← Back to Home
Industries

Built for regulated sectors, wherever they operate

Ten sector deep dives — utilities and critical infrastructure, healthcare, finance, public administration, defense, manufacturing and enterprise, plus three written for the United States: the defense industrial base under CMMC, financial services under NYDFS Part 500 and GLBA, and healthcare under HIPAA — for organizations in the EU, the United States, the United Kingdom, the Middle East, Asia-Pacific and beyond. Each maps the autonomous AI red team to the regulation, attack profile and procurement reality of that sector, and explains why it has to run on-premise, on private AI.

Compliance, worldwide

34 frameworks across 8 regions, mapped automatically

Every finding, piece of evidence and remediation is mapped to the frameworks your auditors, regulators and customers use — in the EU, the United States, the United Kingdom, Canada, Asia-Pacific, the Middle East, Latin America and Africa. The appliance runs on-premise wherever you operate; the evidence never leaves your jurisdiction.

Global / cross-industry
  • ISO/IEC 27001:2022
  • SOC 2
  • NIST Cybersecurity Framework
  • CIS Critical Security Controls v8
  • PCI DSS
  • SWIFT Customer Security Programme
  • OWASP ASVS
  • CSA STAR
European Union
  • NIS2 Directive
  • DORA
  • TIBER-EU
United States
  • NIST SP 800-53
  • CMMC
  • HIPAA Security Rule
  • NYDFS Part 500
  • GLBA / FTC Safeguards Rule
  • SOX IT controls
  • SEC cybersecurity disclosure rules
  • CCPA / CPRA cybersecurity audit
United Kingdom
  • CBEST / STAR-FS
  • NCSC Cyber Assessment Framework
Canada
  • OSFI Guideline B-13
Asia-Pacific
  • APRA CPS 234
  • MAS Technology Risk Management
  • Singapore Cybersecurity Act / PDPA
  • RBI Cybersecurity Framework
  • FISC Security Guidelines
  • Korea ISMS-P
Middle East
  • Saudi NCA ECC / SAMA CSF
  • UAE Information Assurance (NESA)
  • Qatar NCSA framework
  • Bank of Israel Directive 361
Latin America
  • Brazil LGPD
Africa
  • South Africa POPIA

Who has to run an AI red team on-premise, and why →