Arabic-Native DLP · Built for Saudi Arabia

Hisn.

Real-time scanning of Teams, Beem SMS, Outlook & SharePoint with AraBERT AI trained on Arabish (Arabic typed in Latin letters), Gulf dialect, and Saudi patterns. NCA ECC 2.0 · PDPL · SAMA · me-central-1.

≥85%
Arabic NLP Accuracy
<15%
False Positive Rate
47 ctrl
NCA ECC Controls Mapped
HISN · AI ANALYSIS PIPELINE
Example
incident_id:HSN-2026-04821
channel:Microsoft Teams · 22:41 AST
message_ar:"خذ هالملف وحوّله برة"|
L1_lang:Najdi Arabic · conf 0.97
L2_pii:IBAN_PATTERN · FILE_SHARE · 0.89
L3_intent:DATA_EXFILTRATION · 0.82
L4_context:external_recipient · after_hours
COMPOSITE RISK SCORE
PII × 0.40
0.91
Intent × 0.30
0.82
Behavior × 0.10
0.65
Context × 0.20
0.78
risk_score:0.87 · CRITICAL
action:BLOCK + SOC_ALERT
nca_ctrl:ECC-1-5-2 · ECC-2-8-1
BLOCKEDNCA MAPPED143ms · AraBERT-DLP-v2.3
NCA ECC 2.0PDPL Art. 18SAMA CSFme-central-1STC CloudOn-Premises
Microsoft Teams · Real-time Interception Beem SMS · KSA Native · Live Outlook / Exchange · Phase 2 SharePoint · Document Scan · Live NCA ECC 2.0 · 47 Controls Pre-Mapped PDPL Art. 18 · AI Decision Transparency Arabish Detection · 12,400+ Terms KSA Data Sovereignty · me-central-1 SAP · Salesforce · ServiceNow Connectors AI Latency P95 <200ms Microsoft Teams · Real-time Interception Beem SMS · KSA Native · Live Outlook / Exchange · Phase 2 SharePoint · Document Scan · Live NCA ECC 2.0 · 47 Controls Pre-Mapped PDPL Art. 18 · AI Decision Transparency Arabish Detection · 12,400+ Terms KSA Data Sovereignty · me-central-1 SAP · Salesforce · ServiceNow Connectors AI Latency P95 <200ms
Integrations

Every channel your team uses. Protected in real time.

Hisn intercepts messages in-flight. No content ever stored, zero privacy compromise. Arabic AI classification in under 200ms before delivery or block.

  • Available now
  • On the roadmap

Communication Channels

Microsoft TeamsGRAPH API

Full message + file interception via Graph API proxy. Chats, channels, DMs.

Live · MVP
Beem SMSSMS API

Saudi-native messaging. Arabish-heavy. Full intercept + classification + block.

Live · KSA Exclusive
Outlook / ExchangeGRAPH API

Email body scanning, attachments, forwarding detection. Outbound + internal.

Phase 2 · Q3 2026
SharePoint / OneDriveREST API

Real-time document classification. Upload scanning. Libraries and shared drives.

Live · MVP
Hisn Safe AI InterfaceAI GATEWAY

Sanctioned employee LLM. Prompt inspect, redact, block. BYOK or ALLaM. Replaces shadow ChatGPT.

New module · Per-seatView module

Enterprise & Security

SAP ERPRFC

HR alerts, auto-case creation on DLP violations. Employee workflow automation.

Phase 2 · Q3 2026
Salesforce CRMREST

Customer data protection. Incident-to-case sync on DLP trigger. Webhook-based.

Live · Webhook
ServiceNow ITSMREST

Auto ticket creation on critical incidents. Workflow orchestration. SLA sync.

Live · Webhook
Splunk / QRadar SIEMSYSLOG

DLP events enriched with Arabic AI context, pushed bi-directionally to your SOC.

Phase 2 · Q4 2026

How In-Flight Interception Works · Zero Content Storage

Message Sent
Teams / Beem / Outlook
Hisn AI Engine
L1→L4 · <200ms
Arabic DLP engine
ALLOW
0 bytes stored
OR
BLOCK + ALERT
CISO + SOC notified

REST API

Connect any custom channel or internal system. Webhooks, event-driven, bi-directional.

Workflow Builder

No-code automation: CRITICAL → Block + CISO SMS + SAP HR + ServiceNow ticket. Visual drag-and-drop.

Azure AD / Entra ID SSO

SAML 2.0 + Microsoft Entra. Zero extra identity overhead for M365 tenants. MFA enforced.

Platform vs. Western DLP

What Purview misses,
Hisn catches.

Microsoft Purview, Forcepoint, and Symantec DLP were built for English-first enterprises. They miss Arabish, Beem, and KSA regulatory evidence, and they have no answer when employees paste into ChatGPT on personal devices.

