking steps to stay ahead of potential risks. The approach is strategic, combining innovation with responsibility to ensure a secure future. As AI continues to advance, security strategies will evolve alongside it. The Middle East is in a strong position to set a global benchmark for AI-powered safety, ensuring a more resilient digital and physical environment for the years ahead. www.ombori.com


Your Investigative Edge. Forensic Analysts | DFIR Leaders | eDiscovery | SOC | HR | Legal

Uncover the truth and reduce risks by giving investigative teams an advantage with stronger digital evidence.

Request a free trial or personalized demo by scanning the QR code


CYBERSECURITY | DETERRENCE

UNLOCK CYBER DETERRENCE Will Candrick, Senior Director Analyst at Gartner, looks at what could be holding back the adoption of cyber deterrence strategies Cyber Deterrence Exploits Attacker Motivations Cyber deterrence offers a compelling, yet often overlooked addition to traditional cybersecurity measures. Despite its potential, few cybersecurity leaders have implemented formal deterrence programmes. Unlike the oftenmisunderstood ‘hack back’ strategies, which can antagonise adversaries, cyber deterrence focuses on discouraging attacks through legitimate means. This presents a significant opportunity for CISOs to redefine cybersecurity strategies by clearly articulating what cyber deterrence entails and dispelling common myths.

Disrupt how attackers monetise exploits

Profit

Maximise

Anonymity

Cyber deterrence

Expose attackers and their techniques

Attacker motivations

Impose consequences on attackers

Repercussions

Minimise

Costs

Inflict direct and indirect costs on attackers

Overcoming common myths

To establish a sustainable deterrence programme, it is crucial to debunk prevalent myths that hinder its adoption: • Myth: Cyber deterrence means ‘hacking back’, evoking illegal strategies that can provoke, rather than deter, adversaries. Reality: Cyber deterrence includes a variety of tactics, such as bug bounty programmes, ‘name and shame’ initiatives, honeypots and ransom payment ‘claw backs’, all of which discourage attackers without resorting to illegal behaviour. • Myth: ‘Proactive’ cybersecurity measures offer deterrence. Many proactive measures, like threat hunting and continuous threat exposure management (CTEM), focus solely on improving protection and detection. Reality: Effective cybersecurity programmes can preemptively discourage adversaries, preventing attacks before they begin, rather than merely protecting against and detecting attacks already in progress. • Myth: Adversaries are relentless and incorrigible. Continuous cyberattacks can create a bias that cybercrime is beyond rational behaviour. Reality: Cybercriminals are rational actors who respond to incentives, both positive and negative.

Source: Gartner

Effective cyber deterrence programmes

Gartner predicts by 2027, over 75% of large enterprises that deploy a cyber deterrence tactic will increase their adoption of deterrence measures. Currently, while some organisations use ad hoc deterrence tactics, few have formalised programmes. This presents a significant market opportunity for leaders to develop and refine cyber deterrence strategies, which will alter attacker behaviours and reshape the threat landscape. For instance, successful programmes will track and report the percentage of automated malicious domain takedowns occurring preattack. As organisations optimise this metric, adversaries will shift to attack vectors requiring minimal preattack infrastructure, further transforming the threat landscape. To capitalise on these trends, creating an effective cyber deterrence programme requires integrating the concept of cyber deterrence across the organisation by engaging stakeholders from various departments. By positioning deterrence as a complementary strategy to established cybersecurity practices

like protection, detection, response and recovery, organisations can foster a holistic security approach that proactively addresses threats. Gartner’s PARC Framework is a crucial tool for implementing cyber deterrence. It addresses four main motivations of attackers: Profit, Anonymity, Repercussions and Costs (Figure 1). By tailoring deterrence strategies to these motivations, CISOs can develop a systematic approach to discourage cyberattacks. Additionally, developing a robust process to identify threat actors, understand their motivations, and implement targeted deterrence tactics is crucial. This process should be dynamic, with regular evaluations and improvements, allowing stakeholders to engage in constructive discussions and explore innovative cybersecurity strategies. By continuously refining these tactics, organisations can stay ahead of evolving threats and enhance their overall security posture, ultimately achieving a more resilient cybersecurity environment. www.gartner.com

SECURITY MIDDLE EAST | MAY 2025 | 57


N EW World-leaders in Life Safety Systems

UL268 7th Edition Compliant Conventional Detectors • Dual LED Technology • Advanced Algorithms • Automatic Drift Compensation • Redesigned Smoke Chamber

Unparalleled generation of UL detectors now available for all regions that require UL approval.

Visit us at Intersec, Hall 4 / Stand B20

Learn more


RANSOMWARE | PAYMENTS

As 2024 saw more ransomware attacks but fewer ransom payments, Ray Kafity, Vice President – Middle East Turkey and Africa (META) at Halcyon, asks, what does it mean? In 2024, ransomware operations continued to wreak havoc worldwide, including across the Middle East. According to a UAE Cyber Security Council and CPX report, more than 223,800 assets in the UAE alone are potentially exposed to cyberattacks, with half of critical vulnerabilities unaddressed for over five years. Critical sectors — ranging from healthcare to finance — were especially affected in countries such as the UAE and Saudi Arabia, with attackers exploiting widespread vulnerabilities and launching high-profile attacks that paralysed the operations of hundreds of organisations. However, despite the record volume of incidents, global ransomware payments

declined significantly, dropping 35% from 2023’s record $1.25 billion to a mere $814 million. Despite the sharp decline in overall payments, ransomware incidents actually increased in 2024, with 4,634 attacks compared to 4,400 in 2023. This shift suggests that newer threat actors are focused on quantity over high-value targets. Notably, the UAE witnessed a 58% growth in ransomware groups, demonstrating how regional threat actors see Middle Eastern organisations — especially in government, finance and energy — as lucrative targets. The most striking trend was a steep fall in payments in the second half of

2024, where attackers collected only $321 million compared to $492 million in the first half of the year — the largest sixmonth drop ever recorded, according to a recent Chainalysis study. This unexpected decline is largely attributed to aggressive law enforcement actions. The FBI and UK’s National Crime Agency (NCA) dismantled major ransomware groups, including BlackCat /ALPHV and LockBit, disrupting their operations. Though initially resilient, BlackCat /ALPHV collapsed after executing an ‘exit scam’ following its $22 million ransom from Change Healthcare. LockBit’s influence also waned after law

SECURITY MIDDLE EAST | MAY 2025 | 59


RANSOMWARE | PAYMENTS

What’s influenced the decline in ransom payments?

“Despite the record volume of incidents, global ransomware payments declined significantly, dropping 35% from 2023’s record $1.25 billion to a mere $814 million”

enforcement identified its leader, Dmitry Khoroshev, and imposed US sanctions, making ransom payments more difficult. While new ransomware groups emerged, they lacked the sophistication and reach of their predecessors, leading to smaller ransom demands, often in the tens of thousands rather than millions. Moreover, improved cybersecurity measures, heightened awareness and enhanced cryptocurrency regulations — also increasingly adopted in parts of the Middle East — further hindered ransomware actors. Even so, the Middle East continues to experience sophisticated cyberattacks; the same UAE report notes that drive-by downloads, phishing and web server compromises remain popular entry points. With AI-driven methods on the rise, social engineering and deepfake technologies add new layers of risk — particularly in a region of growing geopolitical significance. While law enforcement actions have momentarily disrupted the ransomware ecosystem, for example, in the LockBit ransomware conspiracy, history has shown that such trends can reverse, as evidenced by previous fluctuations in ransomware payments from 2020 to 2023.

60 | SECURITY MIDDLE EAST | MAY 2025

Several factors contributed to the downward trend, most notably: LEO actions: While limited, law enforcement operations targeted the most prolific groups at the time — LockBit and BlackCat/ALPHV — whose volume of attacks dwarfed other threat actor groups. This may have been a temporary lull, as LockBit never completely went away and recently announced they were releasing a new LockBit4 payload in February 2025 so we may know very soon just how successful the LEO actions against the groups actually were. Attacks are underreported: After spending seven months infiltrating the Hive ransomware gang’s operations, the FBI concluded that only 20% of attacks were being reported to law enforcement, so the public lacks an accurate estimate of the number of ransomware attacks annually. Additionally, private organisations who do not handle regulated data are not necessarily required to disclose an attack. More threat groups have emerged in 2024: Some, like RansomHub, quickly rose to the top of RaaS group rankings. Others tend to collect smaller payments, significantly below the average. As previously mentioned, the latest reporting indicates there were more attacks in 2024, but the total sum of ransom payments was less than the record set for 2023. This could be due to either more groups with less experienced operators, or by choice, since they decided that multiple smaller ransom payments were a better option than fewer large ransoms that would draw the attention of LEO. Better preparation: Another factor is that victim organisations may be a little better prepared and seeking out experienced consultants and incident responders who together, can make the attacks less disruptive and are negotiating smaller ransom payments. Diversification: And as some threat actors move to more straight data extortion attacks, where they exfiltrate sensitive data for ransom and forego the encryption stage of an attack, they may be finding other ways to monetise that data beyond collecting a ransom from the victim — we are seeing more data brokers emerging within the larger ransomware economy.

US elections: And to get very speculative, let’s remember that 2024 was a major election year in the US, with a lot at stake for nation-states like Russia who give safe harbour to ransomware operators — the 2022 ‘lull’ has in part been attributed to Russia redirecting some cybercriminal resources to conduct more statesupported operations against Ukraine and their western supporters, so this decline in payments could also be in part the result of the most talented ransomware operators being yet again pulled off their cybercriminal activities to support Russian state priorities around the US election, so the drop was most precipitous in the second half of the year. Whichever combination of factors contributed to the decline, it is likely temporary. Ransomware and data extortion attacks are very lucrative and involve almost zero risk for the operators. As well, many attacks also have the dual purpose of supporting the geopolitical ambitions of nations like Russia. We will not see threat actors abandoning the model any time soon.

A Middle East perspective

In the Middle East, the overall scenario echoes global trends yet carries unique challenges. Ransomware groups have expanded operations in the UAE alone, and the Middle East continues to report some of the highest data breach costs globally. The UAE Cyber Security Council and CPX recommend advanced cybersecurity measures, better incident response and heightened vigilance against AI-driven threats. Collaboration among government agencies, private organisations and international law enforcement has never been more critical to safeguard a region central to global finance and energy. For businesses and government entities across the Middle East, the lesson is clear: while ransom payouts might have dipped globally, attack volumes — and the sophistication behind them — are growing. A coordinated, proactive defence strategy remains vital to counter ransomware and related cyberthreats. Bolstering security posture today will pay dividends, especially as AI-driven attacks evolve and new threat actors emerge. www.halcyon.ai


SECURITY M I D D L E E AS T

MAXIMISE YOUR INVESTMENT AND EXPOSURE AT SAUDI ARABIA 2025

Ensure your investment and exposure to the Middle East marketplace is maximised with a fully integrated Expo-Live package. Capture live video content from exhibition show floors around the world, highlighting your company’s products and presenting your chosen thought-leader in the best light. This content is streamed across our multi-channel platform in the days, weeks and months following the exhibition. With calls-to-action, and lead generation tools, our EXPO-live packages are a proven method of positioning your organisation as leading resource across the Middle East region.

TO BOOK YOUR EXPO LIVE PACKAGE AT AN EVENT YOU ARE ATTENDING CONTACT THE TEAM TODAY: Ryan Bickerton Ryan@securitymiddleeastonline.com +44 (0) 1752-265802

securitymiddleeastmag.co.uk


CYBERSECURITY | TDS

Cloak and dagger Renée Burton, Vice President of Threat Intel at Infoblox looks closely at how malicious Traffic Distribution Systems are powering cybercrime When an organisation is targeted by a cyberattack the fallout can be catastrophic, but at least it can be acted upon and remedied. The only thing more damaging to a business than the threat they can see, is the one they can’t. This is something ‘cloaking’ takes full advantage of – a way for malicious actors to disguise malicious websites and evade detection while delivering harmful payloads to individual users. By

62 | SECURITY MIDDLE EAST | MAY 2025

presenting legitimate content to security teams while directing victims to malicious content, cloaking attacks can operate in plain sight and strike repeatedly from the shadows. At the heart of this deception lies something called a Traffic Distribution System or TDS – a backend system that filters and redirects web traffic based on factors like user location, device type, browsing behaviour and other identifying

signals. Once an innocuous technology designed to help marketers track users and manage incoming traffic, TDSs are now one of the most important weapons in a cybercriminal’s toolkit. Like marketers, attackers can use TDSs to filter traffic, but unlike marketers, they aren’t trying to advertise or run A/B tests on their websites – they’re trying to show victims the right content to deceive, steal and extort with ease. TDSs


CYBERSECURITY | TDS

“Picture a toll booth on a highway that branches off into multiple roads ... Regular commuters (real victims) are directed down a dangerous, hidden road full of traps (malicious websites), while police cars and inspectors (security researchers) are waved through on a clean, well-paved route that looks completely safe.” route that looks completely safe – never realising their fellow commuters are in danger. Victims can unknowingly get pulled into a malicious TDS in a number of ways. It could be as simple as clicking on a fake search result or on an innocent-looking advert, but once they’re in the malicious TDS they have no real way of knowing.

How TDSs power cloaking and ‘malvertising’

allow them to selectively serve malicious content to potentially vulnerable victims while redirecting security researchers and automated scanners to harmless decoy pages – hence ‘cloaking’ – making detection and takedown efforts seemingly impossible. Picture a toll booth on a highway that branches off into multiple roads. When cars (users) approach, the booth scans their license plates (fingerprints like location, device type and behaviour) to identify them. Regular commuters (real victims) are directed down a dangerous, hidden road full of traps (malicious websites), while police cars and inspectors (security researchers) are waved through on a clean, well-paved

A cloaked domain, on its own, is simply a misleading website. A TDS, however, makes that deception dynamic, ensuring that only certain users – those deemed worthwhile targets – are funnelled toward malicious content while security teams and monitoring systems are redirected elsewhere. The level of precision that modern TDS enables renders traditional detection efforts more or less obsolete. The ability to selectively serve malicious content makes TDS a key component of ‘malvertising’, or malicious advertising. Threat actors buy ad space on legitimate websites, embedding links that route unsuspecting users through a TDS. The system evaluates the visitor, and if they fit the attacker’s criteria, they are redirected to a malicious landing page – often hosting malware, phishing scams or exploit kits. Because the initial ad placement occurs on legitimate websites, victims may not suspect anything unusual, while security teams struggle to trace the attack’s origin. Compounding the issue, many modern TDS are highly

adaptable, leveraging fingerprinting techniques to detect virtual machines, sandbox environments or suspicious activity – immediately serving benign content to anyone who might be analysing the threat. The effectiveness of TDS-driven cloaking means these systems are now deeply embedded in the cybercriminal ecosystem. They don’t just facilitate individual attacks; they serve as the backbone of large-scale malware distribution operations. Attackers use them to obfuscate phishing campaigns, hide malware-laden downloads and even deploy ‘infostealers’ – malicious software designed to harvest credentials and sensitive data. High-profile cybercriminal groups such as VexTrio have leveraged 70,000 ever-changing domains to route victims via TDSs through multiple layers of redirection, making attribution and mitigation all the more difficult.

Fighting back against malicious TDSs

Cloaking and TDS-driven threats are particularly insidious, and no single defence mechanism can fully neutralise them. Security researchers, threat intelligence teams and cybersecurity firms have worked to reverse-engineer TDS mechanisms, uncovering the infrastructure behind large-scale campaigns and mapping out their tactics. Some companies such as Guardio focus on detecting cloaking within web content and advertisements, while others, like

SECURITY MIDDLE EAST | MAY 2025 | 63


CYBERSECURITY | TDS

“As cybercriminals continue to refine their evasive and deceptive tactics, detection and mitigation will continue to be an uphill battle for businesses” SURBL, analyse DNS infrastructure to identify and block malicious domains before they can do harm. By tracking TDS operators, analysing the networks they rely on, and sharing intelligence across the industry, defenders have made strides in exposing malicious adtech, but the challenge remains significant. Attackers constantly adapt, using domain rotation to stay ahead of detection efforts. Progress is being made, however, particularly through collaborative efforts across the cybersecurity industry. DNS security has proven to be one of the most effective tools against TDS, as it can prevent victims from ever reaching malicious destinations, regardless of how attackers manipulate web traffic. However, industry action alone isn’t enough – governments and law enforcement must take a more active role in dismantling malicious ad networks and prosecuting those behind them. In recent years, international takedowns have disrupted major cybercriminal operations, but TDS operators continue to rebuild and evolve. The more intelligence is shared between security firms, policymakers and enforcement agencies, the greater the chance of disrupting the infrastructure that enables cloaking and malvertising at scale.

What can users do?

While large-scale efforts to combat TDS and cloaking continue, individual users can take steps to reduce their risk of falling victim to these attacks. First and

64 | SECURITY MIDDLE EAST | MAY 2025

foremost, users should be cautious when clicking on online ads, especially those that promise too-good-to-be-true offers or redirect unexpectedly. Blocking website notifications from unfamiliar sites can help prevent deceptive pop-ups, which are commonly used in malvertising campaigns. Users should also be wary of fake CAPTCHA challenges or prompts that request unusual interactions, such as pressing multiple keys or verifying through SMS – these are common tactics used to confirm targets. Keeping browsers and security software updated may seem like trivial advice, but it’s a vital line of defence for the average user. Using a trusted DNS security service can reduce exposure to harmful redirects by blocking known

malicious domains at the network level. The more awareness users have, and the more of these steps they take, the harder it becomes for cybercriminals to operate in the shadows. Cloaking isn’t just another cybercriminal tactic, it’s a battle for control over the internet. As cybercriminals continue to refine their evasive and deceptive tactics, detection and mitigation will continue to be an uphill battle for businesses, security teams and policymakers – but dismantling these malicious networks is possible. Until then, users should keep their guard up and take a zero-trust approach online. www.infoblox.com

HEAR FROM THE AMBASSADORS

“Traffic Distribution Systems play a crucial role in managing and directing online traffic effectively, ensuring that users receive a seamless experience. In the realm of cybersecurity, the protection of these systems is vital, as they can be targets for cyberattacks such as DDoS. From personal experience, I’ve noticed how resilient TDS can enhance site performance, but they are only as strong as their security measures. Ensuring robust security protocols not only protects data but also maintains user trust, which is essential for any business operating online today.” Ian Keller global Information Technology Expert


If you are looking to engage your audience, and present your products to senior decision-makers across the Middle East region, a hosted Webinar is the perfect platform to bring your products, services or ideas to the market This is your companies opportunity to engage directly with senior decision-makers and generate new enquiries by delivering thought-leadership presentations. Utilise Security Middle East’s webinar platform today to reap the benefits... In 2024 our webinars had: ■ An average of 120+ Registrations per Webinar ■ Over 10,000+ Registration Page Hits ■ Bespoke Pre-Webinar and Post-Webinar Email Campaigns ■ Confirmed Converted sales enquiries following webinar sessions.

Contact Ryan Bickerton for more information: Ryan@securitymiddleeastonline.com +44 (0)1752 265 802 securitymiddleeastmag.com/webinars


CASE STUDY | IDIS

CASE STUDY

IDIS Looking to expand and modernise its video surveillance capabilities, ENTP, part of a stateowned oil company in Algeria, turned to IDIS The challenges

Overview

ENTP is part of Algeria’s state-owned oil company, Sonatrach Group, which supplies essential petrochemicals domestically and internationally. Sonatrach’s operations are vital to the country’s energy security and are a key part of Algeria’s critical national infrastructure. To keep up with evolving risks, and ensure continued safe and efficient operating practices, ENTP planned a major upgrade programme, ENTP EYES. The programme’s objective was to modernise and expand video surveillance, to improve surveillance coverage and capability, including taking advantage of the latest advances in AI-powered video analytics.

66 | SECURITY MIDDLE EAST | MAY 2025

The objectives of the ENTP EYES project included ensuring a fast, efficient response to incidents, improving preventive maintenance and achieving the safest working conditions with nearincident detection. Achieving this would entail delivering the upgrade at almost 70 geographically dispersed wells and drilling facilities, as well as at ENTP’s headquarters. Oil, gas and petrochemical industries face unique and multi-layered security challenges across their expansive sites with many upstream and midstream operations found in remote and harsh locations – facilities including exploration, pipelines, storage facilities and hubs for the transportation of crude oil to refineries. Across this complex landscape video surveillance systems are a key measure for protecting personnel, assets and facilities, and the sector has remained at the forefront of using the latest tools and capabilities. To mitigate the challenge of intrusion, including potential threats to physical infrastructure from would-be saboteurs, surveillance is required to cover areas such as access points, perimeters and restricted higher-security internal zones. For these locations, seamless integration with access control systems and perimeter intrusion detection technologies is also crucial. AI-enhanced analytics, a new generation of mobile apps, robust transport solutions combining 4K surveillance and GPS, and push-


CASE STUDY | IDIS

to-talk communications devices are also transforming security and safety capabilities. For ENTP, an upgraded solution was needed to leverage the latest IP video functionalities – including AI analytics and more powerful VMS – and ensure long-lasting, optimum camera performance and image quality even in harsh operating environments. As part of the upgrade, ENTP also wanted to significantly expand coverage, remove surveillance blind spots and improve resilience with failover to protect against a range of fault conditions. With extra coverage and higher image quality, ENTP also knew it needed to increase and optimise video data storage capacity. The company wanted to do this without significantly increasing operating costs. To address these and other priorities – including demanding project timelines and the need for minimal disruption and system downtime during implementation – EPE RETELEM SPA, an advanced telematics and IT solutions provider, recommended an end-to-end solution from IDIS.

The solution

The multi-site video upgrade project was designed with IDIS Solution Suite (ISS) chosen as the most robust, flexible VMS platform, while intrinsically safe ATEXrated and explosion-proof cameras were specified, along with IDIS’s superior widearea and fisheye cameras that eliminate blind spots. ISS stood out for its user-friendly interface and its advanced capabilities, including AI-powered analytics, robust cybersecurity and failover protection against video data loss in the event of network instability or failure. ISS is a feature-rich, intuitive software platform

“Our IDIS video solution, delivered by EPE RETELEM SPA, assures us of complete domain awareness across our operations. It has further enhanced our response capabilities with advanced, automated detection and the latest highly accurate AI analytics functions.”

ENTP spokesperson Mustapha Mehessim

that utilises the latest version of IDIS Deep Learning Analytics (IDLA) to deliver powerful AI functionality, with IDLA significantly reducing false alarms and allowing more efficient responses through accurate detection of a wide range of potential threats and eventsof-interest – from line cross to loitering – with AI-powered alerts and automated notifications. IDIS Solution Suite also allowed the most cost-efficient system design for ENTP, with reduced waste and duplication thanks to easy integration of third-party technology, including legacy equipment that was already being used. Efficient, centralised management of cameras across the geographicallydispersed sites was essential and IDIS Solution Suite’s Federation Services made it easy to build a robust, streamlined architecture. Centralised management allows remote access, including live-view, playback, footage retrieval and camera configuration, while the IDIS Mobile Plus

app puts IDIS’s enterprise-class VMS at remote workers’ fingertips to ensure real-time security and safety management while on the move. With extended video retention required across so many sites, IDIS’ H.265+ technology optimised storage and minimised network strain.

The results

IDIS plug-and-play DirectIP® technology minimised installation time and further reduced costs, with assured instant and seamless operability of all devices and video management software. The scalable IDIS Solution Suite VMS is easy to use, while remote diagnostics has eliminated the maintenance burden and ongoing annual license fees associated with conventional video solutions to ensure a low total cost of ownership. IDIS advanced AI-powered analytics now support security staff with accurate 24/7 alerts and notifications to ensure detection and a rapid response every time potential risk events occur.

About IDIS As South Korea’s largest in-country video surveillance tech manufacturer IDIS has built a track record delivering large-scale, end-to-end surveillance and AI projects across the region. As well as supplying major government sector and critical infrastructure projects, IDIS provides advanced, end-to-end solutions for commercial applications including: banking; logistics & warehousing; retail; education; hospitality; and critical infrastructure. The IDIS Middle East and Africa operation has grown continuously since its debut in the region a decade ago, achieving 20% CAGR in 2024. On this project, for ENTP, IDIS worked with its partner, specialist integration contractor EPE RETELEM SPA. www.idisglobal.com SECURITY MIDDLE EAST | MAY 2025 | 67


INTERVIEW | EXECUTIVE PROTECTION

Industry Interview Meshal Aljohani, CPP, PSP, PCI, Security Operations Specialist talks with Kevin Palacios, ASIS International Executive Protection Community – Chair; HELPS Latam – CEO; and IFPO – Latin America Regional Director Can you tell us about your journey in security and what interested you in working in this field? My journey into security began over two decades ago when I transitioned from a corporate travel role to executive protection. I faced numerous challenges without any prior military or law enforcement experience, but my passion for safeguarding individuals and the potential for personal and career growth opportunities motivated me to continue. I immersed myself in learning by attending global training programmes and studying security best practices and risk management standards, ultimately obtaining several prestigious professional board certifications from IFPO and ASIS International. Over time, I realised that executive protection involves more than operational level activities; through strategic risk management, it can become a business-enabling process. This insight inspired me to develop and refine the Executive Protection Risk Management (EPRM) framework.

What are the key components of an effective executive protection risk management strategy, and how should organisations tailor it to different threat levels?

An effective EPRM strategy has four key components: comprehensive datadriven risk assessments, intelligence-led operations, a collaborative culture among all stakeholders and a commitment to continuous improvement. Organisations need to tailor their strategies by thoroughly understanding their specific Threat, Vulnerability and Risk (TVR) landscape. For high-risk individuals, this involves integrating real-time Open Source Intelligence (OSINT) monitoring, scenariobased planning and implementing stringent controls. For those at lower risk,

68 | SECURITY MIDDLE EAST | MAY 2025

it’s essential to maintain baseline security protocols and conduct periodic threat assessments. Flexibility and scalability are crucial, as risk levels can change, and protection strategies should adapt accordingly.

What role does intelligence gathering and advance planning play in mitigating risks, and how can organisations enhance these capabilities?

Protective intelligence is an essential component of any executive protection programme. Proactive risk mitigation depends on collecting, analysing and applying intelligence from various sources, including Open Source Intelligence, Human Intelligence (HUMINT) and advance surveys from the field. Organisations can enhance these capabilities by investing in AI-driven tools that automate data analysis, which leads to faster and more accurate threat detection. Additionally, establishing dedicated advance and intelligence teams and fostering collaboration with external security networks ensures that planning is informed, thorough and adaptable to changing threats.

What are the most prominent challenges organisations face when implementing executive protection risk management, and how can they be overcome?

One major challenge is balancing security with executive convenience. Executives often resist measures they see as intrusive. Effective risk communication with protects is essential to address this issue, and protection strategies should be discreet and seamlessly integrated into daily routines. Another challenge is the rapidly evolving threat landscape, especially in

today’s digital era. Organisations need to invest in ongoing training and technology upgrades to stay ahead of these threats. Finally, ensuring stakeholder buy-in can be challenging. To secure support and resources, it is crucial to demonstrate the value of Executive Protection Risk Management (EPRM) through data-driven assessments and clear communication of the triple Return on Executive Protection Investment (ROEPI).

What best practices would you recommend for organisations looking to enhance their executive protection programmes, particularly in high-risk regions?

In high-risk regions, organisations should implement layered Executive Protection Programmes (EPP) that involve managers, team leaders, agents and protects. Key components of any EPP include robust protective intelligence, consistent application of travel risk management protocols and emergency contingency planning. Utilising technology, such as AI, for real-time threat monitoring and risk assessments, and automated updates to these assessments is critical. Providing executive training on personal safety and establishing clear communication channels between executives, security teams and local authorities further enhances protection. Moreover, adhering to international standards like ISO 31000, ISO 31030, ASIS SRA, and ASIS ESRM ensures that the protection programme is compliant, systematic and adaptable. I have summarised everything I believe an Executive Protection Manager (EPM) needs to know about executive protection programmes in the first volume of my EPRM book, available on Amazon.


LED illuminators that go to the EXTREME for your safety and security

EXTREME DISTANCES

EXTREME DURABILITY

EXTREME FLEXIBILITY

Offers up to 500m (1640 ft) of infrared illumination powered by PLATINUM Elite SMT LED technology for peak performance and reliability.

Boasts IP67 and IK09 ratings, operates in temperatures from -50°C to +75°C, and offers enhanced protection against salinity, humidity, and vibration.

Angle of illumination from 10° - 120° can be easily adjusted by changing the VARIO2 holographic lens insert to match the specific camera field.

www.raytecled.com


INDUSTRY MONITOR | EVENTS

2025 May

June

August

September

October CYBERSECURITY MONTH

6-8 May

17–19 June

14–16 August

18 September

14–15 October

GISEC GLOBAL

CRITICAL COMMUNICATIONS WORLD

SECUTECH

THE CISO MIDDLE EAST SUMMIT 2025 (UAE EDITION)

OFSEC

Dubai World Trade Centre, UAE

SECC, Ho Chi Minh City, Vietnam

Dubai

Oman Convention & Exhibition Centre, Muscat, Oman

secutechvietnam.tw. messefrankfurt.com

exeglobe.com/ciso-middle-east-summit-2025/

ofsecevent.com

13 May

24-26 August

SECURITY MIDDLE EAST CONFERENCE

NEXT GENERATION IOT EXPO

30 September– 2 October

Riyadh, Saudi Arabia

RICEC, Riyadh, KSA

securitymiddleeastconference. com

ngiotex.com

gisec.ae

13–15 May WORLD POLICE SUMMIT

Brussels Expo, Belgium critical-communicationsworld.com

November

2026

World Trade Centre, Dubai

worldpolicesummit.com

20 May

18–21 November

DATA INNOVATION SUMMIT MEA

MILIPOL PARIS

Conrad, Dubai

Paris Nord Villepinte, France

mea.datainnovationsummit. com/tickets/

milipol.com

January

12–14 January INTERSEC Dubai World Trade Centre

intersec.ae. messefrankfurt.com

70 | SECURITY MIDDLE EAST | MAY 2025

INTERSEC SAUDI ARABIA Riyadh, KSA intersec-ksa.ae.messefrankfurt.com/ksa/en.html


Reimagine Cybersecurity Intelligence-driven security solutions.

Big Data Dark Web Cyber Risk Threat Intelligence

www.resecurity.com

contact@resecurity.com


Turn static files into dynamic content formats.

Create a flipbook
Issue 143: May 2025 by Publications International - Issuu