Typical Western DLP SKUs

  • MS Purview
  • Forcepoint
  • Symantec
  • Palo Alto
Capability
Western DLP
Hisn
Arabish detection
No
Yes
Gulf / Najdi / Hijazi dialects
No
Yes
Saudi National ID · IBAN · Iqama
No
Yes
Beem SMS (KSA-native)
No
Yes
KSA sovereign cloud (me-central-1)
Partial
Yes
NCA ECC / PDPL reports (pre-mapped)
Partial
Yes
Native Arabic RTL console
No
Yes
PDPL employee appeal portal
No
Yes
Employee Safe AI gateway
No
Yes
Microsoft 365 integration
Yes
Yes
On-premises / air-gap deploy
Partial
Yes
Riyadh Arabic-speaking support
No
Yes

Typical enterprise SKUs: Microsoft Purview DLP, Palo Alto Prisma / Aperture, Symantec (Broadcom) DLP. Forcepoint follows the same gaps on Arabic & Beem. Public AI tools comparison ↓

Core Platform

Everything your SOC needs,
built for Arabic reality.

Seven integrated modules covering DLP, compliance, employee rights, plus the new AI Interface for sanctioned employee AI. All in Arabic and English.

New · Safe AI module·AI Gateway module

Safe AI for every employee.
Inside Hisn, not on the open web.

Teams block ChatGPT; employees use personal devices anyway. Hisn AI Interface is the sanctioned path: inspect every prompt, redact or block sensitive data, route to the approved model, log everything for audit.

  • Block or redact automatically

    Source code, files, credentials, national ID, IBAN, CR. Per-department policy. Block catastrophic leaks; redact inline PII and forward the safe prompt.

  • Arabic · Arabizi · Saudi PII

    Same DLP engine as channel scanning. «el iqama 1234567890» and «رقم الهوية» caught before any model sees them.

  • BYOK + department routing

    Client API keys or Hisn-managed ALLaM. Per-department allowed models, block/redact rules, and immutable audit logs for NCA ECC & PDPL.

Open Safe AI Interface →
NCA ECC 2.0PDPL Art. 18Per-seat moduleme-central-1
Hisn Safe AI · example session● Example
employee

Summarize the ACME client contract. National ID 1234567890 and IBAN SA03…4821

gateway.inspectREDACTpii: national_id, sa_iban · 41ms
policy

Sensitive fields masked before the approved model (Finance · ALLaM). PDPL-safe prompt forwarded.

assistant

Contract summary: 12-month term, auto-renewal, confidentiality clauses. No identifying data in the response.

employee

Upload customers_export.zip and analyze the columns

gateway.inspectBLOCKcategory: file_upload · SOC notified
Ask Hisn safely. Arabic or English…
EmployeeHisn proxyApproved LLMSafe answer
Safe AI vs. shadow IT

Blocking ChatGPT isn't enough.
Employees need a sanctioned path.

Firewall blocks push usage onto personal phones, invisible to SOC. Hisn is the path employees can actually use — with Arabic PII inspection Western wrappers do not provide.

Public / uncontrolled AI

The shadow path

ChatGPT is blocked. Work moves to a personal phone. The prompt never hits your DLP.

Uncontrolled tools already in use

  • ChatGPT.com
  • Microsoft Copilot
  • Edge for Business
  • Lasso / BlackFog

Hisn Safe AI

The sanctioned path

Employees chat in Hisn. Every prompt is inspected, redacted, or blocked before any model. Logs stay in KSA.

See how a prompt is inspected ↓
Capability
Public / uncontrolled AI
Hisn Safe AI
Prompt inspected before any LLM
Data leaves to the vendor
Hisn proxy, in flight
Redact Iqama / IBAN / CR in Arabic
English-centric filters
Same DLP engine as channels
Block source code and file uploads
Policy varies by vendor
Per-department block or redact
BYOK and approved model routing
Vendor lock-in
ALLaM, OpenAI, or Azure
NCA / PDPL audit trail per session
No KSA control mapping
Immutable and SOC-visible
Inference and logs in KSA
US or EU regions
me-central-1 by default
Works when ChatGPT is firewall-blocked
Drives shadow IT
Sanctioned employee UI
AI Architecture

4-layer Arabic AI
pipeline.

Every message through four specialist layers before decision. PDPL Art. 18 explainability attached automatically to every block. P95 <200ms guaranteed.

L1
Language Detection & Normalization
Arabic MSA, Najdi, Gulf, Hijazi. Arabish (12,400+ terms). Code-switching Arabic↔English detection.
L2
PII Extraction
National ID, IBAN, Iqama, +966 mobile, passport, VIP names, entity IDs, GPS coordinates.
L3
Intent Classification
6 AraBERT classifiers: data exfiltration, credential sharing, recruitment, collusion, fraud, harassment.
L4
Contextual Risk Scoring
PII×0.40 + Intent×0.30 + Behavioral×0.10 + Context×0.20. PDPL Art. 18 explainability auto-generated.
EXAMPLE RISK SCORE
PII Score0.91 × 40%
Intent Score0.82 × 30%
Behavioral Score0.65 × 10%
Context Score0.78 × 20%
Final Risk Score
0.87
CRITICALBLOCK + ALERT
PDPL Art. 18 · AI Transparency
Explainability object auto-sent to employees via appeal portal. No platform login required. 143ms · AraBERT-DLP-v2.3
Regulatory Coverage

Built for Saudi compliance.

No manual mapping. Every Hisn feature maps to a specific control, with HMAC-signed evidence ready for auditors on day one.

NCA ECC 2.0

Cybersecurity Controls

47 controls automatically mapped. HMAC-SHA256 WORM audit logs. Arabic compliance reports in under 30 minutes. Real-time control dashboard. Gap analysis with remediation.

47 ControlsFull MVPHMAC-Signed
PDPL

Personal Data Protection Law

24 articles mapped. Auto PII classification. Art. 18 AI decision transparency built-in. Art. 19 employee appeal portal. DSAR workflow. 72h breach notification. SDAIA compliant.

24 ArticlesArt. 18 Built-inSDAIA
SAMA CSF

SAMA Cybersecurity Framework

Banking sector templates. IBAN and financial data detection pre-built. SAMA audit trail. Data governance reports. Phase 2 includes full banking connector suite.

BankingPhase 2
KSA Data Sovereignty

Full Sovereign Architecture

AWS me-central-1 (Riyadh) + STC Cloud + on-premises option. All AI inference within KSA. Schema-per-tenant isolation. Air-gap for classified government entities.

me-central-1STC CloudOn-Premises
Vision 2030

Protecting Saudi Arabia's digital transformation.and AI transformation.

As KSA digitizes under Vision 2030, data protection and sanctioned AI become critical infrastructure. Hisn secures both journeys: channels, NCA/PDPL compliance, and the Safe AI Gateway, built in Riyadh for Saudi organizations.

47 NCA ECC controlsSDAIA AI alignedKSA sovereign cloud

Government Digitization

Protecting citizen data across ministries and NCA-regulated entities as they go digital.

Financial Sector Expansion

SAMA-compliant DLP for fintech, neobanks, and banks scaling digital operations.

NEOM & Giga Projects

Securing large-scale project communications where a data leak means billions in exposure.

National AI Adoption

Sanctioned employee AI under PDPL and SDAIA, replacing shadow ChatGPT with the Hisn Safe AI Interface.

Safe AI Gateway →
Pricing

Simple, SAR-denominated pricing.

Annual contracts. Arabic AI engine, NCA ECC reporting, and KSA data residency included.

FAQ

Frequently asked questions.

Yes. Hisn's AI natively processes Najdi, Gulf, and Hijazi dialects, plus Arabish like "ana maby a7ki", "bas6a" (password), "7azfi" (my password). The engine handles 12,400+ Arabish spelling variations and code-switching between Arabic and English in a single message, a pattern Western vendors cannot detect.
Live today: Microsoft Teams (full message + file via Graph API proxy), Beem SMS (Saudi-native, Arabish-heavy), and SharePoint / OneDrive. Phase 2 (Q3 to Q4 2026): Outlook/Exchange email body, Splunk/QRadar SIEM, Azure AD SSO, SAP/Oracle/ServiceNow ERP connectors. All also available via REST API for custom channels.
Never. All data, including AI inference, stays within KSA borders at all times. We operate on AWS me-central-1 (Riyadh) and STC Cloud. For classified entities we offer fully on-premises with an air-gap option. Critically: no message content is ever stored. We inspect and release in-flight, in under 200ms.
Every incident is auto-tagged with NCA control IDs at detection time. The report pulls incidents, policies, and audit trail for your period, runs gap analysis against all 47 controls, and generates an Arabic PDF for NCA submission in under 30 minutes. Evidence exports are HMAC-SHA256 signed and accepted by Saudi courts.
Blocking public AI pushes employees to personal devices where SOC has zero visibility. Hisn AI Interface is the sanctioned alternative: same convenience, but every prompt is inspected for Arabic PII, code, and files before it reaches an approved model (BYOK or ALLaM). Unlike Microsoft Copilot alone, policies map to NCA ECC and PDPL with immutable audit logs in KSA.
Yes. Built-in and mandatory under PDPL Art. 18 and 19. Employees get a token-based link (no login required), see the AI's decision explanation in Arabic and English, submit their reason, and track the decision in real time. SLA enforced with auto-escalation to CISO. Full audit log.
Cloud: live in 1 to 2 weeks. On-premises: 4 to 6 weeks. Enterprise includes a 4-week onboarding program with dedicated CSM and TAM. We handle NCA policy mapping, Teams and Beem connector setup, and SOC team training, all in Arabic, from Riyadh.

Start protecting
Arabic data today.

Join Saudi Arabia's leading enterprises. 60-day enterprise pilot, up to 500 users, full platform, Riyadh onboarding team included. No commitment required.

hisn.sa · hisn.ai · Riyadh, Saudi Arabia · All data stays in KSA · me-central-